Architects debating a new permitting portal disagree: one wants STRIDE-style threat categories; another says abuse cases are unnecessary because 'users are mostly honest.' What should the program choose?
Select an answer to reveal the explanation.
Short Explanation
Hoping residents are angels is not a methodology. Structured categories—STRIDE-style or similar—force you to walk spoofing, tampering, and the rest before go-live. Optimism is lovely; checklists catch the crooks.
Full Explanation
Structured threat modeling methodologies systematically enumerate threat types and misuse cases against the architecture. Assuming benign user intent leaves spoofing, elevation of privilege, and information disclosure unexamined. CISSP expects application of recognized modeling concepts rather than ad hoc optimism.