DiscoverCloud Security Podcast by GoogleEP215 Threat Modeling at Google: From Basics to AI-powered Magic
EP215 Threat Modeling at Google: From Basics to AI-powered Magic

EP215 Threat Modeling at Google: From Basics to AI-powered Magic

Update: 2025-03-17
Share

Description

Guest:

 Topics:

  • Can you walk us through Google's typical threat modeling process? What are the key steps involved?
  • Threat modeling can be applied to various areas. Where does Google utilize it the most? How do we apply this to huge and complex systems?
  • How does Google keep its threat models updated? What triggers a reassessment?
  • How does Google operationalize threat modeling information to prioritize security work and resource allocation? How does it influence your security posture?
  • What are the biggest challenges Google faces in scaling and improving its threat modeling practices? Any stories where we got this wrong?
  • How can LLMs like Gemini improve Google's threat modeling activities? Can you share examples of basic and more sophisticated techniques?
  • What advice would you give to organizations just starting with threat modeling? 

Resources:

Comments 
In Channel
loading
00:00
00:00
x

0.5x

0.8x

1.0x

1.25x

1.5x

2.0x

3.0x

Sleep Timer

Off

End of Episode

5 Minutes

10 Minutes

15 Minutes

30 Minutes

45 Minutes

60 Minutes

120 Minutes

EP215 Threat Modeling at Google: From Basics to AI-powered Magic

EP215 Threat Modeling at Google: From Basics to AI-powered Magic

Anton Chuvakin