DOMAIN 4 OF 8

Communication & Network Security — Zero Trust Is the Floor

The network has dissolved into edge, SaaS, and identity. Strategic lessons on operating modern communication security when the perimeter no longer holds the line.

Ishmael Chibvuri — Cybersecurity StrategistStrategic perspective by Ishmael Chibvuri, CISM · updated 2h ago

There is no perimeter. Most security teams have said that for five years; far fewer have rebuilt their networks to reflect it. The gap between the slide and the topology is where most lateral movement still happens.

What's shifting right now

  • Zero Trust is a stack, not a vendor. The reference architectures from NIST (SP 800-207) and CISA's Zero Trust Maturity Model converge on the same point: identity, device, network, application, and data are five overlapping decision surfaces. Each needs a policy engine.
  • SSE/SASE has consolidated. The fragmented ZTNA/SWG/CASB market has collapsed into a handful of platforms. The strategic question is no longer "do we go SASE" but "which of two or three credible vendors fits our compliance posture and our cloud footprint."
  • Network telemetry is the choke point. Encrypted traffic everywhere means the SOC needs richer flow data, more honest logs, and identity-aware visibility — not deeper inspection of TLS.

What keeps proving true

  • Microsegmentation that nobody can change is microsegmentation that nobody trusts. Build the friction in, but build a paved path through it.
  • VPN debt compounds. Every additional year of "we'll migrate next quarter" widens the lateral-movement surface.
  • DDoS resilience is an availability problem, not a security one — until it is both. Plan for both contexts in the runbook.

Below is where I watch the network-defense feed: ISC handlers, the major vendor research teams, and the steady drumbeat of advisories and IOCs from Talos, Unit 42, and Check Point.

// LIVE FEED

Latest from across the industry

30 items · 5 sources
Check Point Research2h ago

1st June – Threat Intelligence Report

For the latest discoveries in cyber research for the week of 1st June, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Carnival Corporation, a global cruise line operator, has confirmed a data…

Cisco Talos3d ago

Less panic patching, more precision

In this newsletter, Thor breaks down why you should stop relying solely on CVSS and start using EPSS and GCVE to focus your patching efforts on the threats that actually matter.

Check Point Research6d ago

AI Threat Landscape Digest March-April 2026

Executive Summary During the March–April 2026 reporting period, AI use in offensive operations advanced from development and planning to real-time operational deployment. Multiple independent cases, involving individual…

Check Point Research1w ago

25th May – Threat Intelligence Report

For the latest discoveries in cyber research for the week of 25th May, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES 7-Eleven, the global convenience store chain, confirmed a breach after an…

Cisco Talos1w ago

The art of being ungovernable

In this edition of the Threat Source newsletter, William explores the value of being "ungovernable" in a professional setting, sharing how challenging the status quo and seeking out the smartest people in the room can l…

Check Point Research2w ago

18th May – Threat Intelligence Report

For the latest discoveries in cyber research for the week of 18th May, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Vodafone, a major international telecom, has sustained a source code leak…

Cisco Talos2w ago

The time of much patching is coming

In this week’s newsletter, Martin reflects on what the next iteration of AI tools means for vulnerability discovery and our ability to manage large-scale patch releases.

Palo Alto Networks2w ago

The “Why” Behind NextWave’s New Requirements

Learn the NextWave Partner Program new requirements designed to boost partner capabilities, accelerate next-gen security specialization, and deliver greater customer value. The post The “Why” Behind NextWave’s New Requi…

Check Point Research2w ago

Thus Spoke…The Gentlemen

Key Points Introduction The Gentlemen ransomware‑as‑a‑service (RaaS) operation is a relatively new group that emerged around mid‑2025. Its operators advertise the service across multiple underground forums, promoting th…