Build Fast, Think Smart: Injecting Threat Modeling without Killing Velocity

November 8, 2025
10:05AM
Beverly Snow

About this session

Threat modeling often fails in fast-paced teams spaghetti diagrams, generic threats, models no one reads. I’ve been there. This talk is my journey from theory-heavy modeling threats in Europe to fast, focused practices that teams actually use. No STRIDE deep dive here, just real stories, quick wins, and simple habits that made threat modeling part of delivery, not a blocker. Not perfect. Not exhaustive. Just useful enough to catch what matters, when it matters.

About the speaker

Senior AppSec Consultant at NVISO, Nathan helps teams across Europe embed security from design to delivery. He leads threat modeling workshops, secure design reviews, and lectures. Nathan turns AppSec into real-world impact and help fast-paced teams make threat modeling stick for good with no bullsh*t.

Speaker

Speakers

Nathan Pembe
Senior Application Security Consultant, NVISO