Zero Trust Architecture for a University
Designed and authored a full Zero Trust Architecture for a large university โ replacing implicit network trust with identity as the control plane, and writing the reference design that ties campus, data centre, and cloud into one enforcement model.
-
Identity-Centric Access
Per-request authorisation driven by user, device, and context rather than network location.
-
Micro-Segmentation
Segmented east-west traffic to contain lateral movement between research, admin, and student zones.
-
Continuous Verification
Ongoing posture and session evaluation, with trust re-scored instead of granted once at login.
-
Hybrid-Cloud Integration
Consistent policy enforcement across on-premises infrastructure and cloud workloads.
- Zero Trust
- Identity & Access Management
- Micro-Segmentation
- Hybrid Cloud
- Security Architecture
- Policy Design