
For all its sophistication, the Internet age has brought on a digital plague of security breaches. The steady drumbeat of data and identity thefts spawned a new movement and a modern mantra that's even been the subject of a U.S. presidential mandate - zero trust.
So, What Is Zero Trust? Zero trust is a cybersecurity strategy for verifying every user, device, application and transaction in the belief that no user or process should be trusted.
That definition comes from the NSTAC report, a 56-page document on zero trust compiled in 2021 by the U.S. National Security Telecommunications Advisory Committee, a group that included dozens of security experts led by a former AT&T CEO.
In an interview, John Kindervag, the former Forrester Research analyst who created the term, noted that he defines it this way in his Zero Trust Dictionary: Zero trust is a strategic initiative that helps prevent data breaches by eliminating digital trust in a way that can be deployed using off-the-shelf technologies that will improve over time.
What Are the Basic Tenets of Zero Trust? In his 2010 report that coined the term, Kindervag laid out three basic tenets of zero trust. Because all network traffic should be untrusted, he said users must:
verify and secure all resources,
limit and strictly enforce access control, and
inspect and log all network traffic.
That's why zero trust is sometimes known by the motto, Never Trust, Always Verify.
How Do You Implement Zero Trust? As the definitions suggest, zero trust is not a single technique or product, but a set of principles for a modern security policy.
In its seminal 2020 report, the U.S. National Institute for Standards and Technology (NIST) detailed guidelines for implementing zero trust.
Its general approach is described in the chart above. It uses a security information and event management (SIEM) system to collect data and continuous diagnostics and mitigation (CDM) to analyze it and respond to insights and events it uncovers.
It's an example of a security plan also called a zero trust architecture (ZTA) that creates a more secure network called a zero trust environment.
But one size doesn't fit all in zero trust. There's no single deployment plan for ZTA [because each] enterprise will have unique use cases and data assets, the NIST report said.
Five Steps to Zero Trust The job of deploying zero trust can be boiled down to five main steps.
It starts by defining a so-called protect surface, what users want to secure. A protect surface can span systems inside a company's offices, the cloud and the edge.
From there, users create a map of the transactions that typically flow across their networks and a zero trust architecture to protect them. Then they establish security policies for the network.
Finally, they monitor network traffic to make sure transactions stay within the policies.
Both the NSTAC report (above) and Kindervag suggest these same steps to create a zero trust environment.
It's important to note that zero trust is a journey not a destination. Consultants and government agencies recommend users adopt a zero trust maturity model to document an organization's security improvements over time.
The Cybersecurity Infrastructure Security Agency, part of the U.S. Department of Homeland Security, described one such model (see chart below) in a 2021 document.
In practice, users in zero trust environments request access to each protected resource separately. They typically use multi-factor authentication (MFA) such as providing a password on a computer, then a code sent to a smartphone.
The NIST report lists ingredients for an algorithm (below) that determines whether or not a user gets access to a resource.
Ideally, a trust algorithm should be contextual, but this may not always be possible, given a company's resources, it said.
Some argue the quest for an algorithm to measure trustworthiness is counter to the philosophy of zero trust. Others note that machine learning has much to offer here, capturing context across many events on a network to help make sound decisions on access.
The Big Bang of Zero Trust In May 2021, President Joe Biden released an executive order mandating zero trust for the government's computing systems.
The order gave federal agencies 60 days to adopt zero trust architectures based on the NIST recommendations. It also called for a playbook on dealing with security breaches, a safety board to review major incidents - even a program to establish cybersecurity warning labels for some consumer products.
It was a big bang moment for zero trust that's still echoing around the globe.
The likely effect this had on advancing zero trust conversations within boardrooms and among information security teams cannot be overstated, the NSTAC report said.
What's the History of Zero Trust? Around 2003, ideas that led to zero trust started bubbling up inside the U.S. Department of Defense, leading to a 2007 report. About the same time, an informal group of industry security experts called the Jericho Forum coined the term de-perimeterisation.
Kindervag crystalized the concept and gave it a name in his bombshell September 2010 report.
