Skip to content
This repository was archived by the owner on Aug 28, 2026. It is now read-only.
Open
Changes from all commits
Commits
Show all changes
229 commits
Select commit Hold shift + click to select a range
42288f7
update
openpublishbuild Apr 15, 2026
7eb389f
updating new TOC
rayne-wiselman May 4, 2026
0806f74
updating new TOC
rayne-wiselman May 4, 2026
e992542
updating new TOC
rayne-wiselman May 4, 2026
bc4369e
updating new TOC
rayne-wiselman May 4, 2026
4730557
updating new TOC
rayne-wiselman May 4, 2026
808aa08
updating new TOC
rayne-wiselman May 4, 2026
68cb986
updating new TOC
rayne-wiselman May 4, 2026
8ca3238
updating new TOC
rayne-wiselman May 4, 2026
10ba192
updating new TOC
rayne-wiselman May 5, 2026
8c4fc5c
updating new TOC
rayne-wiselman May 5, 2026
f90b96c
updating new TOC
rayne-wiselman May 5, 2026
107cb23
updating new TOC
rayne-wiselman May 5, 2026
8461122
updating new TOC
rayne-wiselman May 5, 2026
2e1a67b
updating new TOC
rayne-wiselman May 5, 2026
00f8136
updating new TOC
rayne-wiselman May 5, 2026
724cc38
updating new TOC
rayne-wiselman May 5, 2026
fb3cb9c
updating new TOC
rayne-wiselman May 5, 2026
5ad8644
updating new TOC
rayne-wiselman May 5, 2026
2b1688a
updating new TOC
rayne-wiselman May 5, 2026
7284395
updating new TOC
rayne-wiselman May 5, 2026
271266d
updating new TOC
rayne-wiselman May 5, 2026
752b6b6
updating new TOC
rayne-wiselman May 5, 2026
9952fc1
updating new TOC
rayne-wiselman May 5, 2026
a845776
updating new TOC
rayne-wiselman May 5, 2026
af947c2
updating new TOC
rayne-wiselman May 5, 2026
e4d64c1
updating new TOC
rayne-wiselman May 5, 2026
20c420f
updating new TOC
rayne-wiselman May 5, 2026
a88c57e
updating new TOC
rayne-wiselman May 5, 2026
58c3686
updating new TOC
rayne-wiselman May 5, 2026
085e029
updating new TOC
rayne-wiselman May 5, 2026
7e1c8bc
updating new TOC
rayne-wiselman May 6, 2026
220e527
updating new TOC
rayne-wiselman May 6, 2026
07c605a
updating new TOC
rayne-wiselman May 6, 2026
75ee6d7
updating new TOC
rayne-wiselman May 6, 2026
9c5013b
updating new TOC
rayne-wiselman May 6, 2026
c8ed30d
updating new TOC
rayne-wiselman May 6, 2026
8d5bb80
updating new TOC
rayne-wiselman May 6, 2026
b060937
updating new TOC
rayne-wiselman May 6, 2026
2f1744f
updating new TOC
rayne-wiselman May 6, 2026
537da80
updating new TOC
rayne-wiselman May 6, 2026
4ce1b17
updating new TOC
rayne-wiselman May 6, 2026
45329b9
updating new TOC
rayne-wiselman May 6, 2026
b585cda
updating new TOC
rayne-wiselman May 10, 2026
6651de1
updating new TOC
rayne-wiselman May 11, 2026
3d3c7be
updating new TOC
rayne-wiselman May 11, 2026
f8761b4
updating new TOC
rayne-wiselman May 11, 2026
04d6bed
updating new TOC
rayne-wiselman May 12, 2026
16aa3c9
updating new TOC
rayne-wiselman May 12, 2026
45c4713
updating new TOC
rayne-wiselman May 12, 2026
c0e0928
fixing issues
rayne-wiselman May 17, 2026
06b8698
fixing issues
rayne-wiselman May 17, 2026
8a7efbc
fixing issues
rayne-wiselman May 17, 2026
61e7fa0
fixing issues
rayne-wiselman May 17, 2026
d1ef364
fixing issues
rayne-wiselman May 17, 2026
27b0820
fixing issues
rayne-wiselman May 17, 2026
74005a0
fixing issues
rayne-wiselman May 17, 2026
de38464
