Consider how Josephine Wolff put it in her Slate article published late last year:“The set of potential victims is not just (just!) Layered security, which can help make the attack surface more difficult to navigate. Zero trust is about risk mitigation; you don't trust any system within your network regardless of what that system is. Put perhaps too simplistically, zero trust is about technology and systems, while least privilege is about people, inside or outside the network. They happen to be the essence of layered security.
Source: Forbes March 12, 2021 13:30 UTC