Zero Trust Security Capabilities

Zero trust relies on several security capabilities across identity, devices, networks, and applications.

Pillars and Capabilities

Identity

  • IAM
  • IGA
  • PIM & PAM
  • RBAC
  • Secrets management
  • Identity federation
  • PBAC

Device

  • Device inventory
  • Device baseline and hardening
  • Device authentication and authorization
  • Device compliance
  • Device encryption
  • Device sandboxing

Networks & Infrastructure

  • SD-WAN
  • Network segmentation
  • DDoS protection
  • SWG and ZTNA
  • NAC
  • IDS and IPS
  • NGFW

Application

  • API security

Goal

Each pillar contributes to making access decisions explicit, adaptive, and risk-aware.