Which of the following best describes the STRIDE model in threat modeling?
easy🧠 Conceptual Q1 of 15
Cybersecurity - Security Architecture and Design
Which of the following best describes the STRIDE model in threat modeling?
AA tool for encrypting sensitive data
BA method to calculate risk scores for vulnerabilities
CA process for patch management in software
DA framework to identify six types of security threats
Step-by-Step Solution
Solution:
Step 1: Understand STRIDE purpose
STRIDE is a model used to identify different categories of security threats.
Step 2: Match description to options
A framework to identify six types of security threats correctly states STRIDE identifies six threat types: Spoofing, Tampering, Repudiation, Information disclosure, Denial of service, Elevation of privilege.
Final Answer:
A framework to identify six types of security threats -> Option D
Quick Check:
STRIDE = Threat categories [OK]
Quick Trick:STRIDE = Six threat types to watch for [OK]
Common Mistakes:
MISTAKES
Confusing STRIDE with risk scoring methods
Thinking STRIDE is about encryption
Mixing STRIDE with patch management
Master "Security Architecture and Design" in Cybersecurity
9 interactive learning modes - each teaches the same concept differently