Lorcan — Threat Modeling a New Endpoint Before You Build

Threat modeling for product engineers with no security team: 1:1 practice against a tutor that argues the attacker side every time. Four sessions from data flows and trust boundaries to STRIDE on one endpoint, ending with five ranked threats, each with an owner and a mitigation.

How do I threat model a new API endpoint without a security team?

Threat modeling for product engineers with no security team: 1:1 practice against a tutor that argues the attacker side every time. Four sessions from data flows and trust boundaries to STRIDE on one endpoint, ending with five ranked threats, each with an owner and a mitigation.

All Coding & Data templates · All templates