• e - ISSN No : 2832-4277
IJRTTE Logo

INTERNATIONAL JOURNAL OF RECENT TRENDS IN TECHNOLOGY AND ENGINEERING (IJRTTE)

Advancing Enterprise IT Security Through Zero Trust Architecture

Arunkumar M S
Associate Professor, Department of Computer Science and Engineering, ndia.

Keywords: Zero Trust Architecture, Enterprise IT Security, Identity and Access Management, Micro-Segmentation, Continuous Monitoring, Cybersecurity Framework, Insider Threat Prevention, Access Control, Network Security, Scalable Security Model

Abstract

During a time of escalating cyber-attacks, the traditional perimeter-based approach to securing complex enterprise IT environments has simply fallen short. This paper presents an innovative paradigm to enterprise cyber security using ZTA. Based on the concept of “never trust, always verify”, ZTA aims to kill shared trust entirely and relies on dynamic, context-driven access control. The presented model incorporates core ZTA building blocks like identity and access management (IAM), multi-factor authentication (MFA), micro segmentation and continuous monitoring to verify, in real-time, the access request for users, devices and contextual risk signals to data and services. This paper demonstrates how ZTA improves enterprise security posture by reducing lateral movement, providing secure remote access, and reducing the risk of insider threats, through a broad survey of state-of-the-art from 2020-2025 and by consolidating over 40 academic contributions. It also discusses how ZTA plays with emerging technologies like artificial intelligence, blockchain, and cloud native platforms. The results validate that Zero Trust Architecture is a scalable, resilient, future-ready security approach that aligns with the security challenges and regulatory compliance requirements enterprises are facing, such as with the changing landscape of threats.
Download Certificate
Details

