#172 Zero Trust Architecture episode artwork

EPISODE · Nov 9, 2023 · 34 MIN

#172 Zero Trust Architecture

from Embracing Digital Transformation · host Dr. Darren Pulsipher

Check out my new book AI Augmented Teams on Amazon or on my website paidar.ai/books.In this podcast episode Darren talks with Steve Orrin and Dave Marcus and discusses zero trust architecture, a new security model needed for today's digital environments where the network perimeter is disappearing. Experts explain what zero trust is, key principles like default deny access and continuous authentication, and advice for organizations starting their zero trust journey.Digital transformation initiatives aim to leverage new technologies to improve business processes and deliver better experiences for customers and employees. However, as organizations extend their networks and adopt cloud services, the traditional security model of trusted networks is no longer sufficient. This creates vulnerabilities that cybercriminals can exploit.Zero trust architecture provides a framework to enhance security in today's complex environments. But what exactly is zero trust, and how can organizations start their journey towards implementing it? Factors Driving Zero Trust ArchitectureAt its core, zero trust architecture is about applying continuous, granular policies to assets and resources when users or entities attempt to access or interact with them. This policy gets applied regardless of the location - on premise, cloud, hybrid environments, etc. The key principles are:* Default deny - Access is denied by default. Users must authenticate and be authorized for the specific context.* Continuous authentication - Users are re-authenticated and re-authorized throughout their sessions based on analytics of identity, time, device health, etc.* Microsegmentation - Fine-grained controls are applied for lateral movement between assets and resources.This differs from traditional network security that uses implied trust based on whether something is inside the network perimeter. Getting Started with Zero TrustImplementing zero trust is a continuous journey, not a one-time project. However, organizations need to start somewhere. Here are a few best practices:* Educate yourself on zero trust frameworks and concepts* Map out a workflow for a medium-risk application and identify dependencies* Leverage existing infrastructure - microsegmentation, encryption, visibility tools* Obtain executive buy-in and involve business stakeholders* Start with a solid cybersecurity foundation - hardware roots of trust, encryption, asset inventory* Increase visibility into the operational environment and supply chainWhile zero trust may require new investments in technology and process changes over time, organizations can make significant progress by refining how they use what they already have. Looking AheadAs business applications and resources continue migrating outside the traditional network perimeter, zero trust allows a more dynamic and contextual approach to security. Instead of blanket allowances based on location, granular controls are applied according to the specific access requirements.This journey requires vigilance - policies must adapt as business needs evolve, and new risks emerge. But with the right vision and commitment, zero trust architecture provides a path forward to enable digital innovation and resilience.

Check out my new book AI Augmented Teams on Amazon or on my website paidar.ai/books.In this podcast episode Darren talks with Steve Orrin and Dave Marcus and discusses zero trust architecture, a new security model needed for today's digital environments where the network perimeter is disappearing. Experts explain what zero trust is, key principles like default deny access and continuous authentication, and advice for organizations starting their zero trust journey.Digital transformation initiatives aim to leverage new technologies to improve business processes and deliver better experiences for customers and employees. However, as organizations extend their networks and adopt cloud services, the traditional security model of trusted networks is no longer sufficient. This creates vulnerabilities that cybercriminals can exploit.Zero trust architecture provides a framework to enhance security in today's complex environments. But what exactly is zero trust, and how can organizations start their journey towards implementing it? Factors Driving Zero Trust ArchitectureAt its core, zero trust architecture is about applying continuous, granular policies to assets and resources when users or entities attempt to access or interact with them. This policy gets applied regardless of the location - on premise, cloud, hybrid environments, etc. The key principles are:* Default deny - Access is denied by default. Users must authenticate and be authorized for the specific context.* Continuous authentication - Users are re-authenticated and re-authorized throughout their sessions based on analytics of identity, time, device health, etc.* Microsegmentation - Fine-grained controls are applied for lateral movement between assets and resources.This differs from traditional network security that uses implied trust based on whether something is inside the network perimeter. Getting Started with Zero TrustImplementing zero trust is a continuous journey, not a one-time project. However, organizations need to start somewhere. Here are a few best practices:* Educate yourself on zero trust frameworks and concepts* Map out a workflow for a medium-risk application and identify dependencies* Leverage existing infrastructure - microsegmentation, encryption, visibility tools* Obtain executive buy-in and involve business stakeholders* Start with a solid cybersecurity foundation - hardware roots of trust, encryption, asset inventory* Increase visibility into the operational environment and supply chainWhile zero trust may require new investments in technology and process changes over time, organizations can make significant progress by refining how they use what they already have. Looking AheadAs business applications and resources continue migrating outside the traditional network perimeter, zero trust allows a more dynamic and contextual approach to security. Instead of blanket allowances based on location, granular controls are applied according to the specific access requirements.This journey requires vigilance - policies must adapt as business needs evolve, and new risks emerge. But with the right vision and commitment, zero trust architecture provides a path forward to enable digital innovation and resilience.

NOW PLAYING

#172 Zero Trust Architecture

0:00 34:55

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

Solving for Change MOBIA Technology Innovations Solving for Change welcomes business and technology leaders to share stories of bold business transformation within complex organizations. In an era when technology and markets are changing around businesses, the key to staying competitive is to evolve in response to those changes.  MOBIA’s Mike Reeves and Marc LeBlanc investigate business transformation, deconstructing the challenges, ambitions, and market disruptions that drive companies to embark on transformation journeys, and exploring their unique approaches to achieving meaningful outcomes.  What sparks leaders to pursue business transformation? How do they overcome the challenges along the way? What are the keys to creating enduring change?  Through in-depth conversations with business and technology leaders, Mike and Marc answer these questions and explore how businesses evolve by pulling four key transformation levers: people, process, technology, and culture. Darknet Discussions Darknet Discussions Welcome to "Darknet Discussions," the podcast that gets into the shadows of the internet to bring you the most intriguing, enlightening, and sometimes unsettling stories from the dark web. Hosted by seasoned darknet aficionados, each episode of "Darknet Discussions" explores the intricate dynamics of darknet markets, cybersecurity threats, and the digital underworld. Join us as we interview experts, discuss the latest trends in cybercrime, and shed light on the technologies that operate beneath the surface of everyday internet use. Also, we occasionally go off on a tangent about something completely unrelated. The Digital Experience Show by Enonic Enonic All you need to know about digital strategy, digital experiences, and CMS are covered in this podcast. Powered by NotebookLM. Tips, News and Stories for Older Adults Esther C Kane CAPS, C.D.S. "Tips, News, and Stories for Older Adults" delivers weekly insights tailored for seniors. We bring you summaries of curated news, practical advice, and inspiring stories that matter to the 55+ community. From health and finance to technology and lifestyle, our content keeps you informed and engaged. Sourced from trusted outlets, each episode offers valuable information for navigating your golden years. Join us as we explore aging with positivity, wisdom, and engaging stories. Your perfect companion for staying active, learning, and embracing life's later chapters.

Frequently Asked Questions

How long is this episode of Embracing Digital Transformation?

This episode is 34 minutes long.

When was this Embracing Digital Transformation episode published?

This episode was published on November 9, 2023.

What is this episode about?

Check out my new book AI Augmented Teams on Amazon or on my website paidar.ai/books.In this podcast episode Darren talks with Steve Orrin and Dave Marcus and discusses zero trust architecture, a new security model needed for today's digital...

Can I download this Embracing Digital Transformation episode?

Yes, you can download this episode by clicking the download button on the episode player, or subscribe to the podcast in your preferred podcast app for automatic downloads.
URL copied to clipboard!