Zero Trust Architecture: The NIST 800-207 Blueprint Real Enterprises Actually Use is the Arc One pillar episode of Past The Diagram's Cybersecurity Architecture season, unpacking NIST Special Publication 800-207 tenet by tenet — the policy engine, policy administrator, and policy enforcement point at the core of every real zero-trust deployment. Follows the fictional composite Kestrel Health as it rebuilds its architecture after a six-week breach, phasing in resource-portal and enclave-based deployment models, addressing the latency objection, and mapping progress against CISA's five-pillar Zero Trust Maturity Model. Bridges directly into threat modeling with STRIDE next episode.
Full series playlist: Cybersecurity Architecture
Arc 1 — Threat Landscape & Security Architecture Foundations: Cybersecurity Architecture · Arc 01: Threa...
Chapters
0:00 The Model NIST Published First
0:44 Recap: Why the Perimeter Failed
1:39 The NIST 800-207 Core Model
4:18 How This Actually Gets Deployed
6:00 ZTNA Isn't Zero Trust
7:06 What Kestrel Health Actually Changed
9:02 The Latency Objection
10:16 A Maturity Journey, Not a Project
12:35 How You Know It's Working
13:44 What This Actually Costs
14:57 Where Architects Get This Wrong
16:19 Coming Up Next
Zero Trust Architecture: The NIST 800-207 Blueprint Real Enterprises Actually Use is the Arc One pillar episode of Past The Diagram's Cybersecurity Architecture season, unpacking NIST Special Publication 800-207 tenet by tenet — the policy engine, policy administrator, and policy enforcement point at the core of every real zero-trust deployment. Follows the fictional composite Kestrel Health as it rebuilds its architecture after a six-week breach, phasing in resource-portal and enclave-based deployment models, addressing the latency objection, and mapping progress against CISA's five-pillar Zero Trust Maturity Model. Bridges directly into threat modeling with STRIDE next episode.
Full series playlist: Cybersecurity Architecture
Arc 1 — Threat Landscape & Security Architecture Foundations: Cybersecurity Architecture · Arc 01: Threa...
Chapters
0:00 The Model NIST Published First
0:44 Recap: Why the Perimeter Failed
1:39 The NIST 800-207 Core Model
4:18 How This Actually Gets Deployed
6:00 ZTNA Isn't Zero Trust
7:06 What Kestrel Health Actually Changed
9:02 The Latency Objection
10:16 A Maturity Journey, Not a Project
12:35 How You Know It's Working
13:44 What This Actually Costs
14:57 Where Architects Get This Wrong
16:19 Coming Up Next
Not from this series, but free either way: seven TOGAF engagement artifacts, templates with a worked example beside each — https://lerutaolo.co.za/pastthediagram