Step 1: Identify security objectives - My first task is to catalogue my assets, including
building infrastructure, network components, possible threat actors.
Step 2:" Identify assets and external dependencies. Checking what is considered
valuable and where these are located.
Step 3:" Identify trust zones." These zones are protected by firewalls and secure
boundaries that are monitored to evaluate incoming and outgoing transmissions.
Step 4:" Identify potential threats and vulnerabilities. Looking at all possible entries to
cause harm. What are the weaknesses that have shown best possible ways to
enter? Who can illegally enter my residence without permission?
Step 5:" Step 5: Document your threat model. Create a diagram to show the entire
infrastructure model to expose all trusted and non-trusted areas