• 0 Posts
  • 47 Comments
Joined 5 months ago
cake
Cake day: October 1st, 2024

help-circle
  • So there’s a formal/professional approach and there’s an informal approach.

    Formally, there are fields like Risk Management aka Risk Analysis; in these fields there are various frameworks and approaches for things like threat models and risk assessments. This is more than most of us need.

    Informally “this is what I want to protect myself against” is indeed a good way of thinking about it. You can write something up for yourself, or you can just think it through. If the threat model helps you use your time / resources wisely, then it’s a good threat model.