Zero Trust in 2024

Issue 8 2023 Integrated Solutions, IoT & Automation

The rapid development of artificial intelligence (AI) applications and uses in 2024 will profoundly impact security operations and AI-driven analytics, which can enhance threat detection, anomaly identification and predictive maintenance. However, one must always keep in mind that the use of AI will also expand in the hands of the criminal element to exploit any weaknesses that can be detected within security systems. Modern physical security solutions heavily rely on networked technologies, which can be vulnerable points of entry for cyber threats.

This has led to the blurred boundary between physical and IT security teams. In 2024, these two teams, which in many cases have worked separately on different agendas, will, more often, start to merge to ensure a more collaborative effort to protect the entire security ecosystem. The pandemic has, in a measure, contributed to the adoption of cloud-based and IoT (Internet of Things) technologies to facilitate remote working during the pandemic, and it has become necessary to consider physical security as inherently linked to digital security.

Expect an increase in AI-enhanced applications supporting a wide range of security functions, allowing a streamlining of routine tasks, and ensuring security personnel can focus on critical issues. Innovations in biometric authentication using AI will improve accuracy and reliability, coupled with the expansion of the effective development of facial recognition, which will play a pivotal role in access control. Enhanced PID systems will detect and respond to unauthorised physical access, and we can expect advancements in sensors, alarms, and perimeter security. Integration with digital security tools will provide a more holistic defence.

As stated previously, the continual expansion of networked technologies provides a level of vulnerability of physical security systems to cyber threats. This will lead to a greater adoption of a Zero Trust Framework within more local and international companies. The Zero Trust Framework is a modern security strategy based on the ‘never trust, always verify’ principle. Instead of assuming that everything behind the corporate firewall is inherently safe, zero trust challenges this notion. It treats every request as if it originates from an open network, regardless of its source or the resources it accesses. The fundamental principles of the Zero Trust model are:

• Verify explicitly: Always authenticate and authorise based on all available data points, including user identity, location, device health, service or workload, data classification and anomalies. Implement least-privilege access by granting just-in-time and just-enough access (JIT/JEA) to minimise exposure.

• Assume breach: Rather than assuming that the network is secure, Zero Trust assumes that a breach has already occurred. It focuses on minimising the blast radius and segmenting access. End-to-end encryption and analytics enhance visibility, threat detection, and overall defences.

• Build a secure hybrid workforce: Embrace a Zero Trust approach to security, especially in today’s hybrid workplace. Enable secure productivity for users working from anywhere.

• Safeguard critical assets: Implement unified data protection and governance practices to secure data, even beyond the network perimeter. Modernise your security posture by reducing vulnerabilities and automating policies.

• Minimise the impact of bad actors: Explicitly verify all internal and external access requests to prevent unauthorised entry. Layered defence mechanisms are essential.

• Stay ahead of regulatory requirements: Develop a comprehensive strategy to protect, manage, and govern data while complying with evolving privacy regulations.

In summary, Zero Trust challenges traditional security assumptions and promotes a proactive, adaptive approach to protect people, devices, apps, and data in our interconnected world, which any developer of products will need to keep in mind in 2024 and beyond. The same applies to companies planning on upgrading or replacing their physical security systems and equipment, in terms of any particular vulnerability which may be present within their security systems, which can be exploited.


Credit(s)




Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

Vodacom Business unveils new cybersecurity report
Information Security IoT & Automation
Cybersecurity as an Imperative for Growth offers insights into the state of cybersecurity in South Africa, the importance of security frameworks in digital resilience and the latest attack methods adopted by cyberattackers.

Read more...
AI-powered automation for an operational efficiency edge
Editor's Choice AI & Data Analytics IoT & Automation
In the fast-moving world of digital transformation, businesses are under immense pressure to accelerate their operations and adapt quickly to stay competitive in an era dominated by AI and technological advancements.

Read more...
Hikvision showcases AIoT advances
Hikvision South Africa AI & Data Analytics Surveillance IoT & Automation
Hikvision successfully hosted its 2024 Shaping Intelligence Summit in October, where the company and its global partners explored the latest innovations in AIoT and highlighted the importance of industry collaborations in building a better world through technology.

Read more...
Navigating a connected, AI-driven future at SATNAC 2024
Infrastructure AI & Data Analytics IoT & Automation
The 2024 Southern Africa Telecommunication Networks and Applications Conference concluded its 26th edition with a call to harness AI to drive positive change across the continent. Moreover, students from Wits, North West and Pretoria universities won the best research paper awards.

Read more...
Streamlining government operations with biometrics-driven self-service
NEC XON Government and Parastatal (Industry) Access Control & Identity Management IoT & Automation
The digital age has ushered in unprecedented opportunities for governments worldwide to enhance service delivery, reduce bureaucratic inefficiencies, and fulfil the vision of e-government services, and biometrics is a core aspect of this transformation.

Read more...
Cost-effective and reliable remote connectivity
Agriculture (Industry) Integrated Solutions Infrastructure
Companies that operate in hard-to-connect areas now have access to reliable connectivity due to a collaboration between MTN South Africa, Vox and Tarana technology.

Read more...
Advanced Perimeter Intrusion Detection Systems
XtraVision OPTEX Technews Publishing Modular Communications Perimeter Security, Alarms & Intruder Detection Integrated Solutions Products & Solutions
Making full use of fibre installations around the perimeter by adding Perimeter Intrusion Detection Systems means you can easily add another layer of security to existing surveillance and fencing systems.

Read more...
A critical component of perimeter security
Nemtek Electric Fencing Products Gallagher Technews Publishing Stafix Editor's Choice Perimeter Security, Alarms & Intruder Detection Integrated Solutions
Electric fences are standard in South Africa, but today, they also need to be able to integrate with other technologies and become part of a broader perimeter security solution.

Read more...
Using advanced surveillance technology as a smart city enabler
Duxbury Networking Integrated Solutions Surveillance
Smart cities are increasingly becoming a focus area for African governments and companies. However, the transition to these environments does not come without challenges, especially when it comes to security and resource management.

Read more...
What is the level of safety and integrity of the software supply chain?
Information Security IoT & Automation
Organisations are embracing AppSec practices and focusing on their software security posture. However, they highlight that insufficient funding and security resources, plus a disconnect between developers and security teams, remain major roadblocks.

Read more...