Explain how you would conduct a threat modeling exercise for a new application.
Medium difficulty
Medium questions delve deeper, challenging you to apply your knowledge to common scenarios. They test your ability to think on your feet and adapt your basic skills to real-world contexts.
Technical question
Technical questions probe into your industry-specific knowledge and skills. They require precise answers and are an opportunity to show your expertise and practical abilities in your field.
Here's a hint
Start by identifying the application's assets and functionality. Then, identify potential threat agents and possible vulnerabilities. Use threat modeling frameworks like STRIDE or DREAD to assess risks. Lastly, prioritize the threats based on impact...
Companies asking this question
83 companies on interview.study have asked this question in the past year.