Zero Trust Engineering — Enterprise endpoint asset discovery

securityv1

/01 Views

Capability definition and hierarchyarchimate
Operational activity sequencesecurity
Exception and recovery activity sequencesecurity
Conformant decision branchsecurity
Denied, conditional or degraded branchsecurity
Identity-scoped information exchangec4
Context and decision inputsecurity
Policy authority and evaluationsecurity
Decision distribution and resource mediationsecurity
Enforcement decision evidencesecurity
Policy ownershiparchimate
Security control and protected resourcesecurity
Control and failure risksecurity
Conformance obligationarchimate
Capability assurancearchimate
Resource trust boundarysecurity
Activity-to-capability realizationarchimate
Logical service capability realizationarchimate
Assurance evidence collectionsecurity
Independent finding verificationsecurity
Finding-to-response processsecurity

/02 About

Devices and endpoints engineering reference for enterprise endpoint asset discovery, including policy, logical interfaces, recovery and assurance.

Purpose: Enterprise endpoint asset discovery. Domain: Devices and endpoints. Family: assurance. Scenario trigger: Observe newly connected endpoint or workload device. Input assurance: Endpoint identity, ownership and network inventory signals. Evaluation: Correlate identifiers and detect unmanaged duplicates. Governing policy: Asset inventory registration and owner attestation policy. Resource-side obligation: Register verified device records and unknown-asset findings. Protected concern: Enterprise endpoint inventory. Logical interface: Device identifier authoritative source owner posture and last observation. Evidence: Device identification source confidence and reconciliation log. Failure: Unattributed device or forged discovery identifier. Required recovery: Quarantine unknown endpoints and request owner verification. Architectural invariant: Uninventoried devices cannot be treated as compliant resources Adoption: replace reference roles with concrete owner-controlled services. Specify exact provider/consumer identities, schema fields and classifications, signal provenance and freshness, idempotency, authorization lifetime, timeout/retry limits, observation and tamper evidence. A denied or failed operation must not silently become a permitted one. Scope: original vendor-neutral, implementation-agnostic technical reference model. Illustrative logical components and behaviors are neither a deployed system nor evidence of regulatory compliance. Package identities remain stable within the package; cross-package semantic reconciliation requires separate explicit registry support.

Curated · other · unspecified · Published by Lattix · 29 elements · 33 relationships · validated on publish

/03 Contents

Capability
Devices and endpoints, Enterprise endpoint asset discovery
Role
Devices and endpoints owner
Business Actor
Security telemetry or evidence producer
Activity
Observe newly connected endpoint or workload device, Verify: Endpoint identity, ownership and network inventory signals, Assess: Correlate identifiers and detect unmanaged duplicates, Execute: Register verified device records and unknown-asset findings, Exception: Unattributed device or forged discovery identifier, Recover: Quarantine unknown endpoints and request owner verification, Verify and disposition finding
Application Component
Endpoint identity, ownership and network inventory signals, Correlate identifiers and detect unmanaged duplicates, Register verified device records and unknown-asset findings, Authenticated observation source, Detection and evidence correlation
Application
Enterprise endpoint inventory
Policy
Asset inventory registration and owner attestation policy
API
Enterprise endpoint asset discovery logical interface
Message/Event Schema
Device identifier authoritative source owner posture and last observation
Data Store
Device identification source confidence and reconciliation log, Versioned technical finding
Control
Enterprise endpoint asset discovery enforcement assurance
Risk
Unattributed device or forged discovery identifier risk
Requirement
Uninventoried devices cannot be treated as compliant resources
Measure
Enterprise endpoint asset discovery assurance completeness
Trust Boundary
Enterprise endpoint asset discovery authority boundary
State
Control condition verified, Control gap or untrusted signal