Course Material
Upcoming AI Threat Modeling Course
I am currently authoring EC‑Council a Course (Consisting in eight sessions, 4 hours total, web based training ) on AI‑Augmented Threat Modeling. EC‑Council not only provides globally recognized certifications but also operates as a university offering advanced degree programs.
Threat Modeling Courses
I am offering both basic and advanced threat modeling training, covering not only the use of threat modeling tools but also the threat modeling practice itself. This would range from conducting manual threat modeling to use of AI‑augmented approaches. The training is tailored to the client’s training needs and application security curriculums. These training(s) can be embedded into the client’s existing security practitioner development programs, including engineers, security champions, and security architecture‑focused roles.
Course Resources (i.e. Reference of books I authored & published, free guides and other staff I use for my courses)
- Blockchain Application Security: Security by Design
Wiley, 2025 – A practical guide to designing secure and attack-resilient blockchain applications, focusing on threat modeling of decentralized finance (DeFi) applications, security of smart contracts, and security of enterprise blockchain applications. - PASTA: Process for Attack Simulation and Threat Analysis
Wiley, 2015 – A risk-centric threat modeling methodology widely used to align application security practices with business impact and attack simulation. - OWASP AI Testing Guide
OWASP, 2025 - A global initiative to dcocument best practices, testing strategies, and structured AI threat modeling for applications that use LLMs and GenAI. Includes a dedicated threat model scoped for LLM based layered (data, infrastrcuture, model and application) architectures. - OWASP Threat Modeling Guide
OWASP, 2015 - A practical guide for security professionals and software engineers to conduct basic-level threat modeling. - OWASP CISO Guide
OWASP, 2013- A resource for CISOs to align application security programs with enterprise risk management and governance. - Other Training Staff
LLM Threat Modeling Prompt Templates