Zero Trust

 View Only
Expand all | Collapse all

Recap: Business Value of Zero Trust working session, May 17

  • 1.  Recap: Business Value of Zero Trust working session, May 17

    Posted May 18, 2023 05:43:00 AM
    Edited by Jason Garbis May 18, 2023 05:48:32 AM

    Thanks all for a productive and interesting working session yesterday, on Communicating the Business Value of Zero Trust.
    The Zoom recording link (no password required, but registration is): https://cloudsecurityalliance.zoom.us/rec/share/yMtpCHYZOrNfUh5KX18BhJzcLlQpfaOKaVYDb7a2ZWYQLN3blNaYtxTnMwZeiFKZ.RHkskTnFTfxZMZ0

    AI-generated meeting summary appended below ! (I have to say, it's pretty impressive)

    We're making good progress on the document https://docs.google.com/document/d/1jUXupwxigUSb6VQvgNFOx-0r7rRL_comJvdxOiZT8UM/edit?usp=sharing 
    Our current plan is: Before the next meeting - May 31 - we will have completed draft content. In that session we will review, and decide on any open items or to-do's. And, we'll plan to get the doc into peer review within 10 days of that meeting.

    Thanks again to those of you who are contributing to the document. We still have some open and unassigned sections - look for "Author needed" - and please add your name and start contributing.

    AI-generated meeting summary:

    Jason led a meeting to work on closing out the work on the communicating the business value of the trust white paper. They discussed getting it content complete by the end of the month and ready for peer review, with some flexibility on the level of polish needed for the review.
    0:00
     Jason Started Screensharing Jason, Erik, and Rajesh discussed a research document template and assigned tasks to each other. Rajesh offered to work on any task assigned to him.

    1:27
    The group discussed the creation of a document focused on communicating business value, with a section on risk to be added later. They also joked about software downgrades and Microsoft's inability to enter the automobile industry.

    3:25
    The group discussed the order and content of a document on the business value of zero trust. They agreed on the importance of topics such as cost reduction optimization and operational resilience, and considered adding a section on risk reduction.

    12:41
    The group discussed the benefits of Zero Trust in reducing IT risks and promoting dynamic risk-based security controls, as well as its potential impact on compliance and business agility. They also touched on the importance of considering operational resilience and secure adoption of new technology.

    22:18
    The group discussed various aspects of implementing a zero trust model, including third party risk, improving user experience, and the need for a culture shift within the organization. They debated the benefits and challenges of each topic and ultimately came to some agreements on how to approach them.

    31:54
    The group discussed the importance of promoting increased alignment between the business model and the security architecture, reducing complexity, and supporting strategic business initiatives through the implementation of zero trust. They also talked about the need to streamline processes and reduce bureaucracy to enable better business outcomes.

    41:02
    The group discussed a compliance task and a draft that they had. Alex offered to contribute but had enough on their plate. They also talked about the cultural perspective and ended the conversation with good work and goodbyes




    regards
    Jason






    ------------------------------
    Jason Garbis, CISSP
    Co-Chair, Zero Trust Working Group
    Principal, Numberline Security
    Author: Zero Trust Security: An Enterprise Guide
    ------------------------------



  • 2.  RE: Recap: Business Value of Zero Trust working session, May 17

    Posted May 19, 2023 09:19:00 AM

    The synthesis identified lots of group discussion :)   The group is predictable in that it discusses every topic raised.  The group is big on discussion and short on outcome detail for each topic?  Surely not, chat bot!



    ------------------------------
    Nya Murray
    Director
    Trac-Car
    ------------------------------