How do you tackle these top 3 challenges in threat modeling?

Hello friends, last week we discussed one of the toughest roadblocks in our field, reporting. This week, let’s zoom out to challenges overall.

On average, companies in the SOTM survey reported a minimum of 10 recurring challenges. The top 3:

  1. Incomplete list of system components, draw flows or assets
  2. Getting the team (whose system is being threat modeling) to dedicate resources to provide information
  3. Participants unfamiliar with threat modeling approach (e.g. unfamiliar with STRIDE)

We want to hear about your experience:

What is your BIGGEST challenge for threat modeling? (go on, make it hard for yourself and only choose 1).


This post is part of our new weekly ‘Peer Perspectives’ series! Each week, we’ll explore a new threat modeling topic and open it up for community discussion. For the coming weeks ahead, we’ll discuss key findings from the newly-released State of Threat Modeling Report 2024-2025.

1 Like