Today’s federal leaders pull back the curtains of deploying zero trust in a federal environment. Their advice is tempered by a well-known cybersecurity professional, Patrick Sullivan from Akamai.
Steven Hernandez begins the discussion by offering some advice rarely given. He explains that the old paper-based system was painful. Documents would not be returned to the appropriate place; records got lost; documents could be copied. So, when today’s federal technology managers complain about the difficulty in implementing Zero Trust Architecture, please remember where this discussion began.
Regarding the federal Zero Trust journey, Jonathan Feibus recommends an incremental approach. He suggests the path from event and incident management to orchestration and automation can be done methodically. Start with the elements that are easy to deploy, then fill in the gaps to optimize.
Patrick Sullivan has worked with many different agencies; he explains that each agency differs in moving to Zero Trust. One agency may have concerns with legacy systems; another may have migrated to the cloud. Each agency must be approached uniquely because of the tremendous variations that exist.
If you are technically oriented, the guests dive into some of the subtle differences between secure network access and secure network automation. Patrick Sullivan gives a perfect textbook definition of “micro-segmentation.” We are introduced to some dangers of non-human identity management when Steve Hernandez opines about Open Security Controls Assessment Language (OSCAL).
To view this webinar: Building a Flexible Framework for Implementing Zero Trust.
Featured Speakers:

Jonathan Feibus
Chief Information Security Officer, Nuclear Regulatory Commission

Steven Hernandez
Chief Information Security Officer, U.S. Department of Education

Patrick Sullivan
Chief Technology Officer,
Security Strategy, Akamai

