Scoping, sizing, and starting Zero Trust
There is only one way to eat an elephant: a bite at a time.
– Desmond Tutu
You can start Zero Trust in many different ways. In fact, many organizations have already started on parts of Zero Trust without realizing it or without calling it Zero Trust. This could include ensuring the integration of security risk into business risk management, adopting modern security operations practices, updating access control and other security approaches for the cloud, and more.
A Zero Trust transformation involves changes across many teams and connecting teams together to work as a team of teams. This is a large scope of changes for an organization to understand, plan, and execute. This naturally leads to questions on how best to scope, size, and start the Zero Trust journey.
The top questions that often arise are the following:
- Will Zero Trust work in my organization? How will it apply to our size, industry, culture, and processes...