Where the primary driver is identity rather than network topology, deploy zero trust using an enhanced identity governance approach. Access is granted based on identity, device, and attribute assertions, with the network providing limited reachability only.
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.