design and implementation strategy of IT systems where users and devices should not be trusted by default, even if they are connected to a privileged network such as a corporate LAN and even if they were previously verified
Discovered by embedding cosine similarity (sentence-transformers MiniLM, 384-dim).