{"id":126601,"date":"2026-09-16T15:56:35","date_gmt":"2026-09-16T14:56:35","guid":{"rendered":"https:\/\/www.realvnc.com\/?post_type=blog&#038;p=126601"},"modified":"2026-09-16T15:56:38","modified_gmt":"2026-09-16T14:56:38","slug":"zero-trust-cannot-stop-point-access","status":"publish","type":"blog","link":"https:\/\/www.realvnc.com\/en\/blog\/zero-trust-cannot-stop-point-access\/","title":{"rendered":"Zero Trust Cannot Stop at the Point of Access"},"content":{"rendered":"\t\t<div data-elementor-type=\"wp-post\" data-elementor-id=\"126601\" class=\"elementor elementor-126601\" data-elementor-post-type=\"blog\">\n\t\t\t\t\t\t<section class=\"elementor-section elementor-top-section elementor-element elementor-element-3d0a9787 elementor-section-boxed elementor-section-height-default elementor-section-height-default\" data-id=\"3d0a9787\" data-element_type=\"section\" data-e-type=\"section\">\n\t\t\t\t\t\t<div class=\"elementor-container elementor-column-gap-default\">\n\t\t\t\t\t<div class=\"elementor-column elementor-col-100 elementor-top-column elementor-element elementor-element-5eb5a7c5\" data-id=\"5eb5a7c5\" data-element_type=\"column\" data-e-type=\"column\">\n\t\t\t<div class=\"elementor-widget-wrap elementor-element-populated\">\n\t\t\t\t\t\t<div class=\"elementor-element elementor-element-154cf116 elementor-widget elementor-widget-image\" data-id=\"154cf116\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"image.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t<img fetchpriority=\"high\" decoding=\"async\" width=\"768\" height=\"454\" src=\"https:\/\/www.realvnc.com\/wp-content\/uploads\/2026\/05\/emerging-threats-report-cover-blog-768x454.jpg\" class=\"attachment-medium_large size-medium_large wp-image-114167\" alt=\"Emerging Threats in Remote Access Security\" srcset=\"https:\/\/www.realvnc.com\/wp-content\/uploads\/2026\/05\/emerging-threats-report-cover-blog-768x454.jpg 768w, https:\/\/www.realvnc.com\/wp-content\/uploads\/2026\/05\/emerging-threats-report-cover-blog-300x177.jpg 300w, https:\/\/www.realvnc.com\/wp-content\/uploads\/2026\/05\/emerging-threats-report-cover-blog-1024x606.jpg 1024w, https:\/\/www.realvnc.com\/wp-content\/uploads\/2026\/05\/emerging-threats-report-cover-blog-1536x909.jpg 1536w, https:\/\/www.realvnc.com\/wp-content\/uploads\/2026\/05\/emerging-threats-report-cover-blog.jpg 1724w\" sizes=\"(max-width: 768px) 100vw, 768px\" \/>\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-6cac7bf7 elementor-widget elementor-widget-text-editor\" data-id=\"6cac7bf7\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p><em>Why privileged remote access needs protection from the first access decision to the final endpoint<\/em><\/p><p>Security teams do not need another reminder that the threat landscape is changing.<\/p><p>What they may need is a better way to judge whether their current controls are actually working.<\/p><p><a href=\"https:\/\/www.realvnc.com\/en\/blog\/emerging-threats-remote-access-security-report\/\"><strong>The 2026 RealVNC<\/strong><sup>\u00ae<\/sup><strong> Emerging Threats in Remote Access Security report<\/strong><\/a><strong> surveyed 323 IT professionals across seven industries. Nearly half, 47%, said their organisation had experienced a remote access security incident in the past 24 months.<\/strong><\/p><p>More concerning is what happened when confidence was compared with outcomes.<\/p><p><strong>Among respondents who described themselves as very or extremely confident in their current remote access security, 55% had still experienced an incident.<\/strong><\/p><p>That disconnect matters because remote access is becoming more important at exactly the same time the environments surrounding it are becoming more distributed, interconnected, and difficult to govern.<\/p><p>Third-party vendors need access. Administrators need access. Engineers need access to plant systems and operational technology. Hybrid work has expanded where connections originate. Legacy devices remain in production long after the architectures around them have changed.<\/p><p>The security question is no longer simply: <strong><em>Can this person connect?<\/em><\/strong><\/p><p>It is: <strong><em>Should this person connect, to this specific resource, from this device, under these circumstances, with these permissions, for this amount of time?<\/em><\/strong><\/p><p>And once that decision has been made: <strong><em>How is the connection to the endpoint itself controlled and secured?<\/em><\/strong><\/p><p>That is where Zero Trust and secure remote access meet.<\/p><h2><strong>Organizations understand Zero Trust. Implementing it is another matter.