Re: [SC-L] differences between Threat Analysis and Threat Modeling

2007-02-22 Thread Paco Hope
On 2/14/07 4:11 PM, "Jason Grembi" <[EMAIL PROTECTED]> wrote: > > Threat Analysis ­ is more informal way of 'eyeballing' system architecture and > application design. > Threat Modeling [Microsoft SDL] ­ more formal, every requirement is modeled > and scrutinized. This is not how I would define t

Re: [SC-L] Anyone here attending the 6th Semi-Annual Software AssuranceForum

2007-02-22 Thread Goertzel, Karen
I'll be there, and presenting. I'd be interested in a BoF (but not a BOF). -- Karen Mercedes Goertzel, CISSP Booz Allen Hamilton 703.902.6981 [EMAIL PROTECTED] > -Original Message- > From: [EMAIL PROTECTED] > [mailto:[EMAIL PROTECTED] On Behalf Of Kenneth Van Wyk > Sent: Thursday, Febr

[SC-L] Anyone here attending the 6th Semi-Annual Software Assurance Forum

2007-02-22 Thread Kenneth Van Wyk
Anyone else here attending the 6th Semi-Annual Software Assurance Forum in Fairfax, Virginia on 8-9 March? Any interest in an after- event informal SC-L BoF and beer chat? Let me know and I'll gladly coordinate. (We already have several people "signed up" for the SC-L BoF at S3 in April.