{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,8,2]],"date-time":"2026-08-02T18:04:27Z","timestamp":1785693867584,"version":"3.56.0"},"reference-count":46,"publisher":"MDPI AG","issue":"1","license":[{"start":{"date-parts":[[2024,12,30]],"date-time":"2024-12-30T00:00:00Z","timestamp":1735516800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["JCP"],"abstract":"<jats:p>The Zero Trust Architecture (ZTA) security system follows the \u201cnever trust, always verify\u201d principle. The process constantly verifies users and devices trying to access resources. This paper describes how Microsoft Azure uses ZTA to enforce strict identity verification and access rules across the cloud environment to improve security. Implementation takes time and effort. Azure\u2019s extensive services and customizations require careful design and implementation. Azure administrators need help navigating and changing configurations due to its complex user interface (UI). Each Azure ecosystem component must meet ZTA criteria. ZTAs comprehensive policy definitions, multi-factor and passwordless authentication, and other advanced features are tested in a mid-size business scenario. The document delineates several principal findings concerning the execution of Azure\u2019s ZTA within mid-sized enterprises. Azure ZTA significantly improves security by reducing attack surfaces via ongoing identity verification, stringent access controls, and micro-segmentation. Nonetheless, its execution is resource-demanding and intricate, necessitating considerable expertise and meticulous planning. A notable disparity exists between theoretical ZTA frameworks and their practical implementation, characterized by disjointed management interfaces and user fatigue resulting from incessant authentication requests. The case studies indicate that although Zero Trust Architecture enhances organizational security and mitigates risks, it may disrupt operations and adversely affect user experience, particularly in hybrid and fully cloud-based settings. The study underscores the necessity for customized configurations and the equilibrium between security and usability to ensure effective ZTA implementation.<\/jats:p>","DOI":"10.3390\/jcp5010002","type":"journal-article","created":{"date-parts":[[2024,12,31]],"date-time":"2024-12-31T07:34:19Z","timestamp":1735630459000},"page":"2","update-policy":"https:\/\/doi.org\/10.3390\/mdpi_crossmark_policy","source":"Crossref","is-referenced-by-count":19,"title":["Analysis of Azure Zero Trust Architecture Implementation for Mid-Size Organizations"],"prefix":"10.3390","volume":"5","author":[{"ORCID":"https:\/\/orcid.org\/0000-0001-8638-6044","authenticated-orcid":false,"given":"Vedran","family":"Daki\u0107","sequence":"first","affiliation":[{"name":"Department of Cybersecurity, Algebra University, 10000 Zagreb, Croatia"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-5566-1581","authenticated-orcid":false,"given":"Zlatan","family":"Mori\u0107","sequence":"additional","affiliation":[{"name":"Department of Cybersecurity, Algebra University, 10000 Zagreb, Croatia"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Ana","family":"Kapulica","sequence":"additional","affiliation":[{"name":"Department of Cybersecurity, Algebra University, 10000 Zagreb, Croatia"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-8832-9841","authenticated-orcid":false,"given":"Damir","family":"Regvart","sequence":"additional","affiliation":[{"name":"Department of Cybersecurity, Algebra University, 10000 Zagreb, Croatia"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"1968","published-online":{"date-parts":[[2024,12,30]]},"reference":[{"key":"ref_1","doi-asserted-by":"crossref","unstructured":"Tyler, D., and Viana, T. (2021). Trust No One? A Framework for Assisting Healthcare Organisations in Transitioning to a Zero-Trust Network Architecture. Appl. Sci., 11.","DOI":"10.3390\/app11167499"},{"key":"ref_2","doi-asserted-by":"crossref","first-page":"901","DOI":"10.30574\/wjarr.2024.23.2.2420","article-title":"Securing the Cloud: Advanced Solutions for Government Data Protection","volume":"23","author":"Abikoye","year":"2024","journal-title":"World J. Adv. Res. Rev."