fixing issues
rayne-wiselman May 17, 2026
dd71972
Apply suggestion from @learn-build-service-prod-10[bot]
rayne-wiselman May 17, 2026
113e830
Apply suggestion from @learn-build-service-prod-10[bot]
rayne-wiselman May 17, 2026
843ce1f
Apply suggestion from @learn-build-service-prod-10[bot]
rayne-wiselman May 17, 2026
0962c5e
Apply suggestion from @learn-build-service-prod-10[bot]
rayne-wiselman May 17, 2026
ecf4392
saving local changes
rayne-wiselman May 17, 2026
836f6f0
updated conflicting files
rayne-wiselman May 17, 2026
efc8f84
Merge branch 'raynemain-may4' of https://github.com/rayne-wiselman/se…
rayne-wiselman May 17, 2026
833842a
Apply suggestions from code review
rayne-wiselman May 17, 2026
b9377e7
Update security-docs/zero-trust/adopt/implement-privileged-access-dev…
rayne-wiselman May 17, 2026
fbdbae1
Apply suggestions from code review
rayne-wiselman May 17, 2026
ae9516a
merging files
rayne-wiselman May 17, 2026
868763f
merging files
rayne-wiselman May 18, 2026
9ca9cba
fixing small issues
rayne-wiselman May 18, 2026
8a45f92
Apply suggestions from code review
rayne-wiselman May 18, 2026
5c5fffe
fixing small issues
rayne-wiselman May 19, 2026
d79e33e
updating files
rayne-wiselman May 19, 2026
0a21db0
Merge branch 'raynemain-may4' of https://github.com/rayne-wiselman/se…
rayne-wiselman May 19, 2026
545b5e0
updating files
rayne-wiselman May 19, 2026
c860f55
updating files
rayne-wiselman May 19, 2026
e5000b7
updating files
rayne-wiselman May 19, 2026
392fa82
updating files
rayne-wiselman May 19, 2026
e2e6707
updating files
rayne-wiselman May 19, 2026
a37af24
updating files
rayne-wiselman May 19, 2026
bad491c
updating files
rayne-wiselman May 19, 2026
7690dd0
updating files
rayne-wiselman May 19, 2026
cb7a21c
updating files
rayne-wiselman May 19, 2026
83ba717
updating files
rayne-wiselman May 19, 2026
e2e4f13
updating files
rayne-wiselman May 19, 2026
f95eb0a
updating files
rayne-wiselman May 19, 2026
61c85dd
updating files
rayne-wiselman May 19, 2026
8dce204
updating files
rayne-wiselman May 20, 2026
c74f6f7
E3 gets MDOP1
chrisda May 21, 2026
a84ca53
updating files
rayne-wiselman May 24, 2026
6990e1e
updating files
rayne-wiselman May 24, 2026
90b7287
updating files
rayne-wiselman May 24, 2026
2a04537
updating files
rayne-wiselman May 24, 2026
3d06165
updating files
rayne-wiselman May 24, 2026
0dc4b78
updating files
rayne-wiselman May 24, 2026
a5cc53d
updating files
rayne-wiselman May 24, 2026
1b0de9f
updating files
rayne-wiselman May 24, 2026
bdbfa40
updating files
rayne-wiselman May 24, 2026
60bf1b4
updating files
rayne-wiselman May 24, 2026
aacf4bf
updating files
rayne-wiselman May 24, 2026
0659b93
updating files
rayne-wiselman May 24, 2026
0772df3
updating files
rayne-wiselman May 24, 2026
df006e5
updating files
rayne-wiselman May 25, 2026
0632325
updating files
rayne-wiselman May 27, 2026
2c264da
updating files
rayne-wiselman May 28, 2026
ce3447f
updating files
rayne-wiselman May 28, 2026
a0168bc
Add AI section to Zero Trust assessment TOC
shlipsey3 May 28, 2026
c08ce82
Create AI pillar for Microsoft Entra Zero Trust assessment
shlipsey3 May 28, 2026
c5b9db3
Revise AI pillar content for clarity and focus
