Find notable cyber news and cases, enriched with sources, timelines, and signals.

US National Security Agency (NSA) / Zero Trust Implementation Guidelines (ZIGs) Released Phase One and Phase Two guidance for zero trust maturity for Published on 2026-02-02 152

Public Sector Action
First reported
Last updated
Happening score
H score 24
1 unique sources, 1 articles

Summary

Hide ▲

The US National Security Agency (NSA) released Zero Trust Implementation Guidelines (ZIGs) to help organizations move toward target-level zero trust maturity. The guidance introduces Phase One and Phase Two, giving the US Department of War and broader US government stakeholders a phased path instead of a fixed roadmap. It lays out required activities, dependencies, and outcomes while allowing implementation to be tailored to operational needs. The release matters because it formalizes a modular federal zero-trust framework for government cyber defense.

Related Happenings

Pentagon suspends CMMC phase two for 60-day review

Public Sector Action
H score24 First: 14.07.2026 09:37 Last: 14.07.2026 09:37 Sources 1

About this happening: The Pentagon suspended CMMC phase two and opened a 60-day review, delaying new certification requirements for defense contractors and subcontractors. The pause...

CISA zero-trust SASE guidance for TIC 3.0

Public Sector Action
H score30 First: 25.06.2026 14:30 Last: 25.06.2026 14:30 Sources 1

About this happening: CISA published new guidance on June 24 for federal civilian executive branch agencies to replace legacy internet gateways with SASE as part of the move from TIC...

Executive order NSA CISA NIST and Treasury Department created a voluntary pre-release review framework a classified benchmark federal hardening directives and an AI cybersecurity

Public Sector Action
H score26 First: 03.06.2026 14:00 Last: 03.06.2026 14:00 Sources 1

About this happening: President Donald Trump signed a June 2 executive order creating a voluntary pre-release cybersecurity review for covered frontier AI models, giving the US government a...

CISA joint Zero Trust OT guide

Public Sector Action
H score23 First: 29.04.2026 15:00 Last: 29.04.2026 15:00 Sources 1

About this happening: CISA and U.S. partners published a joint guide to help OT owners and operators apply Zero Trust to operational technology environments, giving government and infra...

CISA publishes Be Air Aware guidance for UAS threats

Public Sector Action
H score24 First: 11.02.2026 14:00 Last: 11.02.2026 14:00 Sources 1

About this happening: CISA published the Be Air Aware™ guidance suite, giving organizations a federal playbook for Unmanned Aircraft System Threats. The guides were issued in November after...

Timeline

  1. 02.02.2026 18:05 2 articles · 5mo ago

    NSA releases phased Zero Trust Implementation Guidelines

    Initial Disclosure

    The US National Security Agency (NSA) released Zero Trust Implementation Guidelines (ZIGs) for the US Department of War (DoW) and broader US government cybersecurity strategy, introducing Phase One and Phase Two to move organizations from Discovery to target-level zero trust maturity. Phase One defines 36 activities supporting 30 zero trust capabilities, and Phase Two adds 41 activities enabling 34 additional capabilities across component environments.

    Show sources
  2. 02.02.2026 18:05 1 articles · 5mo ago

    Zero trust guidance emphasizes continuous evaluation after login

    Technical Analysis Update

    Brian Soby of AppOmni said zero trust should be treated as an operating model rather than a product and argued that policy decisions must be continuously evaluated as conditions change. The guidance stresses that continuous evaluation has to happen after login, not just at login, warns that many successful attacks occur post-authentication, and cautions that zero trust network access alone is insufficient without visibility into application policy decision points.

    Show sources