Zero trust is easy. Don’t trust anyone or anything. This approach to security is needed today because of the sophisticated threat actors we face, sophistication that makes it necessary to assume our networks are continuously inhabited by the unwanted.
This is the first in a series of two videos on the basics and architecture of implementing zero trust. In Part 1, I describe zero-trust objectives and the tenets we use to design our security framework to achieve them. In Part 2, I walk through how we might architect a zero-trust environment.
Table of Contents:
00:00 - Intro
01:06 - The Basics
02:24 - The Objectives
03:37 - Examples with PEP
05:28 - The Principles of Zero-trust Design
======
Script: https://adventuresinsecurity.com/CISS...
=====
NIST SP 800-207: https://csrc.nist.gov/publications/de...
=====