Discover
Zero Trust Journey
Zero Trust Journey
Author: Victor Monga
Subscribed: 3Played: 9Subscribe
Share
© 2025 Zero Trust Journey
Description
Zero Trust Journey isn’t about taking sides—it’s about real conversations, sharing research, and learning together. Our goal is to explore Zero Trust from every angle and help cybersecurity practitioners make sense of it in a practical, no-fluff way. And yes, we do love to chat about coffee and listen to the occasional dad joke along the way.
Here’s what we do:
- Conversations with Experts: We chat with subject matter experts who share their opinions, experiences, and Zero Trust journeys.
- Research and Product Insights: We explore Zero Trust products and solutions in the market that may fit into a Zero Trust architecture.
- A Zero Trust Architecture: We’re building and refining an ever-growing architecture focused solely on the needs of cybersecurity practitioners.
- CSA CCZT Study Group: We host a study group for the Cloud Security Alliance (CSA) Certificate of Competence in Zero Trust (CCZT).
If you’re a cybersecurity professional looking for honest discussions, practical insights, and tools that evolve with your Zero Trust strategy (plus the occasional coffee tip), Zero Trust Journey is for you. Join us!
33 Episodes
Reverse
In this episode, we dive deep into the organizational and cultural roadblocks of Zero Trust with Mark Simos, Lead Cybersecurity Architect at Microsoft. Mark, a veteran who has spent over 25 years helping enterprises operationalize security, reveals why failure in Zero Trust often stems not from technical missteps, but from a fundamental misunderstanding of roles, responsibilities, and business incentives. He shares the journey of evolving from a technical expert to a "storyteller" and how tha...
Welcome to I Zero Trust What You’re Saying – Aug 2025 Edition! In this episode, we break down the latest Zero Trust news, trends, and updates that matter to security practitioners. No hype—just real insights to help you navigate the evolving cybersecurity landscape. Stay informed, stay secure, and as always, Zero Trust everything! 🔗 News Links: --| https://blog.reemo.io/september-2025-cyber-outlook --| https://industrialcyber.co/cisa/cisa-unveils-zero-trust-guidance-to-safeguard-connected-c...
In this episode, we cut through the marketing hype to reveal the strategic core of Zero Trust with Alex Sharpe, a 30-year cybersecurity veteran from the NSA, Booz Allen, and KPMG who co-authored the foundational "Zero Trust Guiding Principles" for the Cloud Security Alliance. Guest: Alex Sharpe (https://www.linkedin.com/in/alex-sharpe-3rd/) Host: Dr. Victor Monga (https://www.linkedin.com/in/victorvirtual) Mentioned Resources: CSA Zero Trust Guiding Principles: https://cloudsecurityalliance...
Welcome to I Zero Trust What You’re Saying – Aug 2025 Edition! In this episode, we break down the latest Zero Trust news, trends, and updates that matter to security practitioners. No hype—just real insights to help you navigate the evolving cybersecurity landscape. Stay informed, stay secure, and as always, Zero Trust everything! 🔗 News Links: --| https://www.illumio.com/blog/top-cybersecurity-news-stories-from-august-2025 --| https://xage.com/blog/cyber-attack-news-august-2025/ --| https:...
In this episode, we bridge the gap between Zero Trust theory and real-world deployment with Norman Wong, a key contributor to NIST's groundbreaking implementation guide (SP 1800-35). Guest: Norman Wong (https://www.linkedin.com/in/gahnormanwong) Host: Dr. Victor Monga (https://www.linkedin.com/in/victorvirtual) https://csrc.nist.gov/pubs/sp/1800/35/final Highlights: --| Why the "if it ain't broke, don't fix it" mindset is the biggest barrier to Zero Trust adoption. --| Inside baseball from ...
In this episode, we take on a candid debate: is Zero Trust a real strategy or just another layer of marketing? Guest Ken Yao challenges the industry’s favorite buzzword while unpacking what truly matters for building security programs. Guest: Ken Yao (https://www.linkedin.com/in/kennethyao) Host: Dr. Victor Monga (https://www.linkedin.com/in/victorvirtual) Highlights: --| Why Ken sees Zero Trust as “Trust but Verify, minus the politeness.” --| The bear-chase analogy: benchmarking against pe...
Welcome to I Zero Trust What You’re Saying – July 2025 Edition! In this episode, we break down the latest Zero Trust news, trends, and updates that matter to security practitioners. No hype—just real insights to help you navigate the evolving cybersecurity landscape. Stay informed, stay secure, and as always, Zero Trust everything! 🔗 News Links: --| https://www.cisa.gov/news-events/alerts/2025/07/29/cisa-releases-part-one-zero-trust-microsegmentation-guidance --| https://thehackernews.com/2...
00:00 Introduction to Zero Trust and Anupam's Background 00:55 Evolving Perspectives on Zero Trust 03:04 Common Misconceptions in Zero Trust Implementation 05:32 Key Pillars of Zero Trust: Identity, Segmentation, and Control 08:59 Cultural Challenges in Adopting Zero Trust 11:29 The Role of Centralized Policy in Zero Trust 13:32 AI and Automation in Security 16:37 Future Security Challenges and the Role of AI 18:27 Adapting Zero Trust Principles for AI In this episode, we unpack how true Zer...
Guest: George Finney (https://www.linkedin.com/in/georgefinney/) Host: Dr. Victor Monga (https://www.linkedin.com/in/victorvirtual) In this episode, the host sit down with George Finney, CISO at the University of Texas System and bestselling author of Project Zero Trust and Rise of the Machines. George shares why Zero Trust isn’t a product or a marketing term—it’s a long-term security strategy that helps organizations reduce blind spots, shift culture, and stay resilient in the face of evolv...
