联合任务合作伙伴环境中的 Zero Trust 风险 9页 2023

VIP文档

ID:72675

阅读量:1

大小:0.48 MB

页数:9页

时间:2025-01-03

金币:10

上传者:人情世故
KEITH STRANDELL : SUDIP MITTAL
FALL 2023
|
89
ABSTRACT
Recent cybersecurity events have prompted the federal government to begin inves-
tigating strategies to transition to Zero Trust Architectures (ZTA) for federal infor-
mation systems. Within federated mission networks, ZTA provides means to mini-
mize the potential for unauthorized release and disclosure of information outside
bilateral and multilateral agreements. But when federating with mission partners,
there are potential risks that may undermine the benefits of Zero Trust. This article
explores risks associated with integrating multiple identity models and proposes two
potential avenues to investigate mitigation of these risks.
INTRODUCTION & BACKGROUND
W
ithin days following the cyberattack on the Colonial Pipeline, U.S. Presi-
dent Joseph R. Biden Jr., signed into effect Executive Order 14028: Improv-
ing the Nation’s Cybersecurity.
1
Prompted by recent “sophisticated and
malicious” cyberattacks, the order acts as a catalyst for federal agencies to
take necessary and immediate steps to coordinate with industry on improving informa-
tion sharing, adopting best practices, and migrating federal information systems from
perimeter-based security to a Zero Trust Architecture (ZTA). The foundational elements
of Zero Trust are micro-segmentation and a well-informed trust algorithm. When effec-
tively implemented with data tagging, Zero Trust provides a strong compartmentaliza-
tion model that lends itself to federated mission partner environments. However, in an
environment where mission partners are responsible for bringing to the table their own
identity models, consideration must be given to risks associated with federating multiple
mission partners.
© 2023 Keith Strandell, Dr. Sudip Mittal
Keith Strandell
Dr. Sudip Mittal
Risks to Zero Trust
in a Federated Mission
Partner Environment
资源描述:

当前文档最多预览五页,下载文档查看全文

此文档下载收益归作者所有

当前文档最多预览五页,下载文档查看全文
温馨提示:
1. 部分包含数学公式或PPT动画的文件,查看预览时可能会显示错乱或异常,文件下载后无此问题,请放心下载。
2. 本文档由用户上传,版权归属用户,天天文库负责整理代发布。如果您对本文档版权有争议请及时联系客服。
3. 下载前请仔细阅读文档内容,确认文档内容符合您的需求后进行下载,若出现内容与标题不符可向本站投诉处理。
4. 下载文档时可能由于网络波动等原因无法下载或下载错误,付费完成后未能成功下载的用户请联系客服处理。
关闭