Federal News
NSA Updates Zero Trust Guidelines
March 23, 2026
The National Security Agency (NSA) has updated its Zero Trust Implementation Guidelines to address evolving cybersecurity threats, including those posed by AI and hybrid cloud environments, with a target maturity date of 2027. Microsoft has expanded its Zero Trust framework to incorporate AI-specific security risks, launching updated workshops, assessments, and reference architectures that emphasize identity governance and continuous access verification. NVIDIA introduced a zero-trust architecture for secure AI model deployment leveraging confidential computing on GPUs, aimed at regulated environments requiring strong trust boundaries among stakeholders.
- NSA's updated guidelines emphasize phased implementation, identity governance, and behavioral verification, setting a federal benchmark for Zero Trust maturity by 2027.
- Microsoft's Entra ID Governance platform offers scalable, automated identity lifecycle management critical for compliance and security modernization in government and contractor environments.
- NVIDIA's open reference architecture for zero-trust AI factories provides a procurement opportunity for secure AI infrastructure solutions in regulated sectors.
- Procurement professionals should evaluate vendors offering integrated Zero Trust solutions that address AI lifecycle risks and hybrid cloud complexities to meet federal cybersecurity mandates and emerging threat landscapes.
Identity governance is an essential tool to help customers have a broader security posture026 to make sure customers have the right access at the right time for the right workloads based on their job function.
— Ramiro Calderon, Principal Product Manager at Microsoft
Access packages are groups plus plus in steroids because they provide governance capabilities far beyond traditional group membership: timebound access, approver workflows, and automatic expiration.
— Tee Earls, Product Area Lead for Entra ID Governance
Microsoft today announces Zero Trust for AI, updating its Zero Trust Workshop, Assessment, and reference architecture to cover the AI lifecycle and agent risks.
— Microsoft Security Team
Agencies
National Security Agency
Vendors
Microsoft, NVIDIA
Locations
Sources
- Is your zero trust model prepared for modern threats? | IT Pro · IT Pro · Mar 19
- Why Identity Governance Is Core to Zero Trust · Petri IT Knowledgebase · Mar 19
- Microsoft Expands Zero Trust Framework For AI Security | Let's Data Science · Let's Data Science · Mar 23
- NVIDIA Unveils Zero-Trust Architecture for Secure AI Model Deployment · blockchain.news · Mar 23