Job Description:
Conduct application threat modeling using the STRIDE methodology.
Implement and operationalize Threat Modeling within the SSDLC using IriusRisk, ensuring consistent adoption across development teams.
Perform architecture and design reviews to identify security threats and recommend mitigations.
Facilitate threat modeling workshops with architects, developers, and application owners.
Develop threat models, attack scenarios, risk assessments, and remediation recommendations.
Support implementation and integration of IriusRisk within the SDLC and security processes.
Track and report assessment status, findings, and risk reduction activities across multiple applications.
Collaborate with cross-functional stakeholders to drive adoption of secure design practices.