Effective Threat Modeling
Matthew emphasizes the importance of deploying security tools effectively by understanding the specific threats to an organization. He advocates for ongoing threat modeling, ideally triggered by even minor changes in applications, to ensure comprehensive security. As the conversation shifts to applications using LLMs, the need for tailored threat modeling approaches is highlighted, suggesting that while some patterns may remain, unique considerations are essential.In this clip
From this podcast

Software Engineering Radio - the podcast for professional software developers
SE Radio 648: Matthew Adams on AI Threat Modeling and Stride GPT
Related Questions
I have a question about the episode Harnessing AI APIs for Safer, Accurate, & Reliable Applications // Ron Heichman // #252 and the clip Malicious Code Risks. I am a software engineer in a world of large language models (LLMs) where most software can be easily written by them. What business should I start, knowing that I have a competitive advantage in understanding software development but also want to protect myself against disruption?
What problems do developers face when building AI applications as discussed in the episode Augmenting Incident Response with LLMs and the clip Security Industry Evolution?