Part I: System and threat modeling
A system map and a threat model give technical and management readers the same description of the system, its operators, attacker access, and possible harm.
An employee support assistant provides the running example. The organization operates identity, document, and policy services and may use an external or internal model. Mapping those components comes before adding attacker access, failure paths, controls, evidence, and remaining risk.
Chapters in this part
- Mapping the AI system: A system map records the people, components, data, permissions, and evidence that a security decision about an AI assistant depends on.
- Threat modeling and controls: A threat record connects an attacker’s access to a possible failure, the controls expected to prevent it, and the evidence needed to test them.