Master Course in Zero Trust Architecture 2.0

所在平台: Udemy

课程主页: https://www.udemy.com/course/zero-trust-architecture/

课程评论:没有评论

第一个写评论        关注课程

课程简介

****《零信任架构 2.0 精通课程》内容概要** 本课程旨在帮助学员深入理解零信任架构(Zero Trust Architecture, ZTA)的核心理念、实践方法及前沿发展。遵循“永不信任,始终验证”的原则,零信任架构通过精细化的身份验证、最小权限原则以及基于上下文的访问控制,极大地简化了网络基础设施,提升了用户体验,并有效抵御日益增长的网络威胁。 **课程主要内容涵盖以下五个方面:** 1. **零信任架构 2.0 导论与重要性**:介绍零信任概念的演进,探讨其在当前网络安全形势下的关键作用和必要性。 2. **零信任架构的目标、概念、维护与支柱**:深入剖析零信任架构的设计目标,阐述其核心概念,探讨如何进行维护,并详细讲解支撑零信任的关键支柱(如身份、设备、网络、应用程序和数据)。 3. **微软、甲骨文和 IBM 的零信任架构实践**:通过分析业界领先技术公司(如微软、甲骨文和 IBM)在零信任架构方面的实施案例和策略,学习其成功经验和最佳实践。 4. **零信任架构设计原则与框架**:系统性地介绍零信任架构的设计原则,包括软件定义微隔离、API 安全、数据安全等,并探讨常用的零信任框架。 5. **构建零信任架构与策略**:指导学员如何根据自身业务需求,规划和实施零信任架构,制定有效的零信任安全策略,并逐步推进其落地。 本课程强调,零信任架构不再依赖于传统的基于边界的网络安全模型,而是通过软件定义的微隔离,无论数据、工作流、服务位于何处(数据中心、混合云或多云环境),都能提供精细化的访问控制。它将数据安全置于全新视角,通过场景化参数控制访问,实现对网络通信和数据使用的全面可见性和控制力,确保只有经过严格验证且具有必要权限的用户才能访问相关资源。

课程评论(0条)

课程详情

Master course in Zero Trust Architecture 2.0What is Zero Trust Architecture?Zero trust is when security policy is applied based on context established through least-privileged access controls and strict authentication, not assumed trust. Zero trust architectures simplify network infrastructure, make users happier, and keep cyberthreats at a distance.Since John Kindervag, then at Forrester Research, coined the phrase, zero trust architectures follow the maxim "never trust, always verify." To block inappropriate access and lateral movement throughout an environment, zero trust architecture enforces access policies based on context-including the user's role and location, the device they're using, and the data they're asking for.A zero trust architecture means you know who's using what, and you can track it, including encrypted traffic; you need to monitor and verify the traffic between parts of the environment; and you need multifactor authentication (MFA) that goes beyond passwords.An important thing to remember is that in a zero trust architecture, a resource's location isn't as important as before. Rather than rigid network segmentation, software-defined microsegmentation protects your data, workflows, services, and such anywhere, in your data center or distributed hybrid or multicloud.By using a network-centric data security strategy that provides specific access only to those who need it, Zero Trust Architecture focuses on the business needs and functionality of an organization. By enabling parameters to dictate access and restrictions, the Zero Trust model views data security from a whole new perspective. As opposed to legacy networks that have little to no visibility or control over network and data usage, Zero Trust Architectures see all network traffic through segmentation gateways with granular policies governing access to data, apps, and assets. There are certain rules that have to be followed before a resource can be accessed in a Zero Trust network.The five major topics I want to cover in this master's course are1. Zero trust architecture 2.0: introduction and importance2. A zero trust architecture's objective, concept, maintenance, and pillars3. Microsoft, Oracle, and IBM zero trust architecture practices4. Zero trust architecture design principles and framework5. Building a zero trust architecture and strategy

课程标签

0人关注该课程

主题相关的课程