OT / ICS cybersecurity

Zero trust architecture

Zero trust architecture is a security approach built around the principle that no user, device, or system should be trusted by default, even if it's already inside the network perimeter. Instead of granting broad access based on network location (being "inside" the firewall), every request is verified individually. Applying zero trust to OT is more complex than in IT because many legacy control-system devices weren't designed to support modern authentication, which is part of why zero trust adoption in OT tends to lag behind IT.