Zero Trust Engineering — Automated isolation and remediation
securityv1/01 Views
/02 About
Automation and orchestration engineering reference for automated isolation and remediation, including policy, logical interfaces, recovery and assurance.
Purpose: Automated isolation and remediation. Domain: Automation and orchestration. Family: decision. Scenario trigger: Authorize automated containment or repair activity. Input assurance: Signed threat finding, current impact and recovery options. Evaluation: Evaluate action blast radius and containment necessity. Governing policy: Automation approval, action scope and safe rollback policy. Resource-side obligation: Apply bounded isolation or repair with postcondition test. Protected concern: Protected resource and remediation control plane. Logical interface: Response action principal target reason deadline and rollback. Evidence: Automated action trigger impact and validation proof. Failure: Runaway automation or containment harms critical service. Required recovery: Stop automator, revert safe state and require human approval. Architectural invariant: High-impact remediation must be bounded, observable and reversible Adoption: replace reference roles with concrete owner-controlled services. Specify exact provider/consumer identities, schema fields and classifications, signal provenance and freshness, idempotency, authorization lifetime, timeout/retry limits, observation and tamper evidence. A denied or failed operation must not silently become a permitted one. Scope: original vendor-neutral, implementation-agnostic technical reference model. Illustrative logical components and behaviors are neither a deployed system nor evidence of regulatory compliance. Package identities remain stable within the package; cross-package semantic reconciliation requires separate explicit registry support.
Curated · other · unspecified · Published by Lattix · 28 elements · 34 relationships · validated on publish
/03 Contents
- Capability
- Automation and orchestration, Automated isolation and remediation
- Role
- Automation and orchestration owner
- Business Actor
- Access-requesting principal
- Activity
- Authorize automated containment or repair activity, Verify: Signed threat finding, current impact and recovery options, Assess: Evaluate action blast radius and containment necessity, Execute: Apply bounded isolation or repair with postcondition test, Exception: Runaway automation or containment harms critical service, Recover: Stop automator, revert safe state and require human approval, Collect additional authorization evidence
- Application Component
- Signed threat finding, current impact and recovery options, Evaluate action blast radius and containment necessity, Apply bounded isolation or repair with postcondition test
- Application
- Protected resource and remediation control plane
- Policy
- Automation approval, action scope and safe rollback policy
- API
- Automated isolation and remediation logical interface
- Message/Event Schema
- Response action principal target reason deadline and rollback
- Data Store
- Automated action trigger impact and validation proof
- Control
- Automated isolation and remediation enforcement assurance
- Risk
- Runaway automation or containment harms critical service risk
- Requirement
- High-impact remediation must be bounded, observable and reversible
- Measure
- Automated isolation and remediation assurance completeness
- Trust Boundary
- Automated isolation and remediation authority boundary
- State
- Conditionally authorized, Denied or additional proof required, Additional assurance required, Active authorization revoked