Australia, Dec 12, 2023
In a recent blog, we discussed what Zero Trust actually is and how it is the cornerstone to businesses and organisations in today’s rapidly evolving threat landscape.
Since then, we have seen an increase in people reaching out, asking for some more detail around its principles. First, however, let’s start with a brief recap.
So, what is Zero Trust? It’s a new approach to security.
Remember, it’s not a product – it’s a strategy that’s implemented through people, processes, and technology. You cannot just buy ‘Zero Trust’. There is a lot of noise in the market, perpetuated by vendors, touting their product or feature that purports to achieve ‘Zero Trust’. How do you know who, or what, to believe? Yes, they may achieve some, perhaps many, of the Zero Trust architecture requirements. But, in reality, you will need a combination of policies, processes and technologies to achieve true and meaningful Zero Trust.
Fundamentally, Zero Trust is based on 3 Principles;
-
Continuously verify
-
Least privilege access
-
Assume breach
The Zero Trust mantra is “never trust, always verify” and it’s based on these principles of continuous verification, applying least privilege and always assuming that you’ve be breached. Let’s take a closer look.
Continuously verify - just because you logged on yesterday using the same laptop that you’re using today; you’ll still have to verify your identity by providing more than a username and password. For example, this may be a one-time code sent to your phone, to protect against a cyber attacker using your stolen username and password.
Least privileged access - once authenticated and your device checked it is in good health, you’ll then be authorised with minimum (ie, just enough) access rights to the services and data you need in your role at that given time. Should you need more, you can readily request privileged access as required and at that time. In this way, the chances either external or internal ‘bad actors’ having unauthorised privileged access to systems and sensitive data is mitigated. Remember, even internal disgruntled workers are a real threat to sensitive data - remember WikiLeaks? It’s all too common for people leaving an organisation to try and take sensitive data with them. With a Zero Trust approach, the chances and impact of this risk are significantly reduced.
Assume breach – a healthy mind set in cyber security is one of paranoia. That it is not just a case of assuming we will be hacked (which we should and will), but that we are being hacked right now. Of course, we want to stop a breach before it occurs, but taking this approach means you are always prepared for the worst situation and in the best place to recover from it when it happens.
Components of this principle can include segmenting your network in to separate, untrusted zones, encrypting your data to mitigate it being usable if stolen, managing back-door vulnerabilities, and enabling observability across your entire infrastructure.
By adopting these three guiding principles, you are putting your organisation in the best place to deal with the rapidly evolving, modern threat landscape. However, this is just the start. Zero Trust is a journey, not a destination. It never ends. Step one is to understand where you are today, before mapping out your next priorities.
Consultancy services such as Logicalis’ Zero Trust Assessment can identify your current gaps, recommend next steps, and provide you with a blueprint for your Zero Trust journey. Find out more and get in touch today!
Related Insights
Australia , Nov 13, 2024
Creating Change: How We Can All Contribute to Sustainability
Last month, our global CEO, Bob Bailkoski, visited Sydney and Melbourne for the final two events on the global CIO Summit Roadshow. In his keynote, Bob reflected on a decade of the Logicalis CIO Report, tracing the journey from 2014's "shadow IT" to today's complex landscape of technological growth, cybersecurity, and increasing regulatory and sustainability demands.
Australia , Nov 11, 2024
The Importance of an Incidence Response Plan
In today’s interconnected world, service outages can have serious repercussions for any organisation, affecting operations, customer trust, and even compliance with regulations. Without a clear plan, teams may make rushed decisions under pressure, leading to greater disruptions or prolonged recovery times.
Australia , Nov 5, 2024
Balancing digital innovation and cybersecurity in the public sector
Balancing risk with digital innovation is a critical priority for government departments, agencies, and organisations as they navigate the complexities of digital transformation.
Australia , Oct 31, 2024
Logicalis Australia named FY24 Dell Technologies APJ Channel Services Partner of the Year and Top Performer of the Year – Solution Provider
Logicalis Australia is thrilled to have been named FY24 Dell Technologies Asia Pacific and Japan (APJ) Channel Services Partner of the Year and also recognised as the Top Performer of the Year – Solution Provider.
Australia , Oct 25, 2024
Why getting AI adoption right the first time is crucial for success
The potential of AI is vast, offering opportunities to enhance efficiency, drive innovation, and reshape entire sectors.
