Introduction
Introduction to security architecture
()
The problem: A tactical approach to study
()
What is security architecture?
()
The role of the security architect in an enterprise
()
Security design principles
()
Top 10 security design principles
()
1. Enterprise Architecture Frameworks
Enterprise (security) architecture frameworks
()
Overview of the TOGAF framework
()
Overview of the Zachman framework
()
Overview of the SABSA framework, part 1
()
Overview of the SABSA framework, part 2
()
2. Security Architecture Development Process
Introduction
()
Business requirements definitions and gathering
()
Data classification
()
Threat modeling and risk assessment
()
Security requirements definition
()
Reference security architecture
()
Residual risk identification
()
Architectural issues and risks
()
3. Threat Modeling
Threat modeling
()
Threat modeling and security architecture
()
Threat modeling methodologies
()
STRIDE threat modeling methodology
()
PASTA threat modeling methodology
()
OCTAVE threat modeling methodology
()
Trike threat modeling methodology
()
Attack trees
()
4. Designing for Security
Introduction to security design patterns
()
Security design pattern example
()
Introduction to reference security architectures
()
Examples of reference security architectures
()
5. Case Study
Developing a reference security architecture
()
Understanding business requirements
()
Data classification
()
Threat modeling and information risk assessment, part 1
()
Threat modeling and information risk assessment, part 2
()
Defining security requirements
()
Developing the reference security architecture
()
Identifying residual risk
()
Identifying architectural issues and risks
()
Conclusion
Summary and conclusion
()