Skip to contentSkip to content
Verified credentials. On-chain. Forever.Learn more
Ewance
Sign in
Cover image for Threat-Model and Hardening Proposal for a Whistleblower Intake
Design

Threat-Model and Hardening Proposal for a Whistleblower Intake

FreeVerified credential2 weeksAdvanced

Overview

What this challenge is about.

Threat-Model and Hardening Proposal for a Whistleblower Intake. Advanced challenge in design. Designing real products under real constraints, earn a blockcha...

CredentialBlockchain-anchored
ShareableLinkedIn-ready
LanguageEnglish
PaceSelf-paced

The Brief

What you'll do, and what you'll demonstrate.

Design a defensible, hardened anonymous-intake architecture for the NGO and chart a realistic phased migration, grounded in an honest threat model of the system it replaces.

This is not a design exercise. It is the work a product designer does between a brief and a shipped interface. That distinction matters to every hiring manager who has seen candidates redesign Spotify's homepage and none who have worked under real product constraints.

When you finish, you will have something most graduates do not: a real-world deliverable, verified by Ewance, that you can show to a hiring manager and say "I did this. Here is the proof."

Earning criteria — what you'll demonstrate

  • Apply the LINDDUN privacy-threat framework to a real anonymous-communication system with explicitly modeled attackers
  • Compare anonymity-preserving architectures on equal footing using a shared threat list and primary documentation
  • Distinguish threats that an architecture eliminates from those it only reduces, and communicate residual risk honestly
  • Translate a security recommendation into a migration plan constrained by a small team's operational and legal realities
  • Write security findings in plain language a non-technical board can act on

Program Fit

Where this fits in your program.

Sharpens the same skills your degree expects you to demonstrate.

Aligned coursework coming soon.

Careers

Career paths this challenge builds toward

Completing this challenge demonstrates skills that transfer directly to these roles:

Security Engineer

This challenge mirrors core security-engineering work: producing a defensible threat model, evaluating architectures against shared threats, and recommending a hardened design that a stakeholder can act on and defend.

This challenge sharpens

  • threat-modeling
  • privacy-engineering
  • risk-classification

Privacy Engineer

Privacy engineers operationalize frameworks like LINDDUN to find linkability and identifiability risks before they reach production. The exercise builds exactly that muscle on a high-stakes anonymous-communication system.

This challenge sharpens

  • privacy-engineering
  • anonymous-communication
  • privacy-budget

Security Architect

Architects must compare candidate designs honestly and sequence change against organizational constraints. Recommending a target architecture and phased migration for a resource-limited NGO rehearses that judgment directly.

This challenge sharpens

  • threat-modeling
  • anonymous-communication
  • risk-classification

One more thing

You can put a credential on your CV by Friday.