Australia , Oct 21, 2024
Logicalis Australia Excels at Gartner Symposium 2024: AI, Sustainability, and C-Level Collaboration Lead the Conversation
I recently attended Gartner Symposium 2024 on the Gold Coast, with Logicalis Australia there in force over the three days to build our brand and have plenty of engaging conversations with customers and prospects.
Australia , Sep 13, 2024
A Game-Changing Experience: Recap of the Gartner IT Symposium/Xpo™ on the Gold Coast
From September 9th to 11th, the Gartner IT Symposium on the Gold Coast brought together over 2,000 IT professionals, including a large contingent from Logicalis Australia.
Australia , Sep 8, 2024
Interview series - Part 2: APAC CEO Chong-Win Lee shares regional trends from the 2024 Logicalis CIO Report
Chong-Win Lee (Win) recently became CEO of Logicalis Asia Pacific, after the company combined its Asian and Australian operations in May 2024.
Australia , Aug 5, 2024
Women in tech: Finding an employer that will support career growth
In her latest article, Dina Knight, Chief People Office at Logicalis shares her insights on what women should look out for when considering organisations that will support their career growth. She draws on her experience at Logicalis to outline her top tips, stretching beyond the broad focus on training and skills development.
Australia , Aug 5, 2024
How can C-level leaders unlock enterprise value through Sustainability?
Sustainability has become a crucial factor in driving enterprise value, but how can C-level executives leverage sustainability to enhance their organisation’s performance, compliance and competitive edge?
Australia , Jul 30, 2024
What to do when there’s no silver lining to your public cloud experience
Like many Australian companies recently, your IT team may have shifted from on-premises infrastructure or hosted data centres across to public cloud to access the many benefits of hyperscale cloud computing. While this shift has helped to bring processes online and empower a hybrid workforce with computing power at scale, in some cases it has led to unexpected bill shock each month.
Australia , Jul 25, 2024
AI: Security risk versus business reward in a hybrid working world
Protect your organisation from cyber threats with AI powered security solutions. Enable flexible working while ensuring data privacy and protection. Read Bob Bailkoski's article originally published in Forbes.
Australia , Jul 16, 2024
Interview series - Part 1: APAC CEO Chong-Win Lee shares regional trends from the 2024 Logicalis CIO Report
Chong-Win Lee (Win) recently became CEO of Logicalis Asia Pacific, after the company combined its Asian and Australian operations in May 2024.
Australia , Jun 26, 2024
CEO Sleepout - A day in the life
IoT technologies, AI, and advanced data analytics are shaping up as business-critical solutions that can give Australian companies a significant competitive edge.
Australia , May 29, 2024
The triple bottom line: People, planet & profit
In today's fast changing business world, sustainability isn’t just an option – it’s a must for all industries, including IT. Leading the charge in sustainability not only benefits the planet but it also affects people and profits, aligning with the concept of the triple bottom line.
Australia , May 29, 2024
Empowering productivity with enhanced IoT security approaches
IoT technologies, AI, and advanced data analytics are shaping up as business-critical solutions that can give Australian companies a significant competitive edge.
Australia , Apr 26, 2024
Optimise your journey with these effective steps to cloud migration
Cloud computing is fast becoming critical for organisations that need to work from anywhere, optimise costs, scale the business up or down, or empower company-wide innovation.
Australia , Apr 15, 2024
Logicalis named Australian Microsoft Leader
Logicalis has been named leader in two quadrants of the ISG Microsoft ecosystem report.
Australia , Apr 15, 2024
Top tech trends in cybersecurity spearheading digital change
Cybersecurity is an essential consideration for any organisation undergoing digital transformation. While the focus on cybersecurity in Australia has undoubtedly increased due to rising cybercrime and several high-profile attacks, current trends are causing businesses to rethink their approach.
Australia , Apr 1, 2024
A decade of insight reveals the future of tech leadership in the Logicalis Global CIO Report 2024
In the ever-changing landscape of tech leadership, we are pleased to deliver the first Australian CIO Report, offering a localised perspective on the global findings.
Australia , Mar 26, 2024
Building a Zero Trust Culture at Work
The way we work together in modern business has changed in recent years. We're increasingly relying on collaboration and co-delivery with partner organisations to achieve business goals and remain competitive.
Australia , Mar 7, 2024
Make Cyber-attacks Harder with Application Hardening
For a head of IT or a Chief Security Officer, there's nothing greater than power and control, except perhaps for coming in under budget and on time for a project.