shlipsey3 May 28, 2026
912eeee
Delete security-docs/zero-trust/assessment/ai-pillar.md
shlipsey3 May 28, 2026
1fb88e2
Update AI section link in TOC.yml
shlipsey3 May 28, 2026
3520d2a
top picks and new array
ttorble May 29, 2026
d040d37
icons
ttorble May 29, 2026
ce2ee55
updating files
rayne-wiselman May 29, 2026
d8e4acc
updating files
rayne-wiselman May 29, 2026
9ce70dd
updating files
rayne-wiselman May 31, 2026
34d4bfa
updating files
rayne-wiselman May 31, 2026
99e6ad7
updating files
rayne-wiselman May 31, 2026
64eb1ff
updating files
rayne-wiselman May 31, 2026
968ec61
updating files
rayne-wiselman May 31, 2026
e68006c
updating files
rayne-wiselman May 31, 2026
ea9a229
Merge branch 'main' of https://github.com/MicrosoftDocs/security-pr i…
rayne-wiselman May 31, 2026
438f87b
updating files
rayne-wiselman May 31, 2026
4c65438
updating files
rayne-wiselman May 31, 2026
37d8d99
updating files
rayne-wiselman May 31, 2026
d9d3fab
updating files
rayne-wiselman May 31, 2026
ca47ffb
updating files
rayne-wiselman May 31, 2026
906864b
updating files
rayne-wiselman May 31, 2026
2ca18da
updating files
rayne-wiselman May 31, 2026
1bdf316
updating files
rayne-wiselman May 31, 2026
c402204
Merge pull request #2167 from rayne-wiselman/raynemain-may4
rayne-wiselman May 31, 2026
9d77b3c
Merge pull request #2189 from MicrosoftDocs/main
learn-build-service-prod[bot] May 31, 2026
3f0900f
updating tOC entry
rayne-wiselman May 31, 2026
f6451bb
Merge pull request #2190 from rayne-wiselman/raynezt-may31
rayne-wiselman May 31, 2026
af942d1
Merge pull request #2191 from MicrosoftDocs/main
learn-build-service-prod[bot] May 31, 2026
1bc8788
Merge pull request #2187 from shlipsey3/patch-1
AnnaMHuff Jun 1, 2026
f357981
updating link
rayne-wiselman Jun 1, 2026
1f26e82
updating link
rayne-wiselman Jun 1, 2026
5ef055c
updating link
rayne-wiselman Jun 1, 2026
dc97b63
updating link
rayne-wiselman Jun 1, 2026
7463070
updating link
rayne-wiselman Jun 1, 2026
8464463
Merge pull request #2193 from MicrosoftDocs/main
learn-build-service-prod[bot] Jun 1, 2026
31e6f63
Merge pull request #2192 from rayne-wiselman/raynezt-june1
rayne-wiselman Jun 1, 2026
d90259c
updating link
rayne-wiselman Jun 1, 2026
5d6efad
Merge pull request #2194 from rayne-wiselman/raynezt-june1-2
rayne-wiselman Jun 1, 2026
187855d
config-toc
shlipsey3 Jun 1, 2026
8093035
Update TOC.yml
shlipsey3 Jun 1, 2026
0cfd0d9
Merge pull request #2196 from MicrosoftDocs/main
learn-build-service-prod[bot] Jun 1, 2026
530a22e
Merge pull request #2195 from shlipsey3/config-toc
AnnaMHuff Jun 2, 2026
901d0ef
Merge pull request #2197 from MicrosoftDocs/main
learn-build-service-prod[bot] Jun 2, 2026
febb2a0
Merge remote-tracking branch 'upstream/main' into E3-chrisda
chrisda Jun 2, 2026
98f2003
fixing TOC issue
rayne-wiselman Jun 3, 2026
54cf1ed
fixing TOC issue
rayne-wiselman Jun 3, 2026
681d001
fixing TOC issue
rayne-wiselman Jun 3, 2026
76388d2
fixing TOC issue
rayne-wiselman Jun 3, 2026
02e75b9
Merge pull request #2198 from rayne-wiselman/raynezt-june3
rayne-wiselman Jun 3, 2026
3ed6239
new SFI pattern
rayne-wiselman Jun 3, 2026
4a2de50
new SFI pattern
rayne-wiselman Jun 3, 2026
2e3a6a2
new SFI pattern
