Why it’s not ZTNA vs. SASE, but ZTNA and SASE

May 05, 2021

SASE and ZTNA are both hot infosec topics right now, but when it comes to adoption, it’s not a question of choosing one or the other but using Zero Trust as part of a SASE Framework.

Think of SASE (Secure Access Security Edge) as a higher-level design concept than ZTNA (Zero Trust Network Access). The two things are not separate or competing network security models; rather, ZTNA is part of an overall SASE architecture.

The SASE model focuses on convergence and inversion of the network and security architectures, pulling together a wide range of functions that act based on predefined policies. The level of trust given to a user is where the concept of Zero Trust comes into this approach and policy creation. In addition, these Zero Trust policies draw from other information about the user’s identity, role, device, location, and so on, which are taken from key points across a SASE architecture. Therefore, we must consider how we get SASE and Zero Trust designs to work together to deliver the user experience and security required at the point of need.

However, while Zero Trust implementation may be a short- to medium-term objective for many network architects, SASE is a long-term goal. Teneo is working with a range of companies looking to adopt a SASE approach to update their networks and network security stacks to support wider digital transformational projects. Zero Trust is a common starting point, and working with a partner like Teneo helps avoid making compromises later on due to deploying ZTNA in isolation.

Based on industry research from Gartner, we expect to see around 60% to 75% of users moving to a ‘hybrid working’ model (assuming Covid restrictions continue to ease), where they split their time between home and office working. This means the attack surface isn’t going to get smaller anytime soon, and if anything, it will become more distributed. Therefore, organizations need to look at dynamic, software-defined, policy-based approaches like ZTNA and SASE to ensure users are secure from wherever they are accessing corporate resources and sensitive information.

To find out more about how ZTNA, as part of a SASE architecture, can work for you, visit www.teneo.net/zero-trust-security

Blog Author: Brett Ayres, Services Director, Teneo

Contact us - We’d love to help you





    Teneo collects your personal data when you complete our online forms. We will use this information to provide an accurate response to your questions or requests and we will keep a record of your form completion in our CRM system. By submitting this form, you agree to us contacting you for the purpose of our response. For more information explaining how we use your personal data, please see our Privacy Policy.

    Cookie Policy

    This website uses cookies so we can provide you with the best user experience possible.

    Cookies are small files containing information that enables a website to recognise you. They’re downloaded to the device you use when you visit a website and sent back to that website each time you re-visit, or sent to another website that recognises the same cookie.

    Our cookie policy tells you how and why we use cookies, and how this allows us to improve your online experience. You can read our full Cookie Policy here.

    Strictly Necessary Cookies

    Strictly necessary cookies include session cookies and persistent cookies. Session cookies keep track of your current visit and how you navigate the site. They only last for the duration of your visit and are deleted from your device when you close your Internet browser. Persistent cookies last after you’ve closed your Internet browser and enable our website to recognise you as a repeat visitor and remember your actions and preferences when you return.

    Third Party Cookies

    Third party cookies include performance cookies and targeting cookies. Performance cookies collect information about how you use a website, e.g. which pages you go to most often, and if you get error messages from web pages. These cookies don’t collect information that identifies you personally as a visitor, although they might collect the IP address of the device you use to access the site. Targeting cookies collect information about your browsing habits. They are usually placed by advertising networks such as Google. The cookies remember that you have visited a website and this information is shared with other organisations such as media publishers.

    Keeping these cookies enabled helps us to improve our website and display content that is more relevant to you and your interests across the Google content network.