Article

September 25, 2026

Zero Trust by Design: Building Security into Your Infrastructure

This piece was written by Drew Simmons, Cybersecurity Strategy Manager here at Opkalla.

Zero Trust has become one of the most talked-about concepts in cybersecurity, and for good reason. Traditional network security was built around a simple assumption: once someone gained access to the corporate network, they could be trusted to move freely inside the castle walls. But with the proliferation of remote employees, cloud applications, contractors, and personal devices, that trust-once approach no longer works against increasingly sophisticated cyber threats.

Zero Trust Network Access (ZTNA) replaces implicit trust with continuous verification. Instead of granting users broad network access, ZTNA provides access only to the specific applications and resources they are authorized to use. Every connection is evaluated based on factors such as identity, device security, location, and risk.  

So, if most enterprises understand the value of ZTNA, why have fewer than 1 in 6 organizations put it into practice?  

Why the Gap in Adoption Persists

The benefits are clear, but the transition comes with challenges. These are the obstacles that most often slow organizations down:

  • Incomplete application inventories: Organizations may not know every application in use, who owns it, where it is hosted, or who requires access.
  • User resistance: Employees accustomed to VPN access may resist new clients, authentication steps, restricted access, or changes to familiar workflows.
  • Weak identity foundations: ZTNA depends heavily on reliable identity, MFA, single sign-on, accurate user groups, and effective account lifecycle management.
  • Skills and staffing limitations: Internal teams may lack experience designing application-level access policies or troubleshooting ZTNA environments.
  • Lack of a phased migration plan: Attempting to migrate too many applications or users at once increases the likelihood of business disruption.  

None of these obstacles are reasons to avoid Zero Trust. They're simply the parts of the process that don't show up in the framework diagrams. These are exactly what separates organizations that get stuck in planning from the ones that make it to production.

What It Takes to Get To Real Zero Trust

Closing the gap from concept to working architecture for Zero Trust comes down to a handful of practical decisions made early and revisited often:

  • Define the business objectives: Clear objectives prevent deployment from becoming a technology project without measurable business value.
  • Build an application inventory: Unknown dependencies are a common cause of disruption during ZTNA migrations.
  • Plan the user experience: Poor user experience can drive employees toward workarounds and slow adoption.  
  • Define operational ownership: ZTNA commonly crosses networking, security, identity, endpoint, cloud, and application teams, making clear ownership essential.

Organizations that treat these as design decisions, rather than problems to solve after the fact, tend to move through Zero Trust implementation with less disruption.

Zero Trust Is a Practice, Not a Project

The organizations that succeed with Zero Trust don't treat it as a single initiative with a defined end date. They treat it as an ongoing discipline that gets built into how infrastructure decisions are made going forward.

If your organization is working through what a Zero Trust rollout should look like, Opkalla's vendor-neutral technology advisors can help. Want to dive deeper into the topic of Zero Trust? Join us at the Opkalla Tech Summit on October 1st for the panel Zero Trust by Design: Building Security Into Your Infrastructure. Use code ZTNA for a ticket, on us.

Get Started

Get experienced help with your next IT decision.

Book a call to access professional IT consulting services that improve IT service delivery and help you confidently choose the right IT solutions.

Talk with a Technology Advisor
Smiling man wearing a blue blazer and white shirt with short dark hair, standing outdoors.
Opaque orange Opkalla logo