},{"key":"ref_3","doi-asserted-by":"crossref","first-page":"189","DOI":"10.1007\/s12553-023-00809-4","article-title":"A Zero Trust Architecture for Health Information Systems","volume":"14","author":"Edo","year":"2023","journal-title":"Health Technol."},{"key":"ref_4","doi-asserted-by":"crossref","first-page":"6","DOI":"10.1016\/S1353-4858(19)30034-0","article-title":"Micro-Segmentation: Securing Complex Cloud Environments","volume":"2019","author":"Klein","year":"2019","journal-title":"Netw. Secur."},{"key":"ref_5","doi-asserted-by":"crossref","unstructured":"Gupta, A., Khan, H., Nazir, S., Shafiq, M., and Shabaz, M. (2023). Metaverse Security: Issues, Challenges and a Viable ZTA Model. Electronics, 12.","DOI":"10.3390\/electronics12020391"},{"key":"ref_6","doi-asserted-by":"crossref","unstructured":"Daah, C., Qureshi, A., Awan, I., and Konur, S. (2024). Enhancing Zero Trust Models in the Financial Industry through Blockchain Integration: A Proposed Framework. Electronics, 13.","DOI":"10.3390\/electronics13050865"},{"key":"ref_7","doi-asserted-by":"crossref","unstructured":"Zaid, B., Sayeed, A., Bala, P., Alshehri, A., Alanazi, A.M., and Zubair, S. (2023). Toward Secure and Resilient Networks: A Zero-Trust Security Framework with Quantum Fingerprinting for Devices Accessing Network. Mathematics, 11.","DOI":"10.3390\/math11122653"},{"key":"ref_8","doi-asserted-by":"crossref","unstructured":"Sarkar, S., Choudhary, G., Shandilya, S.K., Hussain, A., and Kim, H. (2022). Security of Zero Trust Networks in Cloud Computing: A Comparative Review. Sustainability, 14.","DOI":"10.3390\/su141811213"},{"key":"ref_9","doi-asserted-by":"crossref","unstructured":"Alberti, E., Alvarez-Napagao, S., Anaya, V., Barroso, M., Barru\u00e9, C., Beecks, C., Bergamasco, L., Chala, S.A., Gimenez-Abalos, V., and Gra\u00df, A. (2024). AI Lifecycle Zero-Touch Orchestration within the Edge-to-Cloud Continuum for Industry 5.0. Systems, 12.","DOI":"10.3390\/systems12020048"},{"key":"ref_10","unstructured":"Rose, S., Borchert, O., Mitchell, S., and Connelly, S. (2024, October 04). Zero Trust Architecture, Available online: https:\/\/nvlpubs.nist.gov\/nistpubs\/SpecialPublications\/NIST.SP.800-207.pdf."},{"key":"ref_11","doi-asserted-by":"crossref","first-page":"9947347","DOI":"10.1155\/2021\/9947347","article-title":"Migrating to Zero Trust Architecture: Reviews and Challenges","volume":"2021","author":"Teerakanok","year":"2021","journal-title":"Secur. Commun. Netw."},{"key":"ref_12","doi-asserted-by":"crossref","first-page":"6476274","DOI":"10.1155\/2022\/6476274","article-title":"A Survey on Zero Trust Architecture: Challenges and Future Trends","volume":"2022","author":"He","year":"2022","journal-title":"Wirel. Commun. Mob. Comput."},{"key":"ref_13","doi-asserted-by":"crossref","unstructured":"Ho, P.-H., Chen, H.-Y., and Lin, T.-N. (2023, January 26\u201328). Zero Trust Architecture of Token Network. Proceedings of the 2023 IEEE International Conference on Metaverse Computing, Networking and Applications (MetaCom), Kyoto, Japan.","DOI":"10.1109\/MetaCom57706.2023.00120"},{"key":"ref_14","doi-asserted-by":"crossref","first-page":"103827","DOI":"10.1016\/j.cose.2024.103827","article-title":"Multivocal Literature Review on Zero-Trust Security Implementation","volume":"141","author":"Itodo","year":"2024","journal-title":"Comput. Secur."},{"key":"ref_15","doi-asserted-by":"crossref","first-page":"492","DOI":"10.51219\/JAIMLD\/anvesh-gunuganti\/133","article-title":"Identity Based-Zero Trust","volume":"1","author":"Gunuganti","year":"2023","journal-title":"JAIMLD"},{"key":"ref_16","doi-asserted-by":"crossref","unstructured":"Munasinghe, S., Piyarathna, N., Wijerathne, E., Jayasinghe, U., and Namal, S. (2023, January 25\u201326). ML Based Zero Trust Architecture for Secure Networking. Proceedings of the 2023 IEEE 17th International Conference on Industrial and Information Systems (ICIIS), Peradeniya, Sri Lanka.","DOI":"10.1109\/ICIIS58898.2023.10253610"},{"key":"ref_17","doi-asserted-by":"crossref","first-page":"479","DOI":"10.4236\/eng.2022.1411036","article-title":"Trust Assessment Model Based