From automation to CI/CD: a comparative evaluation of threat modeling tools

Dimitri Van Landuyt, Laurens Sion, Walewein Philips, Wouter Joosen · 2024

As threat modeling involves the architecture-centric identification, analysis and mitigation of security threats, it is considered an essential activity of the secure development lifecycle (SDLC). Threat modeling outcomes are used to guide the mitigation and risk management process, and to determine areas of focus in later development stages (e.g., testing and verification). Traditional threat modeling methods and techniques are driven by human experts and stakeholders and mainly conducted manually. Recently, focus has shifted towards automating (parts of) the process through improved tool support.In this paper, we evaluate the extent to which this trend also leads to easier development pipeline integration of threat modeling tools, i.e. whether this also enables conducting threat modelcentric analysis within continuous integration and development (CI/CD) build pipelines so that they can contribute to the overall development-centric quality assurance process (SecDevOps). We first articulate the key requirements for threat modeling tools to be compatible or suited for CI/CD, and then we systematically evaluate and compare seven automated threat modeling tools against these requirements. Finally, we provide recommendations towards making threat analysis tools and enablers both more suitable for integration in a CI/CD context and hence, more compatible to modern software engineering processes.

Read the paper · More papers on PaperTik