Skip to contentSkip to content
Verified credentials. On-chain. Forever.Learn more
Ewance
Sign in
Cover image for Threat Model a HealthTech Patient-Portal Web App
Design

Threat Model a HealthTech Patient-Portal Web App

FreeVerified credential3 weeksAdvanced

Overview

What this challenge is about.

Run a STRIDE session on a HealthTech patient portal, build DFDs, rank threats, and author mitigations to earn your verifiable certificate.

The scenario

The HealthTech (Series-B at USD 35M raised, around 240,000 monthly active patients) is being held to a SOC 2 Type II + HIPAA risk assessment by its largest hospital-system customer — a credible threat model is part of the contract renewal.

CredentialBlockchain-anchored
ShareableLinkedIn-ready
LanguageEnglish
PaceSelf-paced

The Brief

What you'll do, and what you'll demonstrate.

Run a STRIDE threat model on a HealthTech patient-portal redesign and produce a defensible launch-blocking decision list.

Earning criteria — what you'll demonstrate

  • Apply STRIDE methodology to a real web-app architecture
  • Draw data-flow diagrams with explicit trust boundaries
  • Rank threats including regulatory-magnification factors
  • Communicate launch-blocking decisions to a product audience

Program Fit

Where this fits in your program.

Sharpens the same skills your degree expects you to demonstrate.

Software Security

Master · Security

Strong alignment

This challenge maps to Software Security at the Master level. It sharpens the same practical skills your coursework expects — but in a real industry context with actual constraints and deliverables.

One more thing

You can put a credential on your CV by Friday.