# การใช้งาน Zero Trust Security ก้าวข้ามแนวทางรักษาความปลอดภัยแบบยึดขอบเขตเดิม เพื่อสร้าง เฟรมเวิร์กความปลอดภัยที่แข็งแกร่งและรองรับการทำงานแบบ Hybrid Work สำหรับองค์กรของคุณด้วย Zero Trust Security ![Zero Trust security shield](https://www.manageengine.com/zero-trust-security/images/zero-trust-banner.svg) ![ZT banner element](https://www.manageengine.com/zero-trust-security/images/banner-element1.svg) ![ZT banner element](https://www.manageengine.com/zero-trust-security/images/banner-element2.svg) ![ZT banner element](https://www.manageengine.com/zero-trust-security/images/banner-element3.svg) ![ZT banner element](https://www.manageengine.com/zero-trust-security/images/banner-element4.svg) ## Zero Trust คืออะไร? ![About Zero Trust security](https://www.manageengine.com/zero-trust-security/images/zero-trust-sec2.svg) Zero Trust คือโมเดลความปลอดภัยที่ทำงานบนหลักการ "never trust, always verify" แนวทางนี้จะถือว่าผู้ใช้และอุปกรณ์ทั้งหมดไม่น่าเชื่อถือ จนกว่าจะมีการยืนยันตัวตน แม้ผู้ใช้หรืออุปกรณ์นั้นจะเคยเข้าถึงทรัพยากรขององค์กร หรืออยู่ภายในเครือข่ายองค์กร ก็ยังต้องผ่านการตรวจสอบและยืนยันตัวตนอย่างเหมาะสมก่อนจึงจะได้รับสิทธิ์เข้าถึง [ดูเพิ่มเติม](https://www.manageengine.com/zero-trust-security/what-is-zero-trust.html?ME_ZeroTrustSecurity) ## ทำไมองค์กรของฉันจึงควรใช้โมเดล Zero Trust Security? Zero Trust Security ช่วยเสริมและยกระดับการรักษาความปลอดภัยแบบยึดขอบเขตดั้งเดิม ช่วยปกป้ององค์กรจากภัยคุกคามที่แนวทางความปลอดภัยแบบเดิมรับมือไม่ได้ เช่น การโจมตีที่อาศัย Credentials และภัยคุกคามจากบุคคลภายใน ![Why do I need to adopt a Zero Trust security model?](https://www.manageengine.com/zero-trust-security/images/zero-trust-security-model.svg) ### Zero Trust Security ยังช่วยให้องค์กรและบุคลากรของคุณสามารถ: - **ทำงานได้จากทุกที่** ช่วยให้พนักงานของคุณทำงานได้จากทุกที่ ทุกเวลา โดยไม่กระทบต่อความปลอดภัยขององค์กร - **ลดความเสี่ยงขององค์กร** ลดความเสี่ยงจากภัยคุกคามภายในองค์กร lateral movement และการโจมตีที่อาศัย credentials - **ป้องกันการละเมิดข้อมูล** เสริม security posture ขององค์กรเพื่อลดโอกาสและผลกระทบที่อาจเกิดขึ้นจากการละเมิดข้อมูล - **รักษา Compliance** ช่วยให้เป็นไปตามข้อกำหนดและกฎระเบียบจากภาครัฐและมาตรฐานเฉพาะอุตสาหกรรม ## องค์กรจะใช้งาน Zero Trust Security ได้อย่างไร? การทำ Zero Trust Security ให้สำเร็จ คุณต้องไม่เชื่อถือโดยอัตโนมัติ และต้องตรวจสอบผู้ใช้ อุปกรณ์ หรือ Application ทุกตัวที่เข้าถึงทรัพยากรขององค์กรเสมอ เพื่อให้ทำได้อย่างมีประสิทธิภาพ คุณต้องมีโซลูชันที่ครอบคลุม Security Lifecycle ทั้งหมดสำหรับ 5 เสาหลักของ Zero Trust ได้แก่ Identity, Data, Device, Applications และ Network Security ### Security lifecycle สามารถอธิบายได้ผ่าน 4 ขั้นตอนต่อไปนี้: ![ManageEngine's approach to achieving Zero Trust security](https://www.manageengine.com/zero-trust-security/images/lifecycle-arrow.svg) 1. **ความชัดเจน:** รู้ว่ามีอะไรเกิดขึ้นทั่วทั้งเครือข่าย 2. **การวิเคราะห์:** ตรวจจับการเปลี่ยนแปลง Incident และภัยคุกคาม 3. **การตอบสนอง:** ดำเนินการเพื่อแก้ไข Incident หรือภัยคุกคาม 4. **การแก้ไข:** เสริมความแข็งแกร่งให้เครือข่ายเพื่อป้องกันหรือลดผลกระทบจากภัยคุกคาม เมื่อนำแนวคิดนี้มารวมกับ 5 เสาหลักของ Zero Trust ได้แก่ Identities, Devices, Data, Applications และ Workloads และ Networks จะกลายเป็นแนวทางของ ManageEngine สำหรับการทำ Zero Trust Security ให้เกิดขึ้นจริง: - **มีความชัดเจนแบบครบถ้วน** เกี่ยวกับ identities, devices, data, applications ที่เข้าถึงเครือข่ายของคุณ และกิจกรรมทั้งหมดของสิ่งเหล่านั้น - **ตรวจสอบและวิเคราะห์** ทุกเอนทิตีและทุกกิจกรรมภายในเครือข่ายของคุณ พร้อมแจ้งกิจกรรมหรือภัยคุกคามที่น่าสงสัย - **ตอบสนอง** ต่อภัยคุกคามและความเสี่ยงอย่างเหมาะสม เช่น