May 2023 Program Guide

PRIVACY, PRIVACY TECH, TRUST, & DATA

Models Of Applied Privacy (Map): A Persona Based Approach To Threat Modeling Speaker: Jayati Dev Talk Time: 2:00 PM - 2:25 PM PT Abstract: One element of Privacy by Design is to conduct privacy threat modeling to identify risks to users early. In this paper, we propose a systematic, lightweight privacy threat modeling framework based on attackers' personas that is easy to operationalize and scale. We validate the framework using a repository of 207 privacy breaches and implement it as a persona picker tool to identify, investigate, and remediate relevant threats based on the product developer's scope of privacy risk.

DAY OF SHECURITY

27

Powered by