Skip to content

Spragusa/iot-threat-model-stride

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

15 Commits
 
 
 
 
 
 
 
 

Repository files navigation

IoT Threat Modeling – Simulated Critical Infrastructure

This repository contains a structured STRIDE-based threat model for a simulated IoT water management system (Grand Marina scenario).

📂 Project Structure

  • /threat-model/grand-marina-threat-model.md
    Full professional threat model including:
    • System overview
    • Asset inventory
    • STRIDE analysis
    • Risk prioritization
    • Mitigation recommendations

🎯 Objective

Demonstrate the ability to:

  • Apply CIA Triad analysis
  • Perform structured STRIDE threat modeling
  • Identify high-impact IoT attack paths
  • Prioritize risk using Likelihood × Impact matrix
  • Recommend practical, layered mitigations

🧭 Architecture Overview

Simulated IoT Architecture

🛠 Frameworks Used

  • CIA Triad
  • STRIDE
  • Risk Matrix (Likelihood × Impact)
  • Defense-in-depth principles

This project is part of a cybersecurity externship focused on IoT security and cloud-based critical infrastructure systems.

⚠️ This project models a fictional IoT deployment for educational and portfolio purposes only. No real infrastructure or client data is included.

About

Conducted structured STRIDE-based threat modeling for MQTT-based IoT architecture.

Topics

Resources

License

Stars

Watchers

Forks

Releases

No releases published

Packages

 
 
 

Contributors