Glossary · Security & governance

Threat Model

A documented account of protected assets, trust boundaries, potential adversaries, assumed capabilities, attack paths, impacts, and planned controls.

Why it matters

Security controls cannot be judged without stating what they defend, against whom, and under which assumptions.

In practice

Map data and authority across model, retrieval, tools, users, and external services, then turn credible abuse paths into red-team cases and mitigations.

Common confusion

A threat model prioritizes plausible risks; it is not a checklist that proves the system secure or predicts every future attack.

Related terms

Sources

Browse the learning paths to see this term in context — every lesson is free to read.