The airport model is the new cybersecurity paradigm
By Miju Han, Director of Product Management at HackerOne There has been a dramatic shift away from the traditional cybersecurity “fortress” strategy to a new, modern approach that understands that there is no way to be 100% secure. Building a fortress has been the typical security model for years, where firewalls are expected to protect assets from outsiders and a limited number of entry points enable the tracking of data flow and access. Once inside, however, users have free access (because, presumably, they've been vetted). It essentially relies upon one hardened entry point that, if overcome, leaves everything of value unprotected. This is no longer safe because criminals have figured out how to get over these walls with social engineering, malware, and other tactics. Plus, humans tend to make mistakes and leave a known or unknown door open by placing data on a public server or failing to patch a technology gap. Today, it’s clear this fortress approach has become insufficient...