{"id":8288,"date":"2023-01-08T00:21:30","date_gmt":"2023-01-08T00:21:30","guid":{"rendered":"https:\/\/dmsretail.com\/RetailNews\/why-zero-trust-helps-unlock-security-resilience\/"},"modified":"2023-01-08T00:21:30","modified_gmt":"2023-01-08T00:21:30","slug":"why-zero-trust-helps-unlock-security-resilience","status":"publish","type":"post","link":"https:\/\/dmsretail.com\/RetailNews\/why-zero-trust-helps-unlock-security-resilience\/","title":{"rendered":"Why Zero Trust Helps Unlock Security Resilience"},"content":{"rendered":"<p> <p><a href=\"https:\/\/dmsretail.com\/online-workshops-list\/\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-496\" src=\"https:\/\/dmsretail.com\/RetailNews\/wp-content\/uploads\/2022\/05\/RETAIL-ONLINE-TRAINING-728-X-90.png\" alt=\"Retail Online Training\" width=\"729\" height=\"91\" srcset=\"https:\/\/dmsretail.com\/RetailNews\/wp-content\/uploads\/2022\/05\/RETAIL-ONLINE-TRAINING-728-X-90.png 729w, https:\/\/dmsretail.com\/RetailNews\/wp-content\/uploads\/2022\/05\/RETAIL-ONLINE-TRAINING-728-X-90-300x37.png 300w\" sizes=\"auto, (max-width: 729px) 100vw, 729px\" \/><\/a><\/p><br \/>\n<\/p>\n<div>\n<p>Speaking to many CISOs, it\u2019s clear that many security executives view zero trust as a journey that can be difficult to start, and one that even makes identifying successful outcomes a challenge. Simultaneously, the topic of security resilience has risen up the C-level agenda and is now another focus for security teams. So, are these complementary? Or will they present conflicting demands that will disrupt rather than assist the CISO in their role?<\/p>\n<p>One of the most striking results coming from Cisco\u2019s latest Security Outcomes Report is that organizations with a mature zero trust implementation \u2013 those with basic controls, constant validation and automated workflows \u2013 experience a <strong>30% improvement in security resilience compared to those who have not started their zero trust journey<\/strong>. So, these two initiatives \u2013 implementing zero trust and working to achieve security resilience \u2013 appear to complement each other while supporting the CISO when a cyber black swan swims in.<\/p>\n<p>Security resilience is the ability to withstand an incident and recover more strongly. In other words, ride out the storm and come back better. Meanwhile, zero trust is best known as a \u201cnever trust, always verify\u201d principle. The idea is to check before you provide access, and authenticate identity based on a risk profile of assets and users. This starts to explain why the two are complementary.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" srcset=\"https:\/\/storage.googleapis.com\/blogs-images\/ciscoblogs\/1\/2022\/12\/fgcgfc-300x135.png 300w, https:\/\/storage.googleapis.com\/blogs-images\/ciscoblogs\/1\/2022\/12\/fgcgfc-768x345.png 768w, https:\/\/storage.googleapis.com\/blogs-images\/ciscoblogs\/1\/2022\/12\/fgcgfc-1024x460.png 1024w, https:\/\/storage.googleapis.com\/blogs-images\/ciscoblogs\/1\/2022\/12\/fgcgfc-1536x690.png 1536w, https:\/\/storage.googleapis.com\/blogs-images\/ciscoblogs\/1\/2022\/12\/fgcgfc.png 1833w\" sizes=\"auto, (max-width: 1833px) 100vw, 1833px\" class=\"aligncenter wp-image-424357\" src=\"https:\/\/storage.googleapis.com\/blogs-images\/ciscoblogs\/1\/2022\/12\/fgcgfc.png\" alt=\"Cisco Security Outcomes Report: Resilience Outcomes - Ranked by Importance\" width=\"800\" height=\"360\"\/><\/p>\n<h2><span style=\"color: #6abf4b;\"><strong>The top security resilience outcomes<\/strong><\/span><\/h2>\n<p>The Security Outcomes Report summarizes the results of a survey of more than 4,700 security professionals. Among the insights that emerge are nine security resilience outcomes they consider most important. The top three outcomes for resilience are <strong>prevention<\/strong>, <strong>mitigation <\/strong>and <strong>adaptation<\/strong>. In other words, they prioritize first the ability to avoid an incident by having the right controls in place, then the ability to reduce and reverse the overall impact when an incident occurs, and then the ability to pivot rapidly without being bound by too rigid a set of systems. Zero trust will support these outcomes.<\/p>\n<p>Preventing, or reducing the likelihood of a cybersecurity incident, is an obvious first step and no surprise as the most important outcome. Pursuing programs that identify users and monitor the health of devices is a crucial a preventative step. In fact, simply <strong>ensuring that multifactor authentication (MFA) is ubiquitous across the organization can bring an 11% improvement in security resilience.<\/strong><\/p>\n<p>When incidents occur, security teams will need a clear picture of the incident they are having to manage. This will help in them respond quickly, with a proactive determination of recovery requirements. Previous studies show that once a team achieves 80% coverage of critical systems, the ability to maintain continuity increases measurably. This knowledge will also help teams develop more focused incident response processes. A mature zero trust environment has also been found to almost\u00a0double a team\u2019s ability to streamline\u00a0these processes when compared to a limited zero trust implementation.