No Trust on Password, No Trust on Zero Trust

Hitoshi Kokumai
2 min readMar 11, 2023

--

Council Post: Why Physical Identity And Access Management Are Key To A True Zero-Trust Architecture

On my earlier post “Driven by Ignorance?” https://www.linkedin.com/posts/hitoshikokumai_your-voice-can-be-a-password-are-you-protecting-activity-7037969991379419136-8F0K

I found this comment “Zero Trust cannot be achieved via probabilistic methods, the numbers for false decision (however small) will never be zero. If probabilistic methods are used anywhere in user, device, network or application chain, then zero is not possible.”

Definitely, there can be no trust on ‘Zero Trust’ where security people have no trust on secret credentials for deterministic authentication factors.

“What is Most Crucial to ‘Zero Trust’ Schemes” https://www.linkedin.com/posts/hitoshikokumai_to-maximize-cybersecurity-dollars-lean-on-activity-6939090541791846400-03EZ

Coincidentally, I learnt from Hanno Ekdahl’s latest Security Newsletter this article — “Why Physical Identity And Access Management Are Key To A True Zero-Trust Architecture” https://www.forbes.com/sites/forbesbusinessdevelopmentcouncil/2023/03/03/why-physical-identity-and-access-management-are-key-to-a-true-zero-trust-architecture/

It reads “In conclusion, cybersecurity policies must incorporate physical identity and access management not only for true security, including zero-trust policies and GRC, but also for successful digital transformation and a positive workplace experience.”

I would agree to it provided it is not contaminated by a misperception about the value of citizens’ volition and memory; Democracy would be lost where the password that we feed volitionally was lost. When authentication happens without our knowledge or against our will, it’s a 1984-like Dystopia.

Well, physical identity must mean the identity of human beings having their history of personal experiences with the pleasure of eating, drinking and the pains of hunger and thirst

Website — https://www.mnemonicidentitysolutions.com/

Digital identity blogs collected at https://www.linkedin.com/pulse/collection-digital-identity-comments-hitoshi-kokumai-posted-kokumai/

--

--

Hitoshi Kokumai
Hitoshi Kokumai

Written by Hitoshi Kokumai

Advocate of ‘Identity Assurance by Our Own Volition and Memory’, Inventor of Expanded Password System and Founder of Mnemonic Identity Solutions Limited in UK.

No responses yet