Before looking at some open tasks I took some time to start writing the threat model report for the meeting from this morning, I detail some business risks and start the analysis on potential mitigation for the problems discovered this morning. I will finish this work next week.
On to the open tasks. There is a report on the maturity of the secure software development lifecycle from a colleague that I can review so it can be sent to our customer. Quality is important so every report needs to be reviewed before sending it out. I found a couple of minor items to improve and sent the report back.
Next on my to-do list, update the threat model training with the latest insights ‘from the field’. This training is very popular, and we keep it up to date with every bit of knowledge and experience we gain performing threat models.