<\/p>\n<h2><span style=\"color: #6abf4b;\"><strong>Communication is key<\/strong><\/span><\/h2>\n<p>When talking to CISOs about successful implementation programs, communication within the business emerges as a recurring theme. Security teams must inform and guide users through the phases of zero trust implementation, while emphasizing the benefits to them. When users are aware of their responsibility to keep the organization secure, they take a participatory role in an important aspect of the business. So, when an incident occurs, they can support the company\u2019s response. This increases resilience. <span lang=\"EN-GB\">Research has shown<\/span><span lang=\"EN-GB\">\u00a0that\u00a0<b>a<\/b>\u00a0<b>mature program will more than double the effect of efforts to improve the security culture<\/b>.<\/span>\u00a0Additionally, the same communication channels established to spread the word of zero trust now can be called upon when an incident requires immediate action.<\/p>\n<p>Mature implementations have also been seen to help increase cost effectiveness and reduce unplanned work. This releases more resource to cope with the unexpected \u2013 another important driver of resilience surfaced in Volume 3 of the Security Outcomes Report. Having more efficient resources enables the security function to reallocate teams when needed. Reviewing and updating resource processes and procedures, along with all other important processes, is a vital part of any of any change initiative. Mature zero trust environments reflect this commitment continuous assessment and improvement.<\/p>\n<h2><span style=\"color: #6abf4b;\"><strong>Adapt and innovate<\/strong><\/span><\/h2>\n<p>Inherent in organizational resilience is the ability to adapt and innovate. The corporate landscape is littered with examples of those who failed to do those two things. A zero trust environment enables organizations to lower their risk of incidents while adapting their security posture to fit the ongoing changes of the business. Think of developing new partners, supporting new products remotely, securing a changing supply chain. The basic tenets of MFA \u2013 including continuous validation, segmentation and automation \u2013 sets a foundation that accommodates those changes without compromising security. The view that security makes change difficult is becoming obsolete. <strong>With zero trust and other keys to achieving security resilience, security now is a partner in business change.<\/strong> And for those CISOs who fear even starting this journey, understanding the benefits should help them take that first step.<\/p>\n<p><strong>Download the <\/strong><strong><em>Security Outcomes Report, Vol. 3: Achieving Security Resilience<\/em><\/strong><strong> today. <\/strong><\/p>\n<p>Learn more about cybersecurity research and security resilience:<\/p>\n<hr\/>\n<p style=\"text-align: center;\"><em>We\u2019d love to hear what you think. Ask a Question, Comment Below, and Stay Connected with Cisco Secure on social!<\/em><\/p>\n<p style=\"text-align: center;\"><strong>Cisco Secure Social Channels<\/strong><\/p>\n<p style=\"text-align: center;\"><strong>Instagram<\/strong><br \/><strong>Facebook<\/strong><br \/><strong><a href=\"https:\/\/twitter.com\/CiscoSecure\" target=\"_blank\" rel=\"noopener noreferrer\">Twitter<\/a><\/strong><br \/><strong>LinkedIn<\/strong><\/p>\n<p>Share:<\/p>\n<p>\n  \t<\/div>\n<p><script async src=\"\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><script async defer src=\"https:\/\/platform.instagram.com\/en_US\/embeds.js\"><\/script><br \/>\n<br \/><p><a href=\"https:\/\/dmsretail.com\/online-workshops-list\/\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-496\" src=\"https:\/\/dmsretail.com\/RetailNews\/wp-content\/uploads\/2022\/05\/RETAIL-ONLINE-TRAINING-728-X-90.png\" alt=\"Retail Online Training\" width=\"729\" height=\"91\" srcset=\"https:\/\/dmsretail.com\/RetailNews\/wp-content\/uploads\/2022\/05\/RETAIL-ONLINE-TRAINING-728-X-90.png 729w, https:\/\/dmsretail.com\/RetailNews\/wp-content\/uploads\/2022\/05\/RETAIL-ONLINE-TRAINING-728-X-90-300x37.png 300w\" sizes=\"auto, (max-width: 729px) 100vw, 729px\" \/><\/a><\/p><br \/><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Speaking to many CISOs, it\u2019s clear that many security executives view zero trust as a journey that can be difficult to start, and one that [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":8289,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[5],"tags":[],"class_list":["post-8288","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-technology"],"_links":{"self":[{"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/posts\/8288","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/comments?post=8288"}],"version-history":[{"count":0,"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/posts\/8288\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/media\/8289"}],"wp:attachment":[{"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/media?parent=8288"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/categories?post=8288"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/tags?post=8288"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}