on a Zero Trust Strategy in a Community Cloud Environment","volume":"14","author":"Tetchueng","year":"2022","journal-title":"Engineering"},{"key":"ref_18","doi-asserted-by":"crossref","unstructured":"Mohseni Ejiyeh, A. (2023, January 12\u201317). Real-Time Lightweight Cloud-Based Access Control for Wearable IoT Devices: A Zero Trust Protocol. Proceedings of the First International Workshop on Security and Privacy of Sensing Systems 2023, Istanbul, T\u00fcrkiye.","DOI":"10.1145\/3628356.3630118"},{"key":"ref_19","doi-asserted-by":"crossref","unstructured":"Hosney, E.S., Halim, I.T.A., and Yousef, A.H. (2022, January 9\u201310). An Artificial Intelligence Approach for Deploying ZTA. Proceedings of the 2022 5th International Conference on Computing and Informatics (ICCI) 2022, Cairo, Egypt.","DOI":"10.1109\/ICCI54321.2022.9756117"},{"key":"ref_20","doi-asserted-by":"crossref","unstructured":"Che, K., and Sheng, S. (2023, January 15\u201317). Cloud Native Network Security Architecture Strategy under Zero Trust Scenario. Proceedings of the 2023 IEEE 7th Information Technology and Mechatronics Engineering Conference (ITOEC), Chongqing, China.","DOI":"10.1109\/ITOEC57671.2023.10291357"},{"key":"ref_21","doi-asserted-by":"crossref","first-page":"2794","DOI":"10.1109\/TIFS.2023.3264152","article-title":"SysFlow: Toward a Programmable Zero Trust Framework for System Security","volume":"18","author":"Hong","year":"2023","journal-title":"IEEE Trans. Inform. Forensic Secur."},{"key":"ref_22","doi-asserted-by":"crossref","unstructured":"Bhardwaj, N., Banerjee, A., and Roy, A. (2021). Case Study of Azure and Azure Security Practices. ML Techniques and Analytics for Cloud Security, Wiley.","DOI":"10.1002\/9781119764113.ch16"},{"key":"ref_23","doi-asserted-by":"crossref","unstructured":"Copeland, M., and Jacobs, M. (2020). Azure Network Security Configuration, Springer.","DOI":"10.1007\/978-1-4842-6531-4_2"},{"key":"ref_24","doi-asserted-by":"crossref","unstructured":"Chilberto, J., Zaal, S., Aroraa, G., and Price, E. (2020). Identity Security with Azure Active Directory, Springer.","DOI":"10.1007\/978-1-4842-5437-0_7"},{"key":"ref_25","doi-asserted-by":"crossref","first-page":"20","DOI":"10.1109\/MM.2019.2898633","article-title":"The Hardware Security Behind Azure Sphere","volume":"39","author":"Stiles","year":"2019","journal-title":"IEEE Micro"},{"key":"ref_26","doi-asserted-by":"crossref","unstructured":"Jensen, D. (2019). Azure IoT Edge Security. Beginning Azure IoT Edge Computing, Springer.","DOI":"10.1007\/978-1-4842-4536-1"},{"key":"ref_27","doi-asserted-by":"crossref","unstructured":"Ward, B. (2020). Securing Azure SQL, Springer.","DOI":"10.1007\/978-1-4842-5931-3_6"},{"key":"ref_28","doi-asserted-by":"crossref","unstructured":"De Tender, P., Rend\u00f3n, D., and Erskine, S. (2019). Azure Sentinel (Preview). Pro Azure Governance and Security, Apress.","DOI":"10.1007\/978-1-4842-4910-9"},{"key":"ref_29","doi-asserted-by":"crossref","unstructured":"Nightingale, E.B. (2019, January 27\u201328). A View from Industry: Securing IoT with Azure Sphere. Proceedings of the 20th International Workshop on Mobile Computing Systems and Applications, Santa Cruz, CA, USA.","DOI":"10.1145\/3301293.3302378"},{"key":"ref_30","doi-asserted-by":"crossref","unstructured":"Chandrasekara, C., and Herath, P. (2019). Azure DevOps Security Options. Hands-on Azure Boards: Configuring and Customizing Process Workflows in Azure DevOps Services, Springer.","DOI":"10.1007\/978-1-4842-5046-4"},{"key":"ref_31","doi-asserted-by":"crossref","unstructured":"Ifrah, S. (2020). Secure Your Microsoft Azure Containers, Springer.","DOI":"10.1007\/978-1-4842-5753-1_6"},{"key":"ref_32","unstructured":"Martseniuk, Y., Partyka, A., Harasymchuk, O., and Korshun, N. (2024, January 28). Automated Conformity Verification Concept for Cloud Security. Proceedings of the 2024 Workshop Cybersecurity Providing in Information and Telecommunication Systems, CPITS 2024, Kyiv, Ukraine."