Learning path · Advanced
Zero Trust
Sequence a Zero Trust programme across identity, devices, applications, network and data.
What you will be able to do
- Explain policy decision and enforcement points
- Sequence delivery so each stage enables the next
- Define measurable milestones instead of an end state
The path
Work through these in order.
- 01Zero Trust
Principles and the six pillars.
A security model that removes implicit trust based on network location and instead verifies every request explicitly against identity, device and context.
- 02Identity Architecture
The foundation everything else depends on.
The design of directories, identity providers, authentication flows, privilege tiers and lifecycle processes that govern all access.
- 03Device Compliance
Posture as a required access signal.
Evaluating whether a device meets defined security requirements and turning that verdict into an access decision.
- 04Conditional Access
Turning principles into enforced policy.
Policy that evaluates signals about the user, device, application, location and risk at sign in, then grants, blocks or constrains access.
- 05Network Security
Segmentation and egress control.
Controls that constrain how traffic moves: segmentation, filtering, inspection, egress control and monitoring.
- 06Zero Trust Architecture
Reference design and failure modes.
A reference design in which every access request is authenticated, authorised and encrypted per session, with policy enforced close to the resource.