<\/strong><\/h2><p><a href=\"https:\/\/www.realvnc.com\/en\/discover\/webinar\/securing-privileged-remote-access-zero-trust-from-landscape-to-last-mile\/\">Zscaler defines Zero Trust<\/a> around a simple principle: no user, device, workload, or system should be inherently trusted simply because it sits inside a network. Every request should be verified, and access should be limited to only what is necessary. Its model emphasises identity and context, adaptive controls, segmentation, direct resource access, and continuous verification.<\/p><p><strong>RealVNC&#8217;s research found that 58% of respondents consider implementing Zero Trust architecture a top priority.<\/strong><\/p><p><strong>Yet only 28% have actually implemented it.<\/strong><\/p><p>That gap between intention and execution is one of the defining findings of the research.<\/p><p>The issue is not a lack of awareness. It is the complexity of turning that intent into consistent controls.<\/p><p><strong>The same study found that 85% of organisations use two or more remote access tools. Among organisations using just one remote access tool, 28% reported an incident. Among those operating four to five tools, that figure rose to 67%.<\/strong><\/p><p>More tools do not automatically produce more security.<\/p><p>In some environments, tool proliferation creates more credentials to manage, more policies to reconcile, more configuration points to maintain, and more opportunities for gaps to emerge.<\/p><p>That is why Zero Trust needs to be understood as an architecture rather than another security product added to the stack.<\/p><h2><strong>Zero Trust changes what access means<\/strong><\/h2><p>Traditional remote connectivity has largely been built around network access.<\/p><p>A VPN establishes a path into an environment, after which security controls attempt to determine what the user can do from there.<\/p><p><a href=\"https:\/\/www.zscaler.com\/learn\/zero-trust\">ZTNA changes that model.<\/a><\/p><p>Instead of granting broad network access, Zero Trust Network Access evaluates identity, device context, policy, and the resource being requested. Access can then be granted specifically to that application or service while preventing unnecessary lateral movement. <a href=\"https:\/\/www.realvnc.com\/en\/blog\/zero-trust-remote-access\/\">RealVNC&#8217;s own explanation of ZTNA<\/a> notes that this differs substantially from traditional remote access, which is focused on allowing someone to interact directly with a workstation or endpoint desktop.<\/p><p>That distinction is important.<\/p><p>A privileged user may successfully pass every identity and policy check required to reach an application or remote resource.<\/p><p>But eventually, somebody may still need to interact with an actual machine.<\/p><ul><li>An administrator may need to control a server.<\/li><li>An external engineer may need to troubleshoot an HMI.<\/li><li>A vendor may need to service production equipment.<\/li><li>A support technician may need to remotely operate a workstation.<\/li><\/ul><p>At that point, the security challenge has moved from whether access should be granted to how the authorised interaction with the endpoint should occur.<\/p><h2><strong>From Zero Trust architecture to the last mile<\/strong><\/h2><p>This is where Zscaler and RealVNC address complementary parts of the same privileged access problem.<\/p><p><strong>At the access layer,<\/strong> Zero Trust principles can determine whether a user should be permitted to reach a particular resource at all.<\/p><p>That can include identity verification, device and contextual checks, least-privilege policy, segmentation, time-limited access, and prevention of unnecessary lateral movement.<\/p><p><strong>At the endpoint layer,<\/strong> secure remote access must then provide the connection that allows an authorised user to interact with the machine.<\/p><p>RealVNC describes remote access as serving that endpoint interaction, while ZTNA creates the identity- and context-based access boundary around the resource.<\/p><p>The distinction becomes particularly important when privileged access extends beyond conventional cloud applications into servers, industrial systems, engineering workstations, and operational technology.