rayne-wiselman Jun 3, 2026
299ac37
new SFI pattern
rayne-wiselman Jun 3, 2026
17acf33
new SFI pattern
rayne-wiselman Jun 3, 2026
2edb11e
new SFI pattern
rayne-wiselman Jun 3, 2026
5db75d7
Merge pull request #2200 from MicrosoftDocs/main
learn-build-service-prod[bot] Jun 3, 2026
14a3cfb
Merge pull request #2199 from rayne-wiselman/raynezt-june3-2
rayne-wiselman Jun 3, 2026
2477721
Merge pull request #2201 from MicrosoftDocs/main
learn-build-service-prod[bot] Jun 3, 2026
6a92811
Merge pull request #2188 from ttorble/hub-updates-june-2026
ttorble Jun 4, 2026
5b09040
Merge pull request #2202 from MicrosoftDocs/main
learn-build-service-prod[bot] Jun 4, 2026
441d5e7
Merge remote-tracking branch 'upstream/main' into E3-chrisda
chrisda Jun 15, 2026
195a718
Apply suggestion from @learn-build-service-prod-05[bot]
chrisda Jun 15, 2026
5625f1e
Apply suggestion from @learn-build-service-prod-05[bot]
chrisda Jun 15, 2026
79df787
Apply suggestion from @learn-build-service-prod-05[bot]
chrisda Jun 15, 2026
a227783
Apply suggestion from @learn-build-service-prod-05[bot]
chrisda Jun 15, 2026
f28b7aa
Apply suggestions from code review
chrisda Jun 15, 2026
73fa39a
Merge pull request #2207 from chrisda/E3-chrisda
prmerger-automator[bot] Jun 17, 2026
1e87958
Merge pull request #2209 from MicrosoftDocs/main
learn-build-service-prod[bot] Jun 17, 2026
e5d5821
ai-pillar-config (#2203)
shlipsey3 Jun 17, 2026
c166e7e
Add transparency application cards page and TOC entry (#2211)
cabailey Jun 17, 2026
ff909eb
Merge pull request #2212 from MicrosoftDocs/main
learn-build-service-prod[bot] Jun 17, 2026
236f2f1
updating graphics and table (#2206)
rayne-wiselman Jun 22, 2026
ad6731b
Merge pull request #2215 from MicrosoftDocs/main
learn-build-service-prod[bot] Jun 22, 2026
499563a
replace conceptual with concept-article across files (#2219)
rayne-wiselman Jun 28, 2026
c468026
Merge pull request #2220 from MicrosoftDocs/main
learn-build-service-prod[bot] Jun 28, 2026
7086a40
remove microsoft learn (#2218)
Court72 Jun 29, 2026
2200357
Merge pull request #2221 from MicrosoftDocs/main
learn-build-service-prod[bot] Jun 29, 2026
50b652e
Microsoft Defender Challenge (#2208)
ttorble Jul 7, 2026
2022b52
Security hub top picks July 7 (#2213)
ttorble Jul 7, 2026
1437503
Merge pull request #2223 from MicrosoftDocs/main
learn-build-service-prod[bot] Jul 7, 2026
de4a979
Add least privilege for AI agents SFI pattern (#2227)
mmacy-msft Jul 14, 2026
fe51f20
Merge pull request #2228 from MicrosoftDocs/main
learn-build-service-prod[bot] Jul 15, 2026
e6a25cd
Update SFI docs for July 2026 progress report (#2231)
msmbaldwin Jul 24, 2026
2ec77d4
Merge pull request #2232 from MicrosoftDocs/main
learn-build-service-prod[bot] Jul 24, 2026
6390a28
Request for review and publication (#2236)
richarddiver-ms Jul 31, 2026
3d75b28
Merge pull request #2239 from MicrosoftDocs/main
learn-build-service-prod[bot] Aug 1, 2026
fca1da2
Delete audit reqs and add redirect. (#2240)
kasirota Aug 3, 2026
649452f
Merge pull request #2241 from MicrosoftDocs/main
learn-build-service-prod[bot] Aug 3, 2026
7e2a255
Delete duplicate pages from Microsoft Docs (#2242)
kasirota Aug 4, 2026
602ae07
