Control Dimension Perimeter Model Zero Trust Architecture in Healthcare
Trust basis Network location Identity, device posture, data sensitivity
Access scope Broad once authenticated Per session, per resource, time bound
Lateral movement Unrestricted internally Blocked by segmentation policy
Vendor access Shared VPN tunnel Per vendor, per application
Audit trail Login events only Every authorization decision