Secure Design Principles Flashcards
1
Q
Zero Trust
A
Focuses on protecting resources to design enterprise infrastructure and not network segments or location. Assumes no implicit trust based on physical or network location. Performs authentication and authorization as distinct tasks before a session is established.
2
Q
Secure by design
A
app developed with security integrated into the entire SDLC
3
Q
Secure by deployment
A
app deployed into an environment where security is considered in the network and system design
4
Q
Secure by default
A
app design assumed natively secure