Zero Trust Architecture for Security Architects: From Network Design to Identity Integration
1h 38mBeginner2025-10-22
Authors

Taha Sajid
Course details
In an era where perimeter defenses are no longer enough, Zero Trust has emerged as the gold standard for securing modern digital environments. This course equips security architects with the tools to design, implement, and operationalize Zero Trust across networks, cloud platforms, and identity systems. Join instructor Taha Sajid as he shows you how to translate NIST 800-207 principles into real-world architectures, align security with business strategy, and address threats proactively. Whether you're modernizing legacy infrastructure or building secure systems from the ground up, this course equips you with a blueprint for long-term Zero Trust success.
Learning objectives
Design a Zero Trust architecture using key principles from the NIST 800-207 framework.
Map Zero Trust security controls to network segments, workloads, identities, and data flows across hybrid and cloud environments.
Integrate identity and access management (IAM), including SSO, MFA, and least privilege, into a unified Zero Trust architecture.
Develop a Zero Trust reference architecture and apply it to real-world business use cases.
Evaluate and align Zero Trust initiatives with business objectives, compliance requirements, and risk management strategies.
Learning objectives
Design a Zero Trust architecture using key principles from the NIST 800-207 framework.
Map Zero Trust security controls to network segments, workloads, identities, and data flows across hybrid and cloud environments.
Integrate identity and access management (IAM), including SSO, MFA, and least privilege, into a unified Zero Trust architecture.
Develop a Zero Trust reference architecture and apply it to real-world business use cases.
Evaluate and align Zero Trust initiatives with business objectives, compliance requirements, and risk management strategies.
Skills covered
Vulnerability ManagementCybersecurityOne-Off
Concepts
Introduction
- Redefining security - The Zero Trust playbook for architects
- What you should know
Foundations and Frameworks of Zero Trust
- Introduction to Zero Trust
- Core security principles of Zero Trust
- Comparing legacy security vs. Zero Trust
- Understanding NIST 800-207 framework
- Exploring CISA s Zero Trust Maturity Model (ZTMM)
Reference Architecture and Network Design
- Building a Zero Trust reference architecture
- Policy decision and enforcement points (PDP PEP)
- Software-defined perimeters (SDP) and secure access
- Designing for network segmentation and micro-segmentation
- Create a segmentation plan
- Securing multi-cloud and hybrid environments
Identity, Access, and Data Protection
- The role of identity in Zero Trust
- Integrating MFA, SSO, and federated identity
- Identity governance and lifecycle management
- Least privilege access and RBAC
- Just-in-time (JIT) access and policy enforcement
- Zero Trust network access (ZTNA) and SASE integration
Operationalizing and Scaling Zero Trust
- Embedding Zero Trust in DevSecOps
- Zero Trust monitoring, detection, and response
- Zero Trust compliance and mapping to frameworks
- Zero Trust program governance and adoption
- Implementing Zero Trust - A five-step process
Conclusion
- Next steps