Circle
Events
Blog

Working Group

SDP and Zero Trust

This group is working to validate and protect the devices and connections on a network. The topics of group discourse are benefits, architectural references, and implementation of the SDP protocol.
Sign-Up View Current Projects
Software-Defined Perimeter (SDP) and Zero Trust
Software-Defined Perimeter (SDP) and Zero Trust

Download

SDP and Zero Trust
Working Group Overview
This group works to validate and protect the devices and connections on a network. The topics of group discourse are benefits, architectural references, and implementation of a zero trust architecture. In particular we will use the SDP protocol as a reference to obtain zero trust.

What do we discuss? 
During our meetings we typically discuss changes in the industry and collaborate on projects the group is currently working on. We welcome anyone who would like to join, even if you would like to just listen-in on any calls.

Drafts & Important Docs

Working Group Leadership

Jason Garbis Headshot
Jason Garbis

Jason Garbis

Chief Product Officer of Appgate, Inc.

Jason Garbis is Chief Product Officer for Appgate, responsible for the company’s security product strategy and product management, and co-chair of the SDP Zero Trust Working Group at the Cloud Security Alliance, where he helps lead research and publication initiatives. He has over 30 years of product management, engineering and consulting experience at security and technology firms, including RSA, where he focused on identity management and...

Read more

Junaid Islam Headshot
Junaid Islam

Junaid Islam

Founder and CTO of Vidder

Junaid Islam is the CTO and founder of Vidder which provides distributed access control solutions to Fortune 500 companies. Prior to founding Vidder, Junaid founded Bivio Networks which developed the first Gigabit speed software based securityin the industry. Earlier in his career Junaid helped create networking standards such as Frame Relay, ATM and MPLS while at StrataCom and Cisco.

In addition to his work in th...

Read more

Bob Flores Headshot
Bob Flores

Bob Flores

Bob Flores is a co-founder and partner of Cognitio. Prior to this, Bob spent 31 years at the Central Intelligence Agency. While at CIA, Bob held various positions in the Directorate of Intelligence, Directorate of Support, and the National Clandestine Service. Toward the end of his career at the CIA, Bob spent three years as the CIA’s Chief Technology Officer where he wa...

Read more

Erik Johnson Headshot
Erik Johnson

Erik Johnson

Cloud Security Specialist & Senior Research Analyst

Worked for the Federal Reserve for many years and volunteered with the CSA with a focus on CCM/CAIQ V4, specifically the STA domain, and developing a comprehensive framework and guidance for defining and managing the cloud shared security responsibility model (SSRM).

I recently retired from the Federal Reserve and am now consulting with the CSA as a Senior Research Analyst with a focus on Zero Trust and Financial Services.

Linke...

Read more

Publications in ReviewOpen Until
The Six Pillars of DevSecOps - Pragmatic ImplementationOct 10, 2022
Security Guidance for Critical Areas of Focus in Cloud Computing v5 - OutlineDec 07, 2022
View all
Who can join?

Anyone can join a working group, whether you have years of experience or want to just participate as a fly on the wall.

What is the time commitment?

The time commitment for this group varies depending on the project. You can spend a 15 minutes helping review a publication that's nearly finished or help author a publication from start to finish.

Virtual Meetings

Attend our next meeting. You can just listen in to decide if this group is a good for you or you can choose to actively participate. During these calls we discuss current projects, and well as share ideas for new projects. This is a good way to meet the other members of the group. You can view all research meetings here.

Oct

6

Thu, October 6, 5:00pm - 6:00pm PDT
ZT Maturity Model - PM Working Session (Updated)
See details
Zero Trust Maturity Model working group PM call. Recurs every 4 weeks and is complemented by an 8AM ET call on an alternate 4 week schedule so there's a call every two weeks (AM/PM/AM/PM...)

CSA Zero Trust Circle Community

Join Zoom Meeting
https://cloudsecurityalliance.zoom.us/j/85967122309?pwd=YU1rS2xkVTNscC8waVh4Z3hxVTRUZz09

Meeting ID: 859 6712 2309
Passcode: 927749
One tap mobile
+12532158782,,85967122309# US (Tacoma)
+17207072699,,85967122309# US (Denver)

Dial by your location
        +1 253 215 8782 US (Tacoma)
        +1 720 707 2699 US (Denver)
        +1 346 248 7799 US (Houston)
        +1 646 558 8656 US (New York)
        +1 301 715 8592 US (Washington DC)
        +1 312 626 6799 US (Chicago)
Meeting ID: 859 6712 2309
Find your local number: https://cloudsecurityalliance.zoom.us/u/kdHb072e0m

Join by Skype for Business
https://cloudsecurityalliance.zoom.us/skype/85967122309


Oct

20

Thu, October 20, 5:00am - 6:00am PDT
ZT Maturity Model - AM Working Session (Updated)
See details
Zero Trust Maturity Model working group AM call. Recurs every 4 weeks and is complemented by an 8PM ET call on an alternate 4 week schedule so there's a call every two weeks (AM/PM/AM/PM...)

