Zero Trust Architecture in Cloud Security

Rajesh Kanna Rajendran, T. Mohana Priya, Sam Goundar, K. Reddy Madhavi, J. Avanija, Basi Reddy Avula · Advances in information security, privacy, and ethics book series · 2024

Zero Trust Architecture (ZTA) represents a paradigm shift in cloud security by challenging the outdated model of implicitly trusting internal networks. Instead of assuming trust based on network location, ZTA treats every access request—whether from inside or outside the network—as potentially malicious. This approach is crucial in cloud environments, where resources are accessed from diverse locations and devices. Implementing ZTA involves rigorous identity verification, robust multi-factor authentication (MFA), and the principle of least privilege, which restricts access to only what is necessary for users and devices. For example, deploying micro-segmentation in cloud environments can reduce the attack surface by up to 80%, effectively isolating workloads and limiting lateral movement during breaches. Advanced threat detection systems, often powered by artificial intelligence and machine learning, are employed to enhance anomaly detection and automate responses to security incidents.

Read the paper · More papers on PaperTik