The industry's focus on building a moat around organizations with firewalls and intrusion detection systems was wrongheaded, he argued. Bad actors and inscrutable data packets were already inside organizations, threats that demanded a radically new approach.
Security Goes Beyond Firewalls From his early days installing firewalls, I realized our trust model was a problem, he said in an interview. We took a human concept into the digital world, and it was just silly.
At Forrester, he was tasked with finding out why cybersecurity wasn't working. In 2008, he started using the term zero trust in talks describing his research.
After
Most recent headlines
06/10/2025
France T l visions, France's leading broadcaster, has received the 2025 EBU ...
04/09/2025
Monumental Sports & Entertainment (MSE), in collaboration with Dalet, has been a...
30/08/2025
WASHINGTON The Federal Communications Commission has adopted its FY 2025 Regulatory Fees Order that establishes the regulatory fee rates for the broadcast stati...
29/08/2025
Australian Red Cross and SBS launch training to help workplaces in the fight aga...
29/08/2025
The National Film and Video Foundation (NFVF), an agency of the Department of Sp...
29/08/2025
L3Harris Technologies has concentrated decades of expertise across the entire enterprise to develop affordable and reliable best-of-breed solutions to rapidly c...
29/08/2025
BURBANK, Calif. The CW Network and the Pac-12 Conference have announced a new media rights deal that will extend their broadcast partnership beginning with the ...
29/08/2025
NEW YORK Gracenote has released a new analysis of its global video dataset showing that the number of FAST channels grew nearly 14% from Q1 2025 and 76% since 2...
29/08/2025
SAN JOSE, Calif. Harmonic has announced a series of improvements to its live sports streaming solution that the company said will improve fan engagement, protec...
29/08/2025
NEW YORK and LOS ANGELES Fox Corp. and YouTube TV last night announced a renewal of the full portfolio of Fox networks, including Fox News Channel, Fox Business...
29/08/2025
Budapest, Hungary, August 2025 - The integration of Microsoft Teams Rooms (MTR) with Lightware's Taurus universal matrix switchers delivers a new level of f...
29/08/2025
Frequency, the engine behind many of the world's best-known streaming television channels, today announced it will launch Studio Live, a next-generation uni...
29/08/2025
In an era when AI and cyber resilience are essential, Scality will mark the 10th anniversary of Scality Day on October 16, 2025 in Paris. This flagship global e...
29/08/2025
Disguise's In-House Creative and Technical Teams Pre-Visualised, Programmed and Delivered Content for the Experience, All Powered by EX 3+
Technology solu...
29/08/2025
Disguise will be demonstrating the latest workflows for TV, film and live events on a number of partner booths at the show
Disguise, the industry-leading tech...
29/08/2025
STOCKHOLM, Sweden Accedo will showcase Accedo Compose, its AI agent-powered modular orchestration layer that assists streaming providers in transitioning client...
29/08/2025
LOS ANGELES Cineverse has announced that it is working with Xperi to bring four of its streaming channels to automobiles for the first time as part of the DTS A...
29/08/2025
DALLAS & ATLANTA Gray Media has announced an agreement with the sports streaming service Victory+ to simulcast 17 Dallas Stars NHL games in 15 television market...
29/08/2025
NEW YORK AND CULVER CITY Comcast NBCUniversal and Amazon have announced new and extended distribution agreements that will expand the content available on their...
29/08/2025
FOOTHILL RANCH, Calif. RED Digital Cinema will feature its Cine-Broadcast Module supporting live broadcast workflows during IBC2025, Sept. 12-15, at the RAI Ams...
29/08/2025
29 Aug 2025
Kyivstar Rings Opening Bell at Nasdaq Marking Landmark Listing and ...
29/08/2025
More than half of all NFL games live on Sky for the first timeFriday 29 August 2025
Sky Sports has announced a new three-year deal with the NFL, extending its ...
29/08/2025
Back to All News
RIV4LRIES: The Trailer of the New Series With Samuele Carrino ...