CSA Zero Trust Circle Community

──────────

Erik Johnson is inviting you to a scheduled Zoom meeting.

Join Zoom Meeting
https://cloudsecurityalliance.zoom.us/j/86350084101?pwd=c3h6RmNWcHFDeSs0NWRiWHltWlhudz09

Meeting ID: 863 5008 4101
Passcode: 455143
One tap mobile
+16469313860,,86350084101# US
+13017158592,,86350084101# US (Washington DC)

Dial by your location
+1 646 931 3860 US
+1 301 715 8592 US (Washington DC)
+1 309 205 3325 US
+1 312 626 6799 US (Chicago)
+1 646 558 8656 US (New York)
+1 720 707 2699 US (Denver)
+1 253 215 8782 US (Tacoma)
+1 346 248 7799 US (Houston)
+1 386 347 5053 US
+1 564 217 2000 US
+1 669 444 9171 US
+1 719 359 4580 US
Meeting ID: 863 5008 4101
Find your local number: https://cloudsecurityalliance.zoom.us/u/k5QJuNhz

Join by Skype for Business
https://cloudsecurityalliance.zoom.us/skype/86350084101



──────────

Nov

3

Thu, November 3, 5:00pm - 6:00pm PDT
ZT Maturity Model - PM Working Session (Updated)
See details
Zero Trust Maturity Model working group PM call. Recurs every 4 weeks and is complemented by an 8AM ET call on an alternate 4 week schedule so there's a call every two weeks (AM/PM/AM/PM...)

CSA Zero Trust Circle Community

Join Zoom Meeting
https://cloudsecurityalliance.zoom.us/j/85967122309?pwd=YU1rS2xkVTNscC8waVh4Z3hxVTRUZz09

Meeting ID: 859 6712 2309
Passcode: 927749
One tap mobile
+12532158782,,85967122309# US (Tacoma)
+17207072699,,85967122309# US (Denver)

Dial by your location
        +1 253 215 8782 US (Tacoma)
        +1 720 707 2699 US (Denver)
        +1 346 248 7799 US (Houston)
        +1 646 558 8656 US (New York)
        +1 301 715 8592 US (Washington DC)
        +1 312 626 6799 US (Chicago)
Meeting ID: 859 6712 2309
Find your local number: https://cloudsecurityalliance.zoom.us/u/kdHb072e0m

Join by Skype for Business
https://cloudsecurityalliance.zoom.us/skype/85967122309


Nov

17

Thu, November 17, 5:00am - 6:00am PST
ZT Maturity Model - AM Working Session (Updated)
See details
Zero Trust Maturity Model working group AM call. Recurs every 4 weeks and is complemented by an 8PM ET call on an alternate 4 week schedule so there's a call every two weeks (AM/PM/AM/PM...)

CSA Zero Trust Circle Community

──────────

Erik Johnson is inviting you to a scheduled Zoom meeting.

Join Zoom Meeting
https://cloudsecurityalliance.zoom.us/j/86350084101?pwd=c3h6RmNWcHFDeSs0NWRiWHltWlhudz09

Meeting ID: 863 5008 4101
Passcode: 455143
One tap mobile
+16469313860,,86350084101# US
+13017158592,,86350084101# US (Washington DC)

Dial by your location
+1 646 931 3860 US
+1 301 715 8592 US (Washington DC)
+1 309 205 3325 US
+1 312 626 6799 US (Chicago)
+1 646 558 8656 US (New York)
+1 720 707 2699 US (Denver)
+1 253 215 8782 US (Tacoma)
+1 346 248 7799 US (Houston)
+1 386 347 5053 US
+1 564 217 2000 US
+1 669 444 9171 US
+1 719 359 4580 US
Meeting ID: 863 5008 4101
Find your local number: https://cloudsecurityalliance.zoom.us/u/k5QJuNhz

Join by Skype for Business
https://cloudsecurityalliance.zoom.us/skype/86350084101



──────────

Open Peer Reviews

Peer reviews allow security professionals from around the world to provide feedback on CSA research before it is published.

Learn how to participate in a peer review here.

The Six Pillars of DevSecOps - Pragmatic Implementation

Open Until: 10/10/2022

This document provides a high-level overview of the various tools and processes that should be considered when building out...

Security Guidance for Critical Areas of Focus in Cloud Computing v5 - Outline

Open Until: 12/07/2022

The proposed outline for the Cloud Security Alliance Security Guidance for Critical Areas of Focus in Cloud Computing v5 is...