บังคับให้มีการ authorization และ authentication เพิ่มเติม จำกัดสิทธิ์ผู้ใช้ กักกันอุปกรณ์ ยุติเซสชัน และอื่นๆ - **แก้ไขปัญหาด้านความปลอดภัย** โดยดำเนินมาตรการเชิงป้องกันและเพิ่มความแข็งแกร่งด้านความปลอดภัย เช่น รีเซ็ต credentials และ patch ช่องโหว่ นอกเหนือจาก 5 เสาหลักของ Zero Trust แล้ว คุณยังต้องมีเครื่องมือ security analytics และ security automation เพื่อให้ครอบคลุมความปลอดภัยอย่างรอบด้าน โซลูชันเหล่านี้ช่วยเพิ่มศักยภาพให้ทีม security ในการตรวจจับและตอบสนองต่อภัยคุกคาม ## ManageEngine ช่วยคุณในเส้นทาง Zero Trust ได้อย่างไร? ![Map depicting the Zero Trust journey](https://www.manageengine.com/zero-trust-security/images/zero-trust-journey.svg) Zero Trust สามารถนำไปใช้งานได้หลายรูปแบบ องค์ประกอบหลักยังคงเหมือนเดิม ความแตกต่างอยู่ที่คุณจะเริ่มต้นเส้นทาง Zero Trust อย่างไร ที่ ManageEngine เราแนะนำให้เริ่มจากแนวทางที่ยึด identity เป็นศูนย์กลาง องค์กรที่ให้ความสำคัญกับความปลอดภัยของ identity และ device มักลดความเสี่ยงด้านความปลอดภัยได้เร็วกว่า ตามรายงานของ Forrester เรื่อง "A Practical Guide To A Zero Trust Implementation." ไม่ว่าคุณจะเลือกแนวทางใด โซลูชัน IT management ของ ManageEngine จะเป็นรากฐานด้านเทคโนโลยีสำหรับโมเดล Zero Trust security ของคุณ หรือช่วยอุดช่องว่างด้านความปลอดภัยในแนวทางที่ใช้อยู่ได้ ## โซลูชันของเราครอบคลุม - [Identity Security](https://www.manageengine.com/identity-access-management.html?ME_ZeroTrustSecurity) ![Arrow](https://www.manageengine.com/zero-trust-security/images/pro-arrow-icon.svg) - [Device Security](https://www.manageengine.com/unified-endpoint-management-security.html?ME_ZeroTrustSecurity) ![Arrow](https://www.manageengine.com/zero-trust-security/images/pro-arrow-icon.svg) - [Network Security](https://www.manageengine.com/network-security-solutions.html?ME_ZeroTrustSecurity) ![Arrow](https://www.manageengine.com/zero-trust-security/images/pro-arrow-icon.svg) - [ความปลอดภัยของข้อมูล](https://www.manageengine.com/data-loss-prevention-solutions.html?ME_ZeroTrustSecurity) ![Arrow](https://www.manageengine.com/zero-trust-security/images/pro-arrow-icon.svg) - [Security Analytics และ Automation](https://www.manageengine.com/security-information-event-management.html?ME_ZeroTrustSecurity) ![Arrow](https://www.manageengine.com/zero-trust-security/images/pro-arrow-icon.svg) ## แหล่งข้อมูลที่เกี่ยวข้อง - [แนวทางของ NIST สำหรับ Zero Trust Architecture](https://www.manageengine.com/active-directory-360/zero-trust-architecture.html?ME_ZeroTrustSecurity) ![NIST's Guidance for a Zero Trust Architecture](https://www.manageengine.com/zero-trust-security/images/res-img1.jpg) - [Zero Trust มาแทนที่แนวทาง IAM แบบ "ดั้งเดิม" ที่ใช้อยู่ในปัจจุบันหรือไม่?](https://download.manageengine.com/privileged-access-management/images/does-zero-trust-replace-traditional-current-iam-practices.pdf?ME_ZeroTrustSecurity) ![Does Zero Trust replace „traditional„ current IAM practices?](https://www.manageengine.com/zero-trust-security/images/res-img2.jpg) - [Privileged access management ในโลกของ Zero Trust](https://download.manageengine.com/privileged-access-management/images/privileged-access-management-in-a-zero-trust-world.pdf?ME_ZeroTrustSecurity) ![Privileged access management in a Zero Trust world](https://www.manageengine.com/zero-trust-security/images/res-img3.jpg) - [ทำไม Zero Trust ควรเป็นหัวใจสำคัญของกลยุทธ์ IAM ของคุณ](https://download.manageengine.com/active-directory-360/zero-trust-in-iam.pdf?ME_ZeroTrustSecurity) ![Why Zero Trust should be at the forefront of your IAM strategy](https://www.manageengine.com/zero-trust-security/images/res-img4.jpg)