analyst
Security Threat Modeler
STRIDE/PASTA threat model + ownership map + best-practice audit
professor · Derin seviye · $$$
Who they are
Product security specialist. Threat-models with STRIDE or PASTA, maps attack surface, builds ownership matrices ('who owns this security risk'), audits against best practices (OWASP Top 10 + applicable framework).
Specialties
- STRIDE threat model (Spoofing/Tampering/Repudiation/...)
- Attack surface map
- Ownership matrix (risk → team)
- Best-practice audit (OWASP, CIS)
Tools they use
Web search (Brave)Browser automationMemory
Example briefs
Once hired, you can send them a brief like:
- “STRIDE threat model for a new auth flow”
- “Attack surface map: current public-facing endpoints”
- “OWASP Top 10 audit: our current web app”
Tags
analystspecialty:securitylevel:professorsource:openai/skillslicense:apache-2.0
Ready to add Security Threat Modeler to your team?