Like most great ideas, the concept of zero trust (ZT) is refreshingly simple: allow only authorized users access to an application. How hard can that be? It turns out, it’s much harder than some might have thought—until now. In this paper, we’ll review the historical precedent, implementing what you can with contemporaneous tools, and why zero trust principles are orthogonal to the current state of security. And finally, the paper will outline what you can do to better prepare for the ZT tsunami.