Zero Trust illustrations

This article summarizes Zero Trust illustrations available for IT architects and implementers

These posters and technical diagrams give you information about deployment and implementation steps to apply the principles of Zero Trust to Microsoft cloud services, including Microsoft 365 and Microsoft Azure.

Zero Trust is a security model that assumes breach and verifies each request as though it originated from an uncontrolled network. Regardless of where the request originates or what resource it accesses, the Zero Trust model teaches us to "never trust, always verify."

As an IT architect or implementer, you can use these resources for deployment steps, reference architectures, and logical architectures that align with Zero Trust principles.

You can download the following types of illustrations:

  • A PDF file.
  • A Microsoft Visio file (if available).
  • A Microsoft PowerPoint file (if available).

To use the same set of icons and templates in the Visio or PowerPoint files, get the downloads in Microsoft 365 architecture templates and icons.

Zero Trust for Microsoft 365

This illustration provides a deployment plan for applying Zero Trust principles to Microsoft 365.

Item Description
Illustration of the Microsoft 365 Zero Trust deployment plan.
PDF | Visio
Updated March 2024
Use this illustration together with this article: Microsoft 365 Zero Trust deployment plan

Related solution guides

Zero Trust for Microsoft Copilot

Adopting Microsoft Copilot for Microsoft 365 or Copilot is a great incentive for your organization to invest in Zero Trust. This set of illustrations introduces new logical architecture components for Copilot. It also includes security and deployment recommendations for preparing your environment for Copilot. These recommendations align with Zero Trust recommendations and help you begin this journey, even if your licenses are Microsoft 365 E3.

Item Description
Copilot architecture poster thumb
PDF | Visio
Updated November 2023
Copilot combines the power of large language models (LLMs) with your data in the Microsoft Graph (calendar, emails, chats, documents, meetings, and more) and the Microsoft 365 apps to provide a powerful productivity tool.

This series of illustrations provides a view into new logical architecture components. It includes recommendations for preparing your environment for Copilot with security and information protection while assigning licenses.

Zero Trust for Azure IaaS

This poster provides a single-page, at-a-glance view of the components of Azure IaaS as reference and logical architectures. It also provides the steps to ensure that these components have the "never trust, always verify" principles of the Zero Trust model applied.

Item Description
Thumbnail figure for the Apply Zero Trust to Azure IaaS infrastructure poster.
PDF | Visio
Updated June 2024
Use this poster together with this article: Apply Zero Trust principles to Azure IaaS overview

Related solution guides

Zero Trust to Azure IaaS components

You can also download the technical diagrams used in the Zero Trust for Azure IaaS series of articles. These diagrams are an easier way to view the illustrations in the article or modify them for your own use.

Item Description
Thumbnail figure for the Diagrams for applying Zero Trust to Azure IaaS infrastructure poster.
PDF | Visio
Updated June 2024
Use these diagrams together with the articles starting here: Apply Zero Trust principles to Azure IaaS overview

Related solution guides

Zero Trust for Azure Virtual WAN

These diagrams show the reference and logical architectures for applying Zero Trust to Azure Virtual WAN. These diagrams are an easier way to view the illustrations in the article or modify them for your own use.

Item Description
Thumbnail figure for the Diagrams for applying Zero Trust to Azure Virtual WANs poster.
PDF | Visio
Updated March 2024
Use this illustration together with this article: Apply Zero Trust principles to Azure Virtual WAN

Zero Trust for Azure Virtual Desktop

These diagrams show the reference and logical architectures for applying Zero Trust to Azure Virtual Desktop. These diagrams are an easier way to view the illustrations in the article or modify them for your own use.

Item Description
Illustration of applying Zero Trust to Azure Virtual Desktop.
PDF | Visio
Updated March 2024
Use this illustration together with this article: Apply Zero Trust principles to Azure Virtual Desktop

Zero Trust for access policies

This illustration shows the set of Zero Trust identity and device access policies for three levels of protection: Starting point, Enterprise, and Specialized security.

Item Description
Thumbnail figure for the Zero Trust identity and device access policies poster.
PDF
Updated March 2024
Use this illustration together with this article: Recommended identity and device access configurations

Related solution guides

Common attacks

Learn about the most common cyber attacks and how Microsoft capabilities for Zero Trust can help your organization at every stage of an attack. Also use a table to quickly link to Zero Trust documentation for common attacks based on technology pillars such as identities or data.

Item Description
Thumbnail of the common attacks and how Microsoft capabilities for Zero Trust can protect your organization poster.
PDF |Visio
Updated February 2024
Use this illustration together with this article: Zero Trust deployment for technology pillars

Other posters and illustrations

These other Microsoft security posters and illustrations are available:

  • Microsoft Intune enrollment options: PDF | Visio

  • An overview of the three phases as layers of protection against ransomware attackers: PDF. Use this poster together with the What is ransomware? article.

  • An overview of how Microsoft's SecOps team does incident response to mitigate ongoing attacks: PDF

  • The Security Best Practices slide presentation: PDF|PowerPoint

  • The top 10 Azure Security best practices: PDF|PowerPoint

  • The phishing, password spray, app consent grant incident response playbook workflows: PDF|Visio

Next steps

Start with Zero Trust adoption.