},{"key":"ref_33","doi-asserted-by":"crossref","unstructured":"Tanana, D. (2023). Vulnerability Analysis of Azure Blockchain Workbench Key Management System. arXiv.","DOI":"10.1109\/Redundancy59964.2023.10330084"},{"key":"ref_34","unstructured":"Rose, S.D. (2024, October 04). Planning for a Zero Trust Architecture: A Planning Guide for Federal Administrators, Available online: https:\/\/nvlpubs.nist.gov\/nistpubs\/CSWP\/NIST.CSWP.20.pdf."},{"key":"ref_35","doi-asserted-by":"crossref","first-page":"16","DOI":"10.31673\/2412-9070.2022.051620","article-title":"Zero trust architecture: The basics principles of organization","volume":"159","author":"Prydybailo","year":"2022","journal-title":"Connectivity"},{"key":"ref_36","doi-asserted-by":"crossref","first-page":"012010","DOI":"10.1088\/1742-6596\/1651\/1\/012010","article-title":"An Implementation Method of Zero-trust Architecture","volume":"1651","author":"Chuan","year":"2020","journal-title":"J. Phys. Conf. Ser."},{"key":"ref_37","doi-asserted-by":"crossref","first-page":"102419","DOI":"10.1016\/j.cose.2021.102419","article-title":"Survivable zero trust for cloud computing environments","volume":"110","author":"Ferretti","year":"2021","journal-title":"Comput. Secur."},{"key":"ref_38","doi-asserted-by":"crossref","first-page":"19487","DOI":"10.1109\/ACCESS.2023.3248622","article-title":"A Comprehensive Framework for Migrating to Zero Trust Architecture","volume":"11","author":"Phiayura","year":"2023","journal-title":"IEEE Access"},{"key":"ref_39","doi-asserted-by":"crossref","first-page":"140","DOI":"10.46338\/ijetae0722_15","article-title":"Zero Trust Architecture: Trend and Impact on Information Security","volume":"12","author":"Edo","year":"2022","journal-title":"Int. J. Emerg. Technol. Adv. Eng."},{"key":"ref_40","doi-asserted-by":"crossref","unstructured":"Hasan, S., Amundson, I., and Hardin, D.S. (2023). Zero Trust Architecture Patterns for Cyber-Physical Systems, SAE.","DOI":"10.4271\/2023-01-1001"},{"key":"ref_41","doi-asserted-by":"crossref","first-page":"1","DOI":"10.5430\/jha.v12n1p1","article-title":"Zero Trust and the Future of Cybersecurity in Healthcare Delivery Organizations","volume":"12","author":"Gellert","year":"2023","journal-title":"JHA"},{"key":"ref_42","doi-asserted-by":"crossref","first-page":"57143","DOI":"10.1109\/ACCESS.2022.3174679","article-title":"Zero Trust Architecture: A Comprehensive Survey","volume":"10","author":"Syed","year":"2022","journal-title":"IEEE Access"},{"key":"ref_43","doi-asserted-by":"crossref","unstructured":"Paul, B., and Rao, M. (2022). Zero-Trust Model for Smart Manufacturing Industry. Appl. Sci., 13.","DOI":"10.3390\/app13010221"},{"key":"ref_44","doi-asserted-by":"crossref","unstructured":"D\u2019Silva, D., and Ambawade, D. (2021, January 2\u20134). Building A Zero Trust Architecture Using Kubernetes. Proceedings of the 2021 6th International Conference for Convergence in Technology (I2CT), Maharashtra, India.","DOI":"10.1109\/I2CT51068.2021.9418203"},{"key":"ref_45","unstructured":"(2024, September 08). How Microsoft and NIST Are Collaborating to Advance the Zero Trust Implementation. Available online: https:\/\/www.microsoft.com\/en-us\/security\/blog\/2024\/08\/06\/how-microsoft-and-nist-are-collaborating-to-advance-the-zero-trust-implementation\/."},{"key":"ref_46","doi-asserted-by":"crossref","first-page":"89270","DOI":"10.1109\/ACCESS.2022.3200165","article-title":"Blockchain-Enabled Intrusion Detection and Prevention System of APTs Within Zero Trust Architecture","volume":"10","author":"Alevizos","year":"2022","journal-title":"IEEE Access"}],"container-title":["Journal of Cybersecurity and Privacy"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/www.mdpi.com\/2624-800X\/5\/1\/2\/pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,10,10]],"date-time":"2025-10-10T16:57:13Z","timestamp":1760115433000},"score":1,"resource":{"primary":{"URL":"https:\/\/www.mdpi.com\/2624-800X\/5\/1\/2"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024,12,30]]},"references-count":46,"journal-issue":{"issue":"1","published-online":{"date-parts":[[2025,3]]}},"alternative-id":["jcp5010002"],"URL":"https:\/\/doi.org\/10.3390\/jcp5010002","relation":{},"ISSN":["2624-800X"],"issn-type":[{"value":"2624-800X","type":"electronic"}],"subject":[],"published":{"date-parts":[[2024,12,30]]}}}