You've read, heard, sensed and worried about Threat Modeling for a while now. Apparently, all the cool kids are doing it and there's a strong movement for everyone to do it. But what does that mean for your organization? What are the dials you can read and the levers you can push to build a Threat Modeling program that actually works for your environment? In this session we will look at what are the indicators in your organization that may help shape your Threat Modeling program, what this program may look like, and what data you'll be collecting in order to measure and improve its impact and efficacy. Do you do it yourself? Do you bring external help? Is it your Security Team or your developers who lead it? Security Champions? All teams do the same, or...? We will ask and answer these questions and more. You will leave with ideas of your next steps, equipped with ways to go and succeed, and to fail fast if necessary.