References

  1. Hasan, M. (2024). Enhancing enterprise security with zero trust architecture. arXiv. https://arxiv.org/abs/2410.18291
  2. Gambo, M. L., & Almulhem, A. (2025). Zero trust architecture: A systematic literature review. arXiv. https://arxiv.org/abs/2503.11659arxiv.org
  3. Nasiruzzaman, M., Ali, M., Salam, I., & Miraz, M. H. (2025). The evolution of zero trust architecture (ZTA) from concept to implementation. arXiv. https://arxiv.org/abs/2504.11984
  4. Ghasemshirazi, S., Shirvani, G., & Alipour, M. A. (2023). Zero trust: Applications, challenges, and opportunities. arXiv. https://arxiv.org/abs/2309.03582arxiv.org
  5. Ramezanpour, K., & Jagannath, J. (2021). Intelligent zero trust architecture for 5G/6G networks: Principles, challenges, and the role of machine learning in the context of O-RAN. arXiv. https://arxiv.org/abs/2105.01478
  6. Ameer, S., Praharaj, L., Sandhu, R., Bhatt, S., & Gupta, M. (2024). ZTA-IoT: A novel architecture for zero-trust in IoT systems and an ensuing usage control model. ACM Transactions on Privacy and Security, 27(3), 1–36.
  7. Pokhrel, S. R., Yang, L., Rajasegarar, S., & Li, G. (2024). Robust zero trust architecture: Joint blockchain-based federated learning and anomaly detection-based framework. In Proceedings of the ACM SIGCOMM 2024 Conference (pp. 7–12).
  8. Phiyaru, P., & Teerakanok, S. (2024). A comprehensive framework for migrating to zero trust architecture. IEEE Access, 11, 19487–19511.
  9. Cao, Y., Pokhrel, S. R., Zhu, Y., Doss, R., & Li, G. (2024). Automation and orchestration of zero trust architecture: Potential solutions and challenges. Machine Intelligence Research, 21(2), 294–317.
  10. Rose, S., Borchert, O., Mitchell, S., & Connelly, S. (2020). Zero trust architecture (NIST Special Publication 800-207). National Institute of Standards and Technology. https://doi.org/10.6028/NIST.SP.800-207
  11. Chuan, T., Lv, Y., Qi, Z., Xie, L., & Guo, W. (2020). An implementation method of zero-trust architecture. In Journal of Physics: Conference Series (Vol. 1651, No. 1, p. 012010).
  12. Kang, H., Liu, G., Wang, Q., Meng, L., & Liu, J. (2023). Theory and application of zero trust security: A brief survey. Entropy, 25(12), 1595.
  13. Ahmadi, S. (2024). Zero trust architecture in cloud networks: Application, challenges and future opportunities. Journal of Engineering Research and Reports, 26(2), 215–228.
  14. Borchert, O., et al. (2024). Implementing a zero-trust architecture: Full document (NIST Special Publication 1800-35). National Institute of Standards and Technology.
  15. Azad, M. A., Bag, S., Hao, F., & Shalaginov, A. (2020). Decentralized self-enforcing trust management system for social Internet of Things. IEEE Internet of Things Journal, 7(4), 2690–2703.
  16. Edo, O. C., et al. (2022). Zero trust architecture: Trend and impact on information security. International Journal of Emerging Technology and Advanced Engineering, 12(7), 140–147.
  17. Mahmoud, A. A., Nyamasvisva, T. E., & Valloo, S. (2022). Zero trust security implementation considerations in decentralized network resources for institutions of higher learning. International Journal of Infrastructure Research and Management, 10(1), 79–90.
  18. Doherty, D., & McKenney, B. (2021). Zero trust architectures: Are we there yet? MITRE Corporation, Technical Report #21-1273.
  19. Shepherd, C. (2022). Zero trust architecture: Framework and case study. CORe 596 Independent Study, Boise State University.
  20. Fernandez, E. B., & Brazhuk, A. (2024). A critical analysis of zero trust architecture (ZTA). Computer Standards & Interfaces, 89, 103832.
  21. Alshehri, A., & Tunc, C. (2023). Zero trust engine for IoT environments. In 2023 20th ACS/IEEE International Conference on Computer Systems and Applications (AICCSA) (pp. 1–3).
  22. Bast, C., & Yeh, K.-H. (2024). Emerging authentication technologies for zero trust on the Internet of Things. Symmetry, 16(8), 993.
  23. Sarkar, S., et al. (2022). Security of zero trust networks in cloud computing: A comparative review. Sustainability, 14(18), 11213.
  24. Hussain, M., et al. (2024). Federated zero trust architecture using artificial intelligence. IEEE Wireless Communications, 31(2), 30–35.
  25. Rosoff, G., & Chawla, N. (2024). Zero trust driving the upgrade of BUMED’s identity, credential, and access management strategy. The Armed Forces Comptroller, 69(2), 46–47.
  26. Klein, D. (2019). Micro-segmentation: Securing complex cloud environments. Network Security, 2019(3), 6–10.
  27. Ray, P. P. (2023). Web3: A comprehensive review on background, technologies, applications, zero-trust architectures, challenges and future directions. Internet of Things and Cyber-Physical Systems, 3, 213–248.
  28. El Jaouhari, S., & Bouvet, E. (2022). Secure firmware over-the-air updates for IoT: Survey, challenges, and discussions. Internet of Things, 18, 100508.
  29. Gupta, A., et al. (2023). Proxy smart contracts for zero trust architecture implementation in decentralized oracle networks-based applications. Computer Communications, 206, 10–21.
  30. Nawshin, F., et al. (2024). AI-powered malware detection with differential privacy for zero trust security in Internet of Things networks. Ad Hoc Networks, 161, 103523.
  31. Nagarajan, S. M., et al. (2024). Artificial intelligence-based zero trust security approach for consumer industry. IEEE Transactions on Consumer Electronics, 70(3), 5411–5418.
  32. Hussain, A., et al. (2024). Ensuring zero trust IoT data privacy: Differential privacy in blockchain using federated learning. IEEE Transactions on Consumer Electronics, 70(3), 5401–5410.
  33. Adhikari, T. (2024). Advancing zero trust network authentication: Innovations in privacy-preserving authentication mechanisms. Computer Science and Engineering, 1, 1–22.