Glossary · Security & governance
Threat Model
A documented account of protected assets, trust boundaries, potential adversaries, assumed capabilities, attack paths, impacts, and planned controls.
Why it matters
Security controls cannot be judged without stating what they defend, against whom, and under which assumptions.
In practice
Map data and authority across model, retrieval, tools, users, and external services, then turn credible abuse paths into red-team cases and mitigations.
Common confusion
A threat model prioritizes plausible risks; it is not a checklist that proves the system secure or predicts every future attack.
Related terms
Sources
Browse the learning paths to see this term in context — every lesson is free to read.