Zero Trust in 2024

Issue 8 2023 Integrated Solutions, IoT & Automation

The rapid development of artificial intelligence (AI) applications and uses in 2024 will profoundly impact security operations and AI-driven analytics, which can enhance threat detection, anomaly identification and predictive maintenance. However, one must always keep in mind that the use of AI will also expand in the hands of the criminal element to exploit any weaknesses that can be detected within security systems. Modern physical security solutions heavily rely on networked technologies, which can be vulnerable points of entry for cyber threats.

This has led to the blurred boundary between physical and IT security teams. In 2024, these two teams, which in many cases have worked separately on different agendas, will, more often, start to merge to ensure a more collaborative effort to protect the entire security ecosystem. The pandemic has, in a measure, contributed to the adoption of cloud-based and IoT (Internet of Things) technologies to facilitate remote working during the pandemic, and it has become necessary to consider physical security as inherently linked to digital security.

Expect an increase in AI-enhanced applications supporting a wide range of security functions, allowing a streamlining of routine tasks, and ensuring security personnel can focus on critical issues. Innovations in biometric authentication using AI will improve accuracy and reliability, coupled with the expansion of the effective development of facial recognition, which will play a pivotal role in access control. Enhanced PID systems will detect and respond to unauthorised physical access, and we can expect advancements in sensors, alarms, and perimeter security. Integration with digital security tools will provide a more holistic defence.

As stated previously, the continual expansion of networked technologies provides a level of vulnerability of physical security systems to cyber threats. This will lead to a greater adoption of a Zero Trust Framework within more local and international companies. The Zero Trust Framework is a modern security strategy based on the ‘never trust, always verify’ principle. Instead of assuming that everything behind the corporate firewall is inherently safe, zero trust challenges this notion. It treats every request as if it originates from an open network, regardless of its source or the resources it accesses. The fundamental principles of the Zero Trust model are:

• Verify explicitly: Always authenticate and authorise based on all available data points, including user identity, location, device health, service or workload, data classification and anomalies. Implement least-privilege access by granting just-in-time and just-enough access (JIT/JEA) to minimise exposure.

• Assume breach: Rather than assuming that the network is secure, Zero Trust assumes that a breach has already occurred. It focuses on minimising the blast radius and segmenting access. End-to-end encryption and analytics enhance visibility, threat detection, and overall defences.

• Build a secure hybrid workforce: Embrace a Zero Trust approach to security, especially in today’s hybrid workplace. Enable secure productivity for users working from anywhere.

• Safeguard critical assets: Implement unified data protection and governance practices to secure data, even beyond the network perimeter. Modernise your security posture by reducing vulnerabilities and automating policies.

• Minimise the impact of bad actors: Explicitly verify all internal and external access requests to prevent unauthorised entry. Layered defence mechanisms are essential.

• Stay ahead of regulatory requirements: Develop a comprehensive strategy to protect, manage, and govern data while complying with evolving privacy regulations.

In summary, Zero Trust challenges traditional security assumptions and promotes a proactive, adaptive approach to protect people, devices, apps, and data in our interconnected world, which any developer of products will need to keep in mind in 2024 and beyond. The same applies to companies planning on upgrading or replacing their physical security systems and equipment, in terms of any particular vulnerability which may be present within their security systems, which can be exploited.




Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

A layered approach to safety in schools
Surveillance Integrated Solutions Education (Industry)
Physical security in schools and learning institutions is a hot topic in South Africa, with the Gauteng Department of Education recently announcing plans to use AI-powered cameras and biometric access to strengthen school safety.

Read more...
African cities need intelligence, not smart infrastructure
AI & Data Analytics Government and Parastatal (Industry) IoT & Automation
Too many smart city conversations still begin with the visible symbols of progress: cameras, sensors, apps, dashboards, connected streetlights, smart meters, and control rooms. While useful, none of them on their own makes a city intelligent.

Read more...
Integrated layers offer dependable security
OPTEX SMART Security Solutions Technews Publishing Perimeter Security, Alarms & Intruder Detection Integrated Solutions
A layered approach to security tightens protection and minimises downtime and operational risk. Moreover, integrating all the parts of a solution and proving they can do the job before spending money are critical.

Read more...
NEC XON detects and stops ransomware attack
NEC XON Information Security IoT & Automation
Ransomware attacks rarely begin with chaos. More often, they start quietly, with probing, mapping, and patient reconnaissance inside a target’s network. That was the situation facing a global recruitment firm when cybercriminals attempted to navigate its systems.

Read more...
Cybersecurity in a digitally connected security industry
SA Technologies Information Security IoT & Automation
As more organisations move towards digital visitor management, cloud-based access control, mobile applications, biometric verification, and connected security platforms, cybersecurity must be viewed as part of the full security environment.

Read more...
Digital ID and facial recognition for safer learning institutions
Integrated Solutions Education (Industry)
As crime rises, South African schools and tertiary education institutions are locked in an ongoing battle to secure their premises and keep children and students safe. Focusing on advanced digital safeguards could provide enhanced situational awareness and more effective yet unobtrusive protection.

Read more...
Strengthening critical infrastructure security
Integrated Solutions
Security is a top priority for any organisation responsible for safeguarding critical infrastructure. However, recent events have highlighted the fragility of the global energy supply chain and the need for change.

Read more...
Impro announces Primo update
News & Events Access Control & Identity Management Integrated Solutions
Impro Technologies recently held a launch event in which it introduced a series of new products, from new readers through to its updated Primo access management software.

Read more...
The security debt hidden in residential estates
Security Services & Risk Management Integrated Solutions Residential Estate (Industry)
Many residential estates undermine their own security not through a lack of technology, but through hidden weaknesses in gate design, fragmented systems, recurring software dependence, weak operational ownership, and insufficient estate management input.

Read more...
Smarter surveillance in a connected world
Securex South Africa Surveillance IoT & Automation
The security sector is moving rapidly towards integrated, intelligence-led environments. Organisations want systems that communicate with each other, deliver meaningful insight, and support operational efficiency without compromising cybersecurity or privacy.

Read more...










While every effort has been made to ensure the accuracy of the information contained herein, the publisher and its agents cannot be held responsible for any errors contained, or any loss incurred as a result. Articles published do not necessarily reflect the views of the publishers. The editor reserves the right to alter or cut copy. Articles submitted are deemed to have been cleared for publication. Advertisements and company contact details are published as provided by the advertiser. Technews Publishing (Pty) Ltd cannot be held responsible for the accuracy or veracity of supplied material.




© Technews Publishing (Pty) Ltd. | All Rights Reserved.