Applying MAESTRO to Real-World Agentic AI Threat Models: From Framework to CI/CD Pipeline
By Steven Leath and Ken Huang
Every security team I talk to is having the same conversation right now. Their developers are shipping AI agents — coding assistants, autonomous workflows, LLM-powered tools that can browse the web, execute code, query databases, and send emails on behalf of users. The agents live in production.
The threat models are not.
This…