Merge pull request #2243 from MicrosoftDocs/main
learn-build-service-prod[bot] Aug 4, 2026
0e9842d
Security hub August 4 top picks (#2235)
ttorble Aug 4, 2026
6f40144
Merge pull request #2244 from MicrosoftDocs/main
learn-build-service-prod[bot] Aug 4, 2026
0ecd715
GA rename Threat Hunting Assistant
yohasson Aug 5, 2026
22bd9c9
Merge pull request #2246 from MicrosoftDocs/celested/ga-threat-huntin…
prmerger-automator[bot] Aug 6, 2026
b375b9d
Merge pull request #2247 from MicrosoftDocs/main
learn-build-service-prod[bot] Aug 6, 2026
3cb6ed7
Delete .acrolinx-config.edn (#2248)
v-alje Aug 7, 2026
3cc4834
Merge pull request #2249 from MicrosoftDocs/main
learn-build-service-prod[bot] Aug 7, 2026
f092e6d
Update stale bot (#2250)
rmca14 Aug 12, 2026
3ffe90a
Merge pull request #2251 from MicrosoftDocs/main
learn-build-service-prod[bot] Aug 13, 2026
3064b07
update link
ttorble Aug 13, 2026
dfe5b40
Merge pull request #2252 from ttorble/challenge-link-update-130826
prmerger-automator[bot] Aug 14, 2026
2c99a8e
Merge pull request #2253 from MicrosoftDocs/main
ttorble Aug 14, 2026
c7ffea2
tiles 1 and 4 (#2255)
ttorble Aug 21, 2026
ae779c3
Merge pull request #2256 from MicrosoftDocs/main
learn-build-service-prod[bot] Aug 21, 2026
e7260d1
Updated title of page
Aug 23, 2026
2f05585
updated framing
Aug 23, 2026
6dcd1a7
added AI and agents
Aug 23, 2026
ec96381
updates
Aug 23, 2026
d4340e9
fix malformed tables (missing a space)
Aug 23, 2026
70c6537
remove extra hanging bullet point
Aug 23, 2026
dc26295
Merge branch 'main' of https://github.com/MicrosoftDocs/security-pr
Aug 24, 2026
6957477
Apply suggestion from @learn-build-service-prod-05[bot]
MarkSimos Aug 24, 2026
ef363e3
Apply suggestion from @learn-build-service-prod-05[bot]
MarkSimos Aug 24, 2026
590b1a8
Merge pull request #2135 from MicrosoftDocs/autoheal-brokenlink-0-202…
prmerger-automator[bot] Aug 24, 2026
ea5f629
Merge pull request #2257 from MarkSimos/MarkSimosWorking
prmerger-automator[bot] Aug 24, 2026
e382d23
Merge pull request #2258 from MicrosoftDocs/main
learn-build-service-prod[bot] Aug 24, 2026
c6b7267
Add repo governance files for parity with azure-docs-pr (#2259)
msmbaldwin Aug 26, 2026
cf74ebf
Merge pull request #2260 from MicrosoftDocs/main
learn-build-service-prod[bot] Aug 26, 2026
98899c2
Remove line break tag (#2263)
rmca14 Aug 27, 2026
b4e2351
Merge pull request #2264 from MicrosoftDocs/main
learn-build-service-prod[bot] Aug 27, 2026
2afe29f
Merge branch 'main' into repo_sync_working_branch
ShawnKupfer Aug 28, 2026
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
51 changes: 17 additions & 34 deletions security-docs/zero-trust/deploy/overview.md
Original file line number Diff line number Diff line change
Expand Up @@ -53,38 +53,21 @@ Technology pillars don't define outcomes (business solutions) or steps (technica

| Technology pillar | Description |
| --- | --- |
| [![Fingerprint icon](../media/icon-identity-small.png)](identity.md) <br> [Identities](identity.md) | Identities—whether they represent people, services, or IoT devices—define the Zero Trust control plane. When an identity attempts to access a resource, verify that identity with strong authentication, and ensure access is compliant and typical for that identity. Follow least privilege access principles. |