29/08/2025
Get ready for an inspiring and emotional insight into the world of competitive Irish dancing with My Story: Tomi Champion of the World airing on RT 2 this monda...
29/08/2025
RT has today announced that David McCullagh is to be the new presenter of RT Radio 1's flagship Today programme, which airs every weekday at 10am, replaci...
28/08/2025
By Kristin Feeley, Director, Documentary Film & Artist Programs
If you want to tell untold stories, if you want to give voice to the voiceless, you've got ...
28/08/2025
Directed by Steven Bognar and Julia Reichert, Sundance Institute-supported Amer...
28/08/2025
Corridos have been a cornerstone of M sica Mexicana for generations, telling stories rooted in everyday life. Now, a new chapter is taking shape: motivational c...
28/08/2025
Los corridos han sido un pilar de la M sica Mexicana durante generaciones, contando historias enraizadas en la vida cotidiana. Ahora, un nuevo cap tulo est tom...
28/08/2025
Earlier this month, we promised our Verano Forever party would bring the heat, a...
28/08/2025
L3Harris will provide the Polish F-16V fleet with the Viper Shield electronic warfare system as part of an upgrade program....
28/08/2025
Bilbao, August 26, 2025 - AgileTV, an international television and video technol...
28/08/2025
Ken Wilkinson is an Emmy Awards nominated New York audio engineer who specialises in production sound mixing for film, commercial, episodic and documentary work...
28/08/2025
NEW YORK FuboTV today announced that it will launch Fubo Sports, a skinny bundle that focuses on sports with a subscription price of $56 monthly....
28/08/2025
NEVADA City, Calif. At IBC2025, Sept. 12-15 at the RAI Amsterdam, Telestream will debut its new Global Ingest strategy, introducing a next-generation ingest arc...
28/08/2025
Dr. Rhoda Bernard Releases Groundbreaking Debut Book on Accessible Arts Educatio...
28/08/2025
TAG Video Systems, the leader in software-based IP end-to-end workflow monitoring, deep probing, and real-time visualization, has named Oliver Gappa as Sales Di...
28/08/2025
AI-based voice enhancement will be among a series of innovations making their IBC 2025 debut on the DHD stand B46 in Hall 8 at the RAI Amsterdam Convention Cent...
28/08/2025
Telef nica Servicios Audiovisuales (TSA), the leading system integrator and service provider in the media sector in Spain, with the support of Appear, the globa...
28/08/2025
To fully immerse sailing fans in the world's biggest offshore yacht race, production company, Optical Media turned to LiveU's On-site Production solutio...
28/08/2025
Working with Calrec on its most recent overhaul, radio and television broadcaster, WNED has migrated to a fully IP infrastructure with multiple Type R consoles,...
28/08/2025
Cleeng, the Subscriber Retention Management (SRM ) inventor, has unveiled Cleeng Pro, the first-ever direct-to-consumer (D2C) subscription management platform t...
28/08/2025
Zixi, the industry leader in live broadcast-quality video over IP, today announced that French media distribution platform OKAST has selected Zixi to enable rel...
28/08/2025
Solution offers a streamlined, speaker-free architecture to optimize integration with premium external loudspeakers and advanced loudness metering
Nixer Pro Au...
28/08/2025
Cinegy, the premier provider of software-defined television technology, has announced a strategic partnership with Vision One Touch Film Production Services L.L...
28/08/2025
Telestream, a global leader in media workflow technologies, will debut its new Global Ingest strategy at IBC2025, introducing a next-generation ingest architect...
28/08/2025
Tier 1 operator selects Broadpeak to power high-performance, unified CDN solution across Norway, Sweden and Finland
Broadpeak, a leader in streaming and moneti...
28/08/2025
Leading video software provider, Synamedia, today announced that 24 Frames Digital, one of India's leading live event streaming service providers, has chose...
28/08/2025
Meet VisualOn at IBC2025: See What's Next in AI-Powered Video Streaming Join VisualOn at IBC2025 and discover how our AI-driven Optimizer and advanced media...