Identify Vulnerabilities Early
Finding security issues during design costs less than finding them during testing, after release, or during incident response.
Build skills
Hands-on workshop for up to 25 people, available for companies onsite or remote. Individual practitioners can join public classroom sessions.
Why
Threat modeling lets development teams find design risks before they turn into expensive fixes.
Finding security issues during design costs less than finding them during testing, after release, or during incident response.
Addressing security flaws before coding begins reduces rewrites, retrofits, and maintenance costs.
Early threat modeling gives developers, architects, and product managers a shared way to reason about security throughout the SDLC.
Teams make better design choices when they can see how functionality, security, business goals, and usability interact.
Early detection and mitigation reduce the risk of future security incidents, protect sensitive data, prevent downtime, and preserve customer trust.
Frameworks such as the EU CRA, GDPR, HIPAA, and NIST CSF expect secure design practices. Threat modeling gives teams evidence they can use in compliance work.
Price
Live full day hands-on training for up to 25 attendees.
€5700 +VAT
Threat modeling workshop for practitioners.
€6900 +VAT
Follow-up sessions help your team roll out threat modeling on real products.
Let's talk
Custom training adapted to your products, architecture, and team goals.
Schedule a callAgenda
Details
Product Security Architect
Nariman Aga-Tagiyev is an Application Security Architect with more than 20 years of experience in software development. He has worked as a full-stack web application developer, backend developer, DevOps engineer, and cloud developer. Since 2016, he has focused fully on application security work.
Application Security Architect
Eden Yardeni has built application security programs across several large enterprises. A software engineer by background, she joined the OWASP ASVS working group in 2024 and specializes in security champions programs, threat modeling, and secure software development lifecycles (SSDLCs).
Details
This workshop is designed for people involved in any stage of the software development lifecycle. No prior cybersecurity expertise is required to attend.
Participants work in teams of 3 to 4 through each step of the threat modeling process. The scenario is a cloud-hosted application with backend, frontend, mobile client, and IoT device components. Guided by experienced coaches, teams create data flow diagrams, identify threats, propose mitigations, and define follow-up steps.
We also cover the secure development lifecycle for AI and show how to apply threat modeling when designing custom AI models and applications.
By the end of the training, participants can identify threats and propose mitigations with structured techniques.
About
Threat modeling lets software teams identify, evaluate, and address security threats during design. When teams do it early, they can build security into the architecture before fixes become expensive. The result is software that is easier to defend, review, and maintain.
Make it happen
We’ll prepare a quote for your purchasing team within 24 hours. No spam afterward.
Prefer email? Write to us and we'll get back within one business day.
Email training@securehabits.nl