free web page hit counter
🛡️
Copyright Notice: This video is officially sourced and embedded from YouTube. For all copyright inquiries, reports, or removals, please contact YouTube's legal team here.
IBM Technology

IBM Technology

1,750,000 subscribers

👁 123,944 views

Cybersecurity and Zero Trust

Video Overview & Insights

Learn more about zero trust → https://ibm.biz/BdP927

One of the biggest challenges in implementing Zero Trust is not technology but mindset.



Organizations often try to apply Zero Trust as an additional layer instead of redesigning trust models from the ground up. But Zero Trust only becomes effective when it is treated as a design principle rather than a security add-on.



The real value appears when architecture begins to answer critical resilience questions:

How quickly can access be revoked?

How well can systems isolate compromise?

How visible are trust relationships?

How predictable is system behavior under attack?



Security engineering is gradually moving toward resilience engineering. Instead of assuming perfect prevention, modern architecture assumes that incidents will happen and focuses on limiting impact.



This is where architectural thinking becomes a competitive advantage. Organizations that understand this shift will build environments that are not only more secure but also more stable and easier to operate.



Security in the next decade will be defined by how intelligently systems are designed, not how many alerts they generate.

— @MariusBarczak

Get the threat intelligence report → https://ibm.biz/BdP92W

With cyber attacks becoming ever more sophisticated, cyber security has become a very hot topic.

What many organizations are starting to realize is that Zero Trust is less about eliminating trust and more about designing how trust is established, verified and continuously re-evaluated.



Traditional security models assumed that once something was inside the network it could be trusted. Modern infrastructure completely breaks this assumption. Cloud services, remote access, API ecosystems and distributed workloads mean that trust must now be contextual, identity-driven and continuously validated.



From an architectural perspective Zero Trust is really about control of movement inside systems. Not just preventing entry but controlling how entities move once they are inside the environment.



Many breaches become catastrophic not because attackers gain access, but because architecture allows lateral movement without sufficient containment.



This is why segmentation, identity verification and architectural visibility are becoming the real pillars of modern cyber defense.



Security maturity will increasingly be defined by how well organizations understand their own system architecture rather than how many products they deploy.

— @MariusBarczak

In this video, Bob Kalka explains three major trends in cybersecurity today: zero trust, threat management, and modernization.

Chapters

One of the most important realizations organizations are beginning to make is that Zero Trust is not primarily a security technology evolution but a systems engineering evolution.



For decades security strategies were built around protecting infrastructure. Today infrastructure changes constantly. Cloud environments are dynamic, identities are fluid and applications are distributed across multiple trust domains.



This means security can no longer rely on static assumptions. Trust must become dynamic and continuously evaluated.



The organizations that succeed with Zero Trust are usually those that start with architecture mapping instead of product selection. They analyze identity flows, data paths, trust dependencies and operational risk exposure before implementing controls.



Another key factor is understanding that Zero Trust maturity is not achieved through deployment phases alone. It requires cultural change. Engineering teams must begin to think in terms of trust boundaries, verification models and resilience engineering.



In many environments security still focuses too much on detection capability. But detection without architectural containment often only means discovering problems faster without reducing their impact.



Architecture determines whether an incident becomes a crisis or a contained event.



I believe the next stage of Zero Trust evolution will focus heavily on adaptive trust models, strong identity fabrics and security architectures that are capable of evolving together with business systems.



Security architecture is slowly becoming a core discipline of digital engineering rather than just a supporting function.

— @MariusBarczak

0:00 - Intro

0:15 - Zero Trust

I’m genuinely thrilled I watched this!

— @SofiaFernandez-g8p

3:14 - Identity Governance

3:31 - Identity Analytics

Great presentation. I always enjoy IBM presentations despite having 30 years in the game. My 5c to the story is that best term for the Privileged Access Management is Secure Administration. People who spent some time in classified environments know the full story. However, less experienced folks may think that as long they have some PAM product, the problem is solved. This is not the case under ZT umbrella. Dedicated management network solution is as important as dedicated IAM for privileged accounts.

— @stantkatchenko1341

3:48 - Privileged Account Management

4:21 - Access Management

3 year old video, still valid to today

— @StonebrookRecords

4:33 - Adaptive Authentication

5:54 - Discovery & Classification

By enforcing strict device verification, Zero Trust protects our Thirdlane Multi-Tenant deployments from unauthorized devices trying to access sensitive VoIP configurations.

— @SamuelWilson-k2m

6:08 - Encryption

6:17 - Data & File Activity Monitoring

Such an insightful video on cybersecurity and the Zero Trust model! It's amazing how important it is to rethink traditional security approaches in today’s environment. The idea of never trusting, always verifying is definitely a game-changer for keeping systems secure. I’ve been diving into Zero Trust concepts and best practices on my own channel too. If you're interested in more tips and strategies for securing networks and data, feel free to check it out! Keep up the great work! 🔴

— @Trustalor-r5n

6:33 - Key Management

7:22 - Data Risk Insights

I’ve seen cloud mining services popping up everywhere, but are any of them legit?