Welcome to I Zero Trust What You’re Saying – June 2025 Edition! In this episode, we break down the latest Zero Trust news, trends, and updates that matter to security practitioners. No hype—just real insights to help you navigate the evolving cybersecurity landscape. Stay informed, stay secure, and as always, Zero Trust everything! 🔗 News Links: --| https://www.techradar.com/pro/live/infosec-europe-2025-were-live-at-the-show-and-heres-everything-weve-seen --| https://federalnewsnetwork.com/...
Guest: Jamie Kennedy (https://www.linkedin.com/in/jamiebrookekennedy) Host: Dr. Victor Monga (https://www.linkedin.com/in/victorvirtual) 🎙️ Thinking about starting a podcast? In this episode, we break down the real talk on launching your own show—without burning a hole in your wallet. From finding your niche to using smart tools and strategies, we cover what most "how to start a podcast" guides leave out. Whether you're just starting or refining your setup, these tips will save you time, mo...
Guest: Ben Tyminski Host: Dr. Victor Monga Co-host: Steve Turner In this episode, the hosts are joined by Ben Tyminski, a security architect whose hands-on experience spans from finance to media, and from traditional endpoints to the ever-expanding universe of OT and IoT. Ben breaks down why “endpoint” is a moving target in today’s Zero Trust landscape—covering everything from laptops and servers to containers, appliances, and industrial controls. If you think endpoint security is just abou...
Guest: https://www.linkedin.com/in/stahltom/ Host: https://www.linkedin.com/in/victorvirtual Co-host: https://www.linkedin.com/in/beingageek/ In this episode, the hosts are joined by Tom Stahl, a seasoned Senior Solutions Architect supporting end-user computing in one of the top six U.S. banks. Tom brings a wealth of frontline experience from the trenches of implementing Zero Trust—from mobile to desktop, from networking to identity. If you're an engineer, architect, or admin who's ever been...
In this episode, hosts Dr. Victor Monga and Zach Pugh unpack one of the most actionable Zero Trust resources available today—NIST Special Publication 1800-35. Unlike its predecessor SP 800-207, this guide dives deep into the how of Zero Trust, providing lab-tested architectures from 24 vendor collaborators including Microsoft, Palo Alto, and Zscaler. Victor and Zach explore how NIST’s Enhanced Identity Governance (EIG) model and real-world testing—complete with adversary emulations—finally g...
Guest: Razi Rais (https://www.linkedin.com/in/razirais) Host: Victor Monga (https://www.linkedin.com/in/victorvirtual) In this episode of the Zero Trust Journey podcast, bestselling author and enterprise strategist Razi Rais joins host Victor Monga to challenge the idea that Zero Trust can be bought. Razi shares the philosophical foundations of Zero Trust, real-world enterprise pitfalls, and how AI is reshaping security strategies faster than most teams can adapt. Highlights: --| Zero Trust...
Welcome to I Zero Trust What You’re Saying – May 2025 Edition! In this episode, we break down the latest Zero Trust news, trends, and updates that matter to security practitioners. No hype—just real insights to help you navigate the evolving cybersecurity landscape. Stay informed, stay secure, and as always, Zero Trust everything! 🔗 News Links: --| https://www.forbes.com/councils/forbestechcouncil/2025/05/30/the-future-of-cybersecurity-leadership-universal-zero-trust --| https://www.carahso...
00:00 Introduction to Allie Mellen 01:29 Allie's Journey in Cybersecurity 06:29 Understanding Zero Trust 09:30 Zero Trust and Security Operations 12:26 Platform vs. Best in Breed 17:36 The Role of Identity in Zero Trust 30:29 Zero Trust: Buzzword or Necessity? 34:31 The Importance of Compromise in Security Guest: https://www.linkedin.com/in/hackerxbella/ Host: https://www.linkedin.com/in/victorvirtual Host: https://www.linkedin.com/in/beingageek Host: https://www.linkedin.com/in/zachary-pugh...
Host: Dr. Victor Monga Co-Host: Steve Turner Guest: Chris Jablonski, Director of CXO Revolutionaries, Zscaler CSA article: https://cloudsecurityalliance.org/blog/2025/01/31/seize-the-zero-moment-of-trust Highlights: --| The Intersection of CTEM and Zero Trust: Discover how Continuous Threat Exposure Management (CTEM) enhances Zero Trust security by dynamically identifying and mitigating risks. --| Executive Buy-in: Chris shares practical advice on communicating Zero Trust’s tangible benefit...
Welcome to I Zero Trust What You’re Saying – April 2025 Edition! In this episode, we break down the latest Zero Trust news, trends, and updates that matter to security practitioners. No hype—just real insights to help you navigate the evolving cybersecurity landscape. Stay informed, stay secure, and as always, Zero Trust everything! 🔗 News Links: --| https://www.meritalk.com/articles/disas-thunderdome-achieves-advanced-zero-trust --| https://federalnewsnetwork.com/federal-insights/2025/04/a...
Host: Zach Pugh (LinkedIn)Co-Host Victor Monga (LinkedIn)Guest Jason Garbis (LinkedIn)Highlights: Practical Zero Trust Implementation: Jason emphasizes the importance of adopting a realistic, incremental approach to Zero Trust, urging organizations to leverage existing capabilities before investing in new technologies.Introducing ZTMM+: Discover Jason’s enhancement of the CISA Zero Trust Maturity Model, designed to provide clearer definitions, practical guidance, and address critical gaps lik...



