Talhah Munawar Mir - Redmond WA, US Anil Kumar Venkata Revuru - Bellevue WA, US Deepak J. Manohar - Redmond WA, US Vineet Batta - Bellevue WA, US
Assignee:
Microsoft Corporation - Redmond WA
International Classification:
G06F 9/44 G06F 9/45
US Classification:
717104, 717107, 726 22
Abstract:
Systems and methods relating to a method for generating a threat analysis and modeling tool are described. In an implementation, aggregate analysis is performed upon applications of an enterprise for complete risk management of the enterprise. The threat analysis model is generated by defining the application, its attributes and the rules related to the application. An application task list is generated from a common task list for the application. Countermeasures for known attacks pertaining to the application are described in the application task list, which allows the developer to reduce the risk of attacks.
Talhah M. Mir - Redmond WA, US Anil Kumar Revuru - Bellevue WA, US Shawn G. Veney - Puyallup WA, US
Assignee:
MICROSOFT CORPORATION - Redmond WA
International Classification:
G06F 12/14
US Classification:
726 23
Abstract:
A threat modeling application generates threats to a business application. The threat modeling application receives user input associated with business application data. The input may be received through an interface provided by the threat modeling application. Threats are automatically generated from the received data and an attack library. The attack library includes information regarding attacks and related countermeasures. By automatically generating threats based on business application information, the threat modeling application can generate security threats consistently and objectively.
Microsoft since Apr 2008
Lead Program Manager
Microsoft 2006 - Mar 2008
Sr. Security Technologist
Education:
University of Toronto - New College 1997 - 2003
Skills:
Windows Azure Microsoft Office Sharepoint Server Technology Evangelist Cloud Computing Enterprise Architecture Information Security Application Security Security Microsoft Technologies Enterprise Software Solution Architecture Risk Management Management Information Security Management Program Management Computer Security Microsoft Products Saas Agile Project Management It Strategy
Certifications:
Certified Information Security Manager (Cism) License 1115857 Isaca, License 1115857