
Loading…

Book summary
by Evan Gilman
Premium summary · Opens in the app · 30 min read
For decades, network security operated on a simple premise. Build a strong perimeter. Keep the bad actors out. Trust everything inside.
**Author:** Evan Gilman **Estimated Reading Time:** 48 minutes
You will learn why the traditional approach to network security has failed and how a fundamentally different model can protect modern organizations. This book explains the principles, architecture, and practical implementation of zero trust networking. You will understand how to authenticate and authorize every request, how to secure devices and applications from the ground up, and how to build systems that remain secure even when the network itself is hostile.
This book is for security engineers, system architects, IT leaders, and anyone responsible for protecting digital infrastructure. If you manage networks, design distributed systems, or make decisions about organizational security strategy, the ideas here will reshape how you think about trust, access, and defense.
For decades, network security operated on a simple premise. Build a strong perimeter. Keep the bad actors out. Trust everything inside. This model worked when organizations owned their data centers, when employees sat in offices, and when applications ran on servers the company controlled. The network had a clear inside and a clear outside. Firewalls guarded the boundary. VPNs extended it for remote workers. Once you were in, you were trusted. That world no longer exists. Today, applications span multiple clouds. Employees work from coffee shops, airports, and home offices. Partners and contractors need access to internal systems. Data flows between services that no single team fully controls. The perimeter has dissolved. There is no clear inside. There is no clear outside. There is only a sprawling, dynamic, and inherently hostile environment where the old assumptions no longer hold. The consequences of clinging to the perimeter model are severe. Attackers who breach the outer defenses find themselves inside a soft, trusting interior. They move laterally from system to system, often undetected for months. The 2013 Target breach, the 2017 Equifax disaster, and countless other incidents followed this exact pattern. A single compromised credential or vulnerable server became a gateway to catastrophic damage. Evan Gilman and his co-author Doug Barth recognized that the problem was not inadequate firewalls or insufficiently complex VPN configurations. The problem was the model itself. Trusting the network was the fundamental error. Zero trust networking offers a different philosophy. It begins with a stark premise: the network is always hostile. Every request, whether it originates from a cubicle in headquarters or a server in a public cloud, must prove itself. No device is trusted by default. No user is trusted by default. No application is trusted by default. Authentication and authorization happen continuously, for every connection, at every layer. This is not a minor adjustment to existing security practices. It is a complete inversion of how we think about network defense. Instead of asking "Is…
Continue reading in the MinuteRead app
Get the complete 30-minute summary of Zero Trust Networks
Get the complete summary in the appAssume the network is always hostile. Design systems accordingly.
Authenticate and authorize every request, regardless of where it originates.
Encrypt all traffic in transit, internal and external, without exception.
Build identity as the foundation of all access decisions. Multi-factor authentication is mandatory.
Trust devices only after verifying their identity and health continuously.
Separate the control plane from the data plane to centralize policy and simplify enforcement.
"Zero Trust Networks" is a strong fit if you want practical ideas around technology, programming, technical, especially themes like assume the network is always hostile. design systems accordingly; authenticate and authorize every request, regardless of where it originates. The MinuteRead summary distills these concepts into a focused read, whether you're deciding whether to buy the book or applying its lessons at work.
Evan Gilman is a respected author and expert in the field of network security. He co-authored "Zero Trust Networks: Building Secure Systems in Untrusted Networks" with Doug Barth, which has become a seminal work on the zero trust security model. Gilman's expertise lies in designing and implementing secure network architectures, particularly those based on zero trust principles. His work has contributed significantly to the advancement of modern cybersecurity practices, focusing on treating all n…
View all summaries by Evan GilmanContinue Reading
Access the complete 30-minute summary and thousands more nonfiction books in the MinuteRead app.
Continue reading the complete summary in the MinuteRead app.