Skip to main content

categories

Zero Trust

Browse Pomerium articles in the Zero Trust category.

Topic archive

Resources Categorized: Zero Trust

Google Built an Agent Runtime on Kubernetes. Here's How to Build a Cloud-Agnostic One with Identity Included
blog posts

Google Built an Agent Runtime on Kubernetes. Here's How to Build a Cloud-Agnostic One with Identity Included

Google spent the last year quietly admitting what we already knew: Kubernetes was never designed to run AI agents. As Janakiram MSV writes in The New Stack , Google's GKE Agent Sandbox and the new Agent Substrate project amount to an indirect admission "that the platform that won the container decade is not the right control plane for AI agents."

Why Identity-Aware Access is the Missing Layer in Agentic Security
blog posts

Why Identity-Aware Access is the Missing Layer in Agentic Security

A new VentureBeat analysis from this week lands on a truth that every enterprise security team already feels in their gut: most AI agents are a credential exfiltration waiting to happen. The monolithic agent pattern — where reasoning, execution, credential storage, and tool access all share the same process — creates a threat surface that conventional security tooling wasn't designed to close.

5 Actionable Zero Trust Patterns from NIST SP 1800-35 (and How to Implement Them)
blog posts

5 Actionable Zero Trust Patterns from NIST SP 1800-35 (and How to Implement Them)

Implementing a Zero Trust Architecture (ZTA) is no longer a task that can be pushed to tomorrow—it's best practice to begin implementing it today. Understanding that moving from theory to practical implementation can be challenging, the National Institute of Standards and Technology (NIST) published Special Publication 1800-35 to provide real-world, actionable patterns to guide organizations through their Zero Trust journeys.

Context-Based Access Control and Zero Trust: Key Insights from the CSA White Paper
blog posts

Context-Based Access Control and Zero Trust: Key Insights from the CSA White Paper

The Cloud Security Alliance (CSA) recently released a white paper on Context-Based Access Control (CBAC) and its role in advancing Zero Trust security models. The paper underscores the necessity of shifting from static, trust-based access control to real-time, adaptive authentication that evaluates risk dynamically, and Pomerium was highlighted as a key player in the CBAC space.

12 Zero Trust Architecture Examples With Actionable Guide
blog posts

12 Zero Trust Architecture Examples With Actionable Guide

At this stage, it's safe to assume you're familiar with the core principle of Zero Trust Architecture: "never trust, always verify." Zero Trust is a framework, not a single tool you can install. So, what does a real-world zero-trust architecture example look like? What tools are necessary to achieve full zero trust implementation? In this article, we have presented a zero-trust architecture example to illustrate how a fully secured organization operates and included 12 additional zero-trust examples highlighting the features and tools required for 360-degree zero-trust protection.

What is Zscaler and How Does it Work?
blog posts

What is Zscaler and How Does it Work?

If you’re evaluating a shift from traditional VPNs and considering Zscaler, this article will help. Here, we have explored what is Zscaler and how it works, its offerings, cost, pros, and cons. We have also covered how ZPA works as a VPN replacement and compared it to a promising alternative—Pomerium. Let’s begin.

8 Best Open Source Zero Trust Software Solutions
blog posts

8 Best Open Source Zero Trust Software Solutions

Unlike traditional security, which often grants implicit trust to users solely because they are inside the network, the Zero Trust model grants no implicit trust, and therefore continuously verifies all activity, ensuring that only the right people with the right level of access are authorized to reach the resources within the network. There are many open-source zero-trust software that facilitate this approach by ensuring that no entity, whether inside or outside the network, is trusted by default. Here are eight notable open-source Zero Trust software solutions.

Cloudflare Alternatives & Competitors: CDN, Zero Trust & SASE
blog posts

Cloudflare Alternatives & Competitors: CDN, Zero Trust & SASE

Cloudflare offers a wide range of services, making it difficult to find a single alternative that covers all its capabilities. In this article, we've outlined Cloudflare alternatives for 1) Zero Trust and Secure Access Service Edge (SASE) , and 2) Application and Network Services, allowing you to make an informed decision based on your specific needs. So, without further delay, let’s explore!

Zero Trust VPN: Meaning and Alternatives
blog posts

Zero Trust VPN: Meaning and Alternatives

Zero Trust VPN means a virtual private network service that works on the principle of "never trust, always verify." Although some VPN providers claim to offer Zero Trust VPN, in reality, most VPNs lack some core features and the users need to buy extra security products/services to implement the Zero Trust model.

4 Trends Shaping the Future of Access Control
blog posts

4 Trends Shaping the Future of Access Control

Access control is no longer an afterthought of the development process – it's the cornerstone of a secure environment. The rise of remote work has fundamentally changed how we access data and resources. Organizations now face the challenge of securing access for a distributed workforce while also fending off increasingly sophisticated cyberattacks. Weak access controls leave businesses vulnerable to data breaches and unauthorized access.

Benefits of Zero Trust Architecture as Defined by NIST
blog posts

Benefits of Zero Trust Architecture as Defined by NIST

NIST has released a draft of SP 1800-35 , Implementing a Zero Trust Architecture. The lengthy documents lay out their definition of Zero Trust Architecture (ZTA) , the benefits, why it’s important, a few examples of how an organization can implement them, expected results associated with their example builds, and a mapping of ZTA security characteristics to current cybersecurity standards and compliance.

Highlights from IBM’s Cost of a Data Breach 2022
blog posts

Highlights from IBM’s Cost of a Data Breach 2022

IBM’s yearly Cost of a Data Breach 2022 report is out. The 59 page report by IBM and the Ponemon Institute contains findings based on over 3,600 interviews studying 550 organizations impacted by data breaches that occurred between March 2021 and March 2022. The breaches occurred across 17 countries and regions and in 17 different industries.

Insulation from Third-Party Breaches
blog posts

Insulation from Third-Party Breaches

The world’s #1 identity platform Okta has suffered a potential breach , and thousands of their corporate customers find themselves wondering if they may need to take corrective measures. Though Okta’s Chief Security Officer David Bradbury officially claims “There is no impact to Auth0 customers, and there is no impact to HIPAA and FedRAMP customers”, companies like Cloudflare have taken preventative measures to protect their internal and external accounts against hackers that may exploit Okta’s potential security breach.

The Far Reach of the White House’s Zero Trust Memo
blog posts

The Far Reach of the White House’s Zero Trust Memo

The new White House memo on zero trust is a strong signal that the US federal government is taking an active stance regarding cybersecurity. Not only does this have far-reaching ramifications for the public and private sectors, it also serves to cut through the noise about zero trust with an impartial source. Let’s look at what the White House has to say and what this means for the cybersecurity sector going forward.

CyberSecurity Awareness Month: Cybersecurity First Aligned With Explore. Experience. Share.
blog posts

CyberSecurity Awareness Month: Cybersecurity First Aligned With Explore. Experience. Share.

Once again, we find ourselves combining the Cybersecurity & Infrastructure Security Agency's (CISA) Week 3 theme of Explore. Experience. Share. with Week 4's theme of Cybersecurity First. Ultimately, people and organizations can better prepare for an increasingly virtual world by sharing cybersecurity knowledge and making it top-of-mind.

Get a Personalized Demo

Schedule a Call with a Pomerium Engineer

Get a Demo