| [![Endpoints icon.](../media/icon-endpoints-small.png)](endpoints.md) <br> [Endpoints](endpoints.md) | Once an identity has been granted access to a resource, data can flow to a variety of different endpoints (devices), from IoT devices to smartphones, BYOD to partner-managed devices, and on-premises workloads to cloud-hosted servers. This diversity creates a massive attack surface area. Monitor and enforce device health and compliance for secure access. |
| [![Ones and zeroes icon.](../media/icon-data-small.png)](data.md) <br> [Data](data.md) | Ultimately, security teams are protecting data. Where possible, data should remain safe even if it leaves the devices, apps, infrastructure, and networks the organization controls. Classify, label, and encrypt data, and restrict access based on those attributes. |
| [![Application window icon.](../media/icon-applications-small.png)](applications.md) <br> [Apps](applications.md)| Applications and APIs provide the interface by which data is consumed. They may be legacy on-premises workloads, lifted-and-shifted to cloud workloads, or modern SaaS applications. Apply controls and technologies to discover shadow IT, ensure appropriate in-app permissions, gate access based on real-time analytics, monitor for abnormal behavior, control user actions, and validate secure configuration options. |
| [![Data storage disks icon.](../media/icon-infrastructure-small.png)](infrastructure.md) <br> [Infrastructure](infrastructure.md) | Infrastructure—whether on-premises servers, cloud-based VMs, containers, or micro-services—represents a critical threat vector. Assess for version, configuration, and JIT access to harden defense. Use telemetry to detect attacks and anomalies, and automatically block and flag risky behavior and take protective actions. |
| [![Network diagram icon.](../media/icon-networks-small.png)](networks.md) <br> [Network](networks.md) | All data is ultimately accessed over network infrastructure. Networking controls can provide critical controls to enhance visibility and help prevent attackers from moving laterally across the network. Segment networks (and do deeper in-network micro-segmentation) and deploy real-time threat protection, end-to-end encryption, monitoring, and analytics. |
| [![Gear icon.](../media/icon-visibility-automation-orchestration-small.png)](visibility-automation-orchestration.md) <br> [Visibility, automation, and orchestration](visibility-automation-orchestration.md) | In our Zero Trust guides, we define the approach to implement an end-to-end Zero Trust methodology across identities, endpoints (devices), data, apps, infrastructure, and network. These activities increase your visibility, which gives you better data for making trust decisions. With each of these individual areas generating their own relevant alerts, we need an integrated capability to manage the resulting influx of data to better defend against threats and validate trust in a transaction. |

## Documentation set

Follow this table for the best Zero Trust documentation sets for your needs.