— @BTCMiningLab

7:49 - Transactional Fraud

7:54 - Configuration Management

Interesting lectures

— @gogotom5409

9:20 - Threat Management

14:30 - Modernization

Thank you Bob. 🎉 You da besssst!! 😂 You guys are awesome 🤩

— @Christina-y7z7u

16:05 - A Federated Approach

17:39 - Conclusion

Very good explanation 🎉❤

— @AjaySingh-ey7gt

What is cybersecurity? → http://ibm.biz/BdfNVR

Check out the NIST Cybersecurity Framework → http://ibm.biz/NIST-cybersecurity

A connection between cloud and dedicated local network server, where the network server pings the cloud to verify/est communication. What are the profile specifications to ID individual requesting access?

— @QuiChiYang2

Subscribe to see more videos like this in the future → http://ibm.biz/subscribe-now

Get started for free on IBM Cloud → http://ibm.biz/BdfNV4

Did you have to practice writing backwards?? Also thank you!

— @jackieb6726

#CyberSecurity #ZeroTrust #IBMSecurity

758

— @karashevf

More User Perspectives

@

22K

@karashevf
@

758

@karashevf
@

Good explanation! I just have one question: how do you write inverted?

@neiker234
@

What about Data Integrity in Data?

@Mike-kq5yc
@

Great video. Just small comment, it seems he says exactly the same fuction for ID Governance (Users) and AM (Access).

@javieranayapacheco7646
@

Great Video...Thanks Bob

@abdusalamyahya789
@

Wait a second, is this guy writing backwards on the glass?!😮

@hazabaijan
@

Absolutely well done! To the point and informative!

@MarsCityRadio
@

Quick question, what do you use as that magic whiteboard? It’s an incredible teaching tool!

@fortzafit-train207
@

well... too much rambling... and no clear definition of what ZT is all about.

@a4ldev933
@

great list of additional security measures to the basic ones

@BDVSecurity
@

Only 7% of organisations know where criticald data lies..Just goes to show how clueless cIsOs are ..and thats coz organisation solely rely on professionals with certificates

@amar6847
@

what kind of interactive screen does the presenter is using in this video ?

@mehmoudmirza7057
@

Youtube feed suggested me to watch this video. I am not sure why this topic is suggested by AI. #SIEM

@lakshmiprabhakarkoppolu9100
@

Omg, seriously everyone needs to know this! I was building technology from the ground up and our IT engineer ended up being an insider threat. He had all of our passcodes and source codes so in essence he had all of the power to do whatever he wanted including taking our software.

@Sara-wb2bs
@

They are stealing my data right now

@Tooi-1grote-rotzooi
@

I loved the vdo , I’m a housewife but have interests in these kind of knowledge. Thank you sir

@donasaha1936
@

If you truly want to implement and MEASURE and TEST your trust. use the #OSSTMM. The OSSTMM said Trust is a Vulnerability 5 years before that one dude "invented" zero trust.

@xelerated
@

The famous Bob of "Alice-Bob examples" in cryptography!

@shubhamtanwar5341
@

Excellent to the point , loved it.

@mohammedshaik7113
@

Well done - +100 to the other comments. This is a logical and pragmatic overview of these ZT trends

@kurtskowronek3572
@

+Plus

@MrEmityushkin
@

Studying this topic now and this is the most in depth and clear short video I've seen on the subject, this is great thanks

@Artanis17
@

Absolute gold!, I haven't seen or watched a better cybersecurity video on youtube yet (period).

@oldsport-gaming
@

Thank you for a great presentation.

@ppvshenoy
@

This was a master class introduction to Zero Trust.I did not have to go google random and newly invented buzzword. Thank you!

@1apocalyps
@

Thank you so much sir ^_^ I have learned a lot from you 🙂

@Ahmed-gm8li
@

Thanks for the nice overview. Do you have any thoughts on how a small start-up should configure itself for the future, given that tackling all of the dimensions you've noted here is very likely financially impractical. How should we design now so as to evolve over time toward a full realization of the concepts you've enumerated here?

@drkevinsullivan
@

Bob is a great presenter! He held my concentration from 0-17:58. Great points and to the point. Great Job Bob!

@davidjkelly1971
@

Great presentation highlighting what this all means.

Can you please indicate which products and solutions help achieve this way of tackling zero trust and cybersecurity?

@vdpoortensamyn
@

Nice and efficient

@brostagni
@

Thank you! :)

@nicp2327
@

Richard Gere explaing about Cyber security.....wow.

@prione4023
@

No non-sense, buzzwords, or even hype in this video... Just pure and simple theory . Thanks, guys.

@lucasdealmeidacarotta3174
@

Great insights Bob!

@joseluisspagnuolo5732