A Global Financial Leader Scales Threat Modeling to 4,500 threat models with IriusRisk

As one of the world’s largest banking and financial services organizations, this financial leader is a pioneer in cybersecurity, requiring all critical applications to have a threat model as part of a top-down security initiative. Since beginning its threat modeling journey with IriusRisk in 2020, they have completed 4,439 threat models so far, with a target of 15,000 in total. 

The company adopted IriusRisk to serve as the core platform for application-based threat modeling. The solution provided the necessary structure to drive consistency and complete baseline security controls, facilitating their ambitious shift-left security strategy.

"IriusRisk is a key enabler for our shift-left security strategy. The platform is crucial to encouraging our IT service owners to perform more threat modeling tasks themselves as we gradually move toward a full self-service model for all non-critical applications." Cyber Security Manager

The outcomes...

Unprecedented Scale: The company plans to scale to 15,000 threat models, with 4,439 models completed to date and approximately 200 monthly active users.
Significant Time and Cost Savings: 108 years of time saved in the last year alone from the creation or updating of nearly 4,000 threat models.
High Countermeasure Efficiency: The team has implemented over 500,000 countermeasures and consistently maintains a countermeasure efficiency of over 91%.
Black quotation marks