|Documentation set|Helps you...|Roles|
|---|---|---|
|[Adoption framework](../adopt/zero-trust-adoption-overview.md) for phase and step guidance for key business solutions and outcomes|Apply Zero Trust protections from the C-suite to the IT implementation.|Security architects, IT teams, and project managers|
|[Assessment and progress tracking resource](../zero-trust-assessment-progress-tracking-resources.md) |Assess your infrastructure's readiness and track your progress. |Security architects, IT teams, and project managers|
|[Zero Trust partner kit](../zero-trust-partner-kit.md) |Co-branded tracking resources, workshop, and architecture illustrations |Partners and security architects |
|[Deployment for technology pillars](../deploy/overview.md) for conceptual information and deployment objectives|Apply Zero Trust protections aligned with typical IT technology areas.|IT teams and security staff|
|[Zero Trust for small businesses](../guidance-smb-partner.md)|Apply Zero Trust principles to small business customers.|Customers and partners working with Microsoft 365 for business|
|[Zero Trust for Microsoft Copilots](../copilots/apply-zero-trust-copilots-overview.md) for stepped and detailed design and deployment guidance|Apply Zero Trust protections to Microsoft Copilots.|IT teams and security staff|
|[Zero Trust deployment plan with Microsoft 365](/microsoft-365/security/microsoft-365-zero-trust?bc=%2fsecurity%2fzero-trust%2fbreadcrumb%2ftoc.json&toc=%2fsecurity%2fzero-trust%2ftoc.json) for stepped and detailed design and deployment guidance|Apply Zero Trust protections to your Microsoft 365 organization.|IT teams and security staff|
|[Incident response with XDR and integrated SIEM](../siem-xdr-overview.md)|Set XDR tools and integrate these with Microsoft Sentinel|IT teams and security staff|
|[Zero Trust for Azure services](../azure-infrastructure-overview.md) for stepped and detailed design and deployment guidance|Apply Zero Trust protections to Azure workloads and services.|IT teams and security staff|
|[Partner integration with Zero Trust](../integrate/overview.md) for design guidance for technology areas and specializations|Apply Zero Trust protections to partner Microsoft cloud solutions.|Partner developers, IT teams, and security staff|
|[Develop using Zero Trust principles](../develop/overview.md) for application development design guidance and best practices|Apply Zero Trust protections to your application.|Application developers|
|US Government guidance for [CISA](/security/zero-trust/cisa-zero-trust-maturity-model-intro), [DoD](/security/zero-trust/dod-zero-trust-strategy-intro), and the [Memorandum for Zero Trust architecture](/entra/standards/memo-22-09-meet-identity-requirements) |Prescriptive recommendations for US Government requirements |IT Architects and IT teams|

## Recommended training

|Training | [Establish the guiding principles and core components of Zero Trust](/training/paths/zero-trust-principles/) |
|---------|---------|
|:::image type="icon" source="../media/basics-of-zero-trust.png" border="false"::: | Use this learning path to understand the basics of applying Zero Trust principles to the key technology pillars of identities, endpoints, application access, networks, infrastructure, and data. |
> [!div class="nextstepaction"]
> [Start >](/training/paths/zero-trust-principles/)
| [![Fingerprint icon](../media/icon-identity-small.png)](identity.md) <br> [Identities](identity.md) | Control access decisions. Every request starts with identity verification and enforcement of least privilege. |
| [![Endpoints icon.](../media/icon-endpoints-small.png)](endpoints.md) <br> [Endpoints](endpoints.md) | Evaluate and enforce device trust. Access depends on device health, compliance, and risk. |
| [![Ones and zeroes icon.](../media/icon-data-small.png)](data.md) <br> [Data](data.md) | Protect the asset itself. Security persists with the data through classification, labeling, encryption, and access control. |
| [![Application window icon.](../media/icon-applications-small.png)](applications.md) <br> [Apps](applications.md)| Govern how data is accessed. Apply controls at the application and API layer, including permissions and session controls. |
| [![Data storage disks icon.](../media/icon-infrastructure-small.png)](infrastructure.md) <br> [Infrastructure](infrastructure.md) | Secure compute resources. Harden servers, VMs, containers, and services through configuration, access control, and monitoring. |
| [![Network diagram icon.](../media/icon-networks-small.png)](networks.md) <br> [Network](networks.md) | Control connectivity and movement. Segment and monitor traffic to prevent lateral movement and enforce secure communication.|
| [![Gear icon.](../media/icon-visibility-automation-orchestration-small.png)](visibility-automation-orchestration.md) <br> [SecOps](visibility-automation-orchestration.md) |Integrate and operationalize all pillars. Detect, investigate, and respond using signals from across the environment. |

## Zero Trust implementation workshops

Microsoft's Zero Trust implementation workshops are available for each pillar. [Learn more](../workshop-zero-trust-overview.md).

## What's next?

- [Review](../implement-overview.md) technical solutions.
- [Learn about](../security-adoption-model.md) our Zero Trust adoption model.
- [Review](../security-adoption-business-scenarios-overview.md) critical security business scenarios.