Zero Trust Validation: from Practice to Theory : An empirical research project to improve Zero Trust implementations

操作化 零(语言学) 计算机科学 资产(计算机安全) 实证研究 零知识证明 实施 计算机安全 知识管理 密码学 数学 软件工程 语言学 统计 认识论 哲学
作者
Yuri Bobbert,Jeroen Scheerder
标识
DOI:10.1109/stc55697.2022.00021
摘要

How can high-level directives concerning risk, cybersecurity and compliance be operationalized in the central nervous system of any organization above a certain complexity? How can the effectiveness of technological solutions for security be proven and measured, and how can this technology be aligned with the governance and financial goals at the board level? These are the essential questions for any CEO, CIO or CISO that is concerned with the wellbeing of the firm. The concept of Zero Trust (ZT) approaches information and cybersecurity from the perspective of the asset to be protected, and from the value that asset represents. Zero Trust has been around for quite some time. Most professionals associate Zero Trust with a particular architectural approach to cybersecurity, involving concepts such as segments, resources that are accessed in a secure manner and the maxim “always verify never trust”. This paper describes the current state of the art in Zero Trust usage. We investigate the limitations of current approaches and how these are addressed in the form of Critical Success Factors in the Zero Trust Framework developed by ON2IT ‘Zero Trust Innovators’ (1). Furthermore, this paper describes the design and engineering of a Zero Trust artefact that addresses the problems at hand (2), according to Design Science Research (DSR). The last part of this paper outlines the setup of an empirical validation trough practitioner oriented research, in order to gain a broader acceptance and implementation of Zero Trust strategies (3). The final result is a proposed framework and associated technology which, via Zero Trust principles, addresses multiple layers of the organization to grasp and align cybersecurity risks and understand the readiness and fitness of the organization and its measures to counter cybersecurity risks.
最长约 10秒,即可获得该文献文件

科研通智能强力驱动
Strongly Powered by AbleSci AI
更新
PDF的下载单位、IP信息已删除 (2025-6-4)

科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
刚刚
2秒前
dehai li发布了新的文献求助10
2秒前
陈花蕾完成签到 ,获得积分10
3秒前
4秒前
4秒前
科研通AI5应助3397399014采纳,获得10
4秒前
5秒前
稀松完成签到,获得积分0
5秒前
小蘑菇发布了新的文献求助10
5秒前
科目三应助yunanliu采纳,获得10
7秒前
cqnusq发布了新的文献求助10
7秒前
zzz完成签到,获得积分10
9秒前
轻松凌柏发布了新的文献求助10
9秒前
enen发布了新的文献求助10
9秒前
沉默的绮玉完成签到,获得积分20
12秒前
13秒前
赘婿应助小蘑菇采纳,获得10
13秒前
dehai li完成签到,获得积分10
14秒前
15秒前
Lucas应助cqnusq采纳,获得10
15秒前
16秒前
3397399014发布了新的文献求助10
18秒前
Ihang发布了新的文献求助10
19秒前
起风了发布了新的文献求助20
19秒前
小红书求接接接接一篇完成签到,获得积分10
20秒前
威武板栗完成签到,获得积分20
24秒前
CNAxiaozhu7应助enen采纳,获得10
25秒前
26秒前
Orange应助往事如逝水采纳,获得10
26秒前
大个应助叶子采纳,获得10
26秒前
yuko完成签到 ,获得积分10
27秒前
碲化材料完成签到,获得积分10
27秒前
Owen应助你您采纳,获得10
28秒前
Anjianfubai完成签到,获得积分10
28秒前
30秒前
小蘑菇发布了新的文献求助10
31秒前
852应助科研波比采纳,获得10
33秒前
Lindsay发布了新的文献求助10
35秒前
姜临药完成签到 ,获得积分10
35秒前
高分求助中
(应助此贴封号)【重要!!请各用户(尤其是新用户)详细阅读】【科研通的精品贴汇总】 10000
Handbook of Milkfat Fractionation Technology and Application, by Kerry E. Kaylegian and Robert C. Lindsay, AOCS Press, 1995 1000
A novel angiographic index for predicting the efficacy of drug-coated balloons in small vessels 500
Textbook of Neonatal Resuscitation ® 500
The Affinity Designer Manual - Version 2: A Step-by-Step Beginner's Guide 500
Affinity Designer Essentials: A Complete Guide to Vector Art: Your Ultimate Handbook for High-Quality Vector Graphics 500
Optimisation de cristallisation en solution de deux composés organiques en vue de leur purification 500
热门求助领域 (近24小时)
化学 医学 生物 材料科学 工程类 有机化学 内科学 生物化学 物理 计算机科学 纳米技术 遗传学 基因 复合材料 化学工程 物理化学 病理 催化作用 免疫学 量子力学
热门帖子
关注 科研通微信公众号,转发送积分 5082780
求助须知:如何正确求助?哪些是违规求助? 4300038
关于积分的说明 13398186
捐赠科研通 4124125
什么是DOI,文献DOI怎么找? 2258650
邀请新用户注册赠送积分活动 1262928
关于科研通互助平台的介绍 1196959