My take on zero trust: the industry has once again reinvented things, supposedly for marketing and related purposes, i.e. it is not like these ideas haven't been around ever since Thompson's Turin award lecture.
> Moreover, zero trust security can also take advantage of micro-segmentation to isolate parts of a network into smaller, more manageable segments. These segments can then be subjected to specific security controls and policies depending on the nature of the processes and data they are handling.
No. Access control should be implemented on a per-resource basis. Even legacy apps can be secured by a reverse proxy.