JULY 2024ENTERPRISE SECURITY| | 19ZERO-TRUST (ZT) CYBER SECURITY In addition, more precisely, `first check, then double-check and keep checking until you reach zero trust'. When people first implemented network security (configuring firewall), they created a perimeter within which everyone trusted each other and had shared access to resources. The concept of zero trust, on the contrary, is based on a distrust of everyone and everything that is inside or outside the network perimeter.Previously firewalls only have inside zone (trusted), outside zone (untrusted) and DMZ zone for public use north to south approach, and mostly internal server to server and internal employees to server can communicate without limit, with zero trust there is no such configuration rather , all communications will be analyzed and verified and will be monitored 24/7.This rigorous `trust no one' security framework requires that all users, whether they are inside or outside of a business's network, must be continuously validated using multiple authentication methods, and even lateral moves within a network must be continuously reassessed and reauthorized. ZERO TRUST STRATEGY THEMES ZERO TRUST ARCHITECTURE STRATEGYI. Permanent Access ControlThere are no reliable sources in the zero trust model, all of them are questioned. Each request to access a system is authenticated, authorized, and encrypted.a. Userb. Locationc. Applicationd. Devicese. Access Control Gates, Network Access Controlf. Physical Security (CCTV)II. Preventive Methods of Protectiona. Multi-factor authentication,b. Biometric based authenticationc. Least privilege access,d. Micro-segmentation,e. Email protection,f. Orchestration,g. Encryption,h. Cloud access security brokers, etc.i. End point detection and response (EDR)j. Not only north to south control but also east to west by applying datacenter security (DCS)k. Implement APT (advanced persistence threat)III. Real Time Security Incident and Fraud Monitoring, Detection and ResponseThis is important to shorten the `breakout time' -- the gap between when a hacker breaks into the first system and when they move on to other systems on the network. Constant monitoring helps to repel threats when their scale is still minimal, i.e. at real timea. SOCb. SOARc. Malwared. Artificial intelligence driven fraud management e. End point detection and responsef. Deception/honey portIV. Consistency with the Security and Fraud Strategy and GovernanceThe Zero Trust security model is part of a comprehensive cyber resilience strategy that involves monitoring and addressing threats. Companies also check and update old authentication protocols, and fix and update all devices, programs, and firmware as soon as critical vulnerabilities are found.a. Patch managementb. SSDLCc. Sec-dev-opsd. Security by designe. Supply chain securityf. 3rd party security clearance. ES THE CONCEPT OF ZERO TRUST, IS BASED ON A DISTRUST OF EVERYONE AND EVERYTHING THAT IS INSIDE OR OUTSIDE THE NETWORK PERIMETER
<
Page 9 |
Page 11 >