Australia , Dec 8, 2023
ChatGPT and AI chatbots – Is my organisation at risk?
Learn from our Logicalis Australia experts about how ChatGPT and AI chatbots could either enable or shake-up your business processes.
Australia , Dec 8, 2023
IT Ops isn’t changing…it’s changed
For years, the management of IT has been moving away from reactive BAU support (break-fix) and moving towards a more proactive support model. For some organisations the change is still happening; however, for the vast majority, the change has already occurred.
Australia , Nov 13, 2023
Logicalis named 2023 Cisco Global Enterprise Networking and Meraki Partner of the Year for the second consecutive year
Last week, we proudly received the 2023 Cisco Global Enterprise Networking and Meraki Partner of the Year award during Cisco’s annual Partner Summit. The award recognised Logicalis' global capability in Enterprise networking, with Logicalis Portugal receiving a special mention for their standout contribution to driving Intelligent Connectivity managed services to customers in Portugal.
Australia , Nov 13, 2023
Logicalis named inaugural 2023 Cisco Global Sustainability Partner of the Year
Last week, we were honoured to receive the inaugural 2023 Cisco Global Sustainability Partner of the Year award during Cisco's Global Partner Summit event in Miami. This prestigious accolade acknowledges Logicalis' exceptional sustainability achievements and success in helping customers reduce the environmental impact of their digital ecosystems across the globe.
Australia , Oct 24, 2023
Choosing the right MSSP -Top 5 credentials to look for when selecting a Microsoft Managed Security Services provider (MSSP)
Our recent CIO survey shows over half of respondents plan to increase their risk management investment. They also consider malware and ransomware significant risks that their organisations will face in the coming year.
Australia , Sep 21, 2023
The power of next generation connectivity
To be able to succeed, leaders need to create environments that can adapt to maximise opportunities, mitigate risks and most importantly be able to scale both securely and sustainably. The key to this is connectivity.
Australia , Sep 13, 2023
The Evolving Landscape of Data Security and Governance
Anthony Woodward recently shared his views and insights on the dynamic landscape of data security and governance within Australian organisations.
Australia , Aug 9, 2023
Logicalis celebrates incredible growth of Microsoft performance
FY23 has been an extraordinary year for Logicalis’s Microsoft partnership. We’ve seen 60% year-on-year growth reflecting our unwavering commitment to helping customers deliver business value through digital transformation.
Australia , Aug 1, 2023
Logicalis Australia appoints Tim Davoren as Head of Cybersecurity
Building on our customer-centric approach to cyber resilience, Mr Davoren is responsible for accelerating growth and bringing further solutions and partnerships to market.
Australia , Jul 10, 2023
Employee Burnout: Addressing the Root Causes and Empowering Leaders to Combat It
Employee burnout has become an increasingly alarming concern in recent years, and the COVID-19 pandemic has only exacerbated the issue. With the pandemic forcing many employees to work remotely, isolation and blurred boundaries between work and home life have led to a significant increase in burnout cases.
Australia , May 12, 2023
Introducing our Managed Digital Fabric Platform
Hear from Logicalis CTO, Toby Alcock, as he describes the challenges customers are facing and how our Digital Fabric Platformm can enable them to drive business outcomes.
Australia , May 5, 2023
Kate Raulings Reveals Her Path to Success in Cybersecurity
In a featured episode, Kate Raulings, a Senior Consultant with Logicalis Australia - specialising in security and governance, shares her personal journey in cybersecurity, from early exposure to internet technologies to becoming a certified Information Security Manager.
Australia , Oct 12, 2022
Anthony Woodward CEO of Logicalis Australia on selling the value of security as a business enabler
Anthony shares tips on how you can sell the value of security throughout the business and shift the view of security from that of being just a cost centre.
Australia , Sep 28, 2022
De-risking the innovation cycle – a modern, real-time approach to security
Innovation is essential for businesses to stay competitive and meet evolving customer needs, with CIOs playing a significant role in driving innovation. However, cybersecurity is often seen as a hindrance to innovation. To overcome this challenge, businesses should integrate security into their innovation strategies from the beginning and adopt agile and flexible approaches.
Australia , Sep 15, 2021
Trust no one – the rise of Zero Trust
Zero Trust is very topical and most IT vendors and analysts will tell you it’s something that you need to address. So, what is Zero Trust, why is it better and how do you build it?