Glossary · Security & governance

Zero Trust

A security model that grants no implicit trust from network location or asset ownership and instead evaluates each access request against identity, device, resource, policy, and current context.

Why it matters

AI tools and agents span local files, cloud services, models, and external content, so a trusted internal network is too broad a basis for authority.

In practice

Authenticate every actor and workload, authorize each resource action, issue short-lived credentials, segment access, and continuously record and reevaluate policy-relevant signals.

Common confusion

Zero trust does not mean trusting nothing or blocking all automation. It means making trust decisions explicit, scoped, and continuously verifiable.

Related terms

Sources

Browse the learning paths to see this term in context — every lesson is free to read.