What are the three main Zero Trust principles?
Verify explicitly, Use least privilege, Assume breach
What does verify explicitly mean?
Always authenticate and authorize using all data points
What does use least privilege mean?
Give users only the access they need, just-in-time and just-enough
What does assume breach mean?
Always monitor, log, and respond as if attackers are already inside
What Microsoft tool supports Zero Trust identity?
Azure Active Directory