ZERO TRUST PORTFOLIO MANAGEMENT OFFICE · INTERNAL MEMORANDUM
This memorandum summarizes Component progress against Phase One of the Zero Trust Implementation Guideline (ZIG) and directs enforcement priorities for the next two quarters. Phase One organizes a subset of the 152 Activities in the DoW ZT Strategy toward Target-level maturity under the principles of never trust, always verify and assume breach.
Continuous authentication and authorization of every user, device, and application is now enforced at the Policy Decision Point for all portal-delivered resources. Legacy perimeter dependencies remain in two Component enclaves and are scheduled for micro-segmentation under Activity 5.4.1.
| Gap | Pillar | Related Activity | Priority |
|---|---|---|---|
| Unmanaged endpoints reaching DAAS resources | Device | 2.4.1 Deny Device by Default | P1 |
| Untagged mission data in shared stores | Data | 4.3.1 Tagging & Classification Tools | P1 |
| No enforcement point on browser egress | Data | 4.6.1 DLP Enforcement Points | P1 |
| Privileged accounts outside PAM | User | 1.4.1 Privileged User Migration | P2 |
| East-west traffic unsegmented in DC-2 | Network | 5.4.1 Micro-Segmentation | P2 |
Components report Phase One status through the Mission Portal activity tracker no later than the 5th of each month. Questions route to the ZT PfMO watch cell.