What problem does it solve?
This Skill helps architects eliminate implicit trust in networks by designing and documenting Zero Trust Architecture and SASE deployment models that provide identity-first access, microsegmentation, and policy-engine-driven enforcement across cloud, branch, and remote users.
Core Features & Use Cases
- Architecture design: templates and component maps for ZTNA, SWG, CASB, FWaaS, SD-WAN and PoP considerations.
- Policy engine & PDP/PEP design: guidance on identity checks, device posture, risk scoring, enforcement points, and least-privilege access patterns.
- Vendor evaluation & migration planning: scorecards, deployment models (single-vendor, dual-vendor, hybrid), and mappings to NIST SP 800-207 and CISA maturity pillars.
- Use Case: create a phased SASE migration plan for an enterprise moving from MPLS/VPN to cloud-native ZTNA with integrated SD-WAN and DLP.
Quick Start
Ask the skill to design a Zero Trust Architecture and SASE deployment plan for your enterprise including recommended components, a vendor scorecard, and a migration roadmap.