Where have you faced the most resistance when it comes to implementing zero trust policies?
Sort by:
Zero trust has been around as a concept now for 5+ years. And every single time I've tried to implement it, it’s never worked. Because every time we've reduced the footprint down to zero trust, the people who tend to be the most vulnerable always complain. The CEO’s calling you on their trip to Hong Kong saying, "I don't understand, why can't I access my email? Why can't I get access to this SharePoint site?" You’re like, "I had zero trust and you're in a new place so you have to re-authenticate yourself."
But then they don’t have their dual factor and so on. Pretty quickly we get an edict not to put these measures in place for the executive team. But of course, the executive team is the most vulnerable. So how do you work around human psychology in that regard?
When comes to implementing zero trust, I haven’t received and resistance. I’ve been able to show where the value and security is and why we have an obligation to our customers to implement it. The issue run into right now is budget constraints.