O'Reilly Archive: Zero Trust for Decision Makers in 90 Minutes
Level: Beginner. Theme: Harness the tenets of Zero Trust to protect your organization.
In 2021, US President Joe Biden issued an executive order requiring all federal government agencies to urgently adopt and advance toward the Zero Trust security model. Governments and private organizations all over the world have adopted the Zero Trust approach to improve their security posture in the face of cyberthreats. This 90 minute executive briefing covers Zero Trust’s key tenets and how it can be harnessed to protect businesses.
What you’ll learn
- Enable Zero Trust adoption
- Connect Zero Trust to digital transformation initiatives
- Leverage Zero Trust to meet compliance and governance requirements
- Understand what Zero Trust is
- Examine Zero Trust key drivers, requirements, and capabilities
- Learn the role Zero Trust plays in digital transformation
This course is for you if
- You’re a CISO, CTO, or senior leader
- You brief business executives on recent security developments
- You want a better understanding of Zero Trust capabilities and their role in digital transformation
Prerequisites
- Basic knowledge of computer security
- Recommended preparation: read “Zero Trust Fundamentals”, chapter 1 of Zero Trust Networks
Schedule
Understanding Zero Trust (50 minutes). Defining Zero Trust. Key tenets. Why Zero Trust. Enabling Zero Trust adoption and digital transformation. The who’s who of the Zero Trust landscape: governments, cloud providers, and standards and compliance bodies. Q&A.
Moving toward Zero Trust (40 minutes). How to prepare for Zero Trust. Migration strategies. Zero Trust scenarios in the modern digital enterprise. Case study on Google’s BeyondCorp. Q&A.
Read next
- Digital Identity
Entra Agent ID Across Clouds: Part 5, Anti-Patterns
Final article in the five-part series on running Microsoft Entra Agent ID against third-party clouds. Closes the loop with the variants and failure modes that consume the same operational budget as the federated pattern without delivering its security properties, and ends with the takeaways worth pinning to the team wiki.
- Digital Identity
Entra Agent ID Across Clouds: Part 4, FIC, Cross-Tenant, and OBO
Fourth article in the five-part series on running Microsoft Entra Agent ID against third-party clouds. Opens up the Federated Identity Credential as a first-class object: single-tenant, cross-tenant SaaS shape, and the orthogonal world of on-behalf-of (OBO) where the agent acts for a signed-in user.
- Digital Identity
Entra Agent ID Across Clouds: Part 3, Managed Identity and Entra Objects
Third article in the five-part series on running Microsoft Entra Agent ID against third-party clouds. Pins down what the UAMI actually is in this architecture, why SAMI breaks federation, the three distinct Entra objects (UAMI, Blueprint, Agent Identity) and the three claims (sub, azp, oid) they each populate, and the production trade-off between federating the UAMI or the Agent Identity to the cloud.
Worth reading again?
Get the next one in your inbox.