<\/p><p><a href=\"https:\/\/www.realvnc.com\/en\/discover\/webinar\/securing-privileged-remote-access-zero-trust-from-landscape-to-last-mile\"><strong>Register for the Zscaler and RealVNC Joint Webinar &#8211; <\/strong><strong>Securing Privileged Remote Access: <\/strong><strong>Zero Trust from Landscape to Last Mile<\/strong><\/a><\/p><h3><strong>Live Webinar | September 24<sup>th<\/sup> | 11:00 AM EDT \u00b7 60 min<\/strong><\/h3>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/section>\n\t\t\t\t<section class=\"elementor-section elementor-top-section elementor-element elementor-element-5c747b46 elementor-section-boxed elementor-section-height-default elementor-section-height-default\" data-id=\"5c747b46\" data-element_type=\"section\" data-e-type=\"section\">\n\t\t\t\t\t\t<div class=\"elementor-container elementor-column-gap-default\">\n\t\t\t\t\t<div class=\"elementor-column elementor-col-100 elementor-top-column elementor-element elementor-element-67c07edc\" data-id=\"67c07edc\" data-element_type=\"column\" data-e-type=\"column\">\n\t\t\t<div class=\"elementor-widget-wrap elementor-element-populated\">\n\t\t\t\t\t\t<div class=\"elementor-element elementor-element-16d4b8ef elementor-widget elementor-widget-image\" data-id=\"16d4b8ef\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"image.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t<a href=\"https:\/\/www.realvnc.com\/en\/discover\/webinar\/securing-privileged-remote-access-zero-trust-from-landscape-to-last-mile\">\n\t\t\t\t\t\t\t<img decoding=\"async\" width=\"1024\" height=\"400\" src=\"https:\/\/www.realvnc.com\/wp-content\/uploads\/2026\/09\/Two-Halves-One-Zero-Trust-Story-1024x400.png\" class=\"attachment-large size-large wp-image-126603\" alt=\"\" srcset=\"https:\/\/www.realvnc.com\/wp-content\/uploads\/2026\/09\/Two-Halves-One-Zero-Trust-Story-1024x400.png 1024w, https:\/\/www.realvnc.com\/wp-content\/uploads\/2026\/09\/Two-Halves-One-Zero-Trust-Story-300x117.png 300w, https:\/\/www.realvnc.com\/wp-content\/uploads\/2026\/09\/Two-Halves-One-Zero-Trust-Story-768x300.png 768w, https:\/\/www.realvnc.com\/wp-content\/uploads\/2026\/09\/Two-Halves-One-Zero-Trust-Story.png 1477w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/>\t\t\t\t\t\t\t\t<\/a>\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-e8e1e09 elementor-widget elementor-widget-text-editor\" data-id=\"e8e1e09\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p><a href=\"https:\/\/www.realvnc.com\/en\/discover\/webinar\/securing-privileged-remote-access-zero-trust-from-landscape-to-last-mile\">Register for the webinar here.<\/a>\u00a0<\/p><h2><strong>NCSC guidance brings this exposure into sharper focus<\/strong><\/h2><p>Recent guidance from the <a href=\"https:\/\/www.ncsc.gov.uk\/news\/disruptive-cyber-activity-highlights-risk-from-internet-exposed-systems-and-edge-devices\">UK&#8217;s National Cyber Security Centre<\/a> makes the issue much more immediate.<\/p><p>The NCSC says it has observed increased targeting of operational technology systems across multiple sectors, including activity that has resulted in limited real-world disruption. It specifically warns organisations not to assume OT systems are inaccessible from the internet without verifying that assumption. Misconfigurations, legacy connections, and unmanaged assets can all create unintended exposure.<\/p><p>Its recommendations include strengthening administrator authentication, enabling MFA where supported, strictly controlling access from external or untrusted networks, maintaining supported remote access appliances, monitoring connectivity into and within OT, and segmenting OT, management, and business networks.<\/p><p>That guidance is broader than remote access alone. No single vendor or technology solves every part of it.<\/p><p>It does, however, reinforce a central point:<\/p><p><strong>Privileged remote access cannot be treated as a simple connection between two machines.<\/strong><\/p><p>Identity, authorisation, network exposure, segmentation, session security, monitoring, and endpoint control all matter.<\/p><h2><strong>Manufacturing shows how wide the Zero Trust gap can become<\/strong><\/h2><p>The problem is particularly visible in operational environments.<\/p><p><strong>RealVNC&#8217;s research found that 74% of manufacturing respondents identified Zero Trust as a top security priority.<\/strong><\/p><p><strong>Only 29% had implemented it.<\/strong><\/p><p><strong>At the same time, manufacturing reported a 53% remote access incident rate, while 56% said platform upgrades were being deprioritised. Budget and lack of skilled personnel were major obstacles.<\/strong><\/p><p>The challenge is not a lack of intent. It is the combination of ageing infrastructure, constrained budgets, and limited specialist capacity.<\/p><p>Security teams understand the architectural direction they need to take, but the environments they are protecting may contain legacy infrastructure that cannot simply be replaced or taken offline.<\/p><p>The result can be partial modernisation: a stronger identity layer added to one part of the environment, an existing remote access tool retained elsewhere, and legacy systems left in place because production cannot stop.<\/p><p>The intention may be Zero Trust, but the operating reality can still be a collection of access paths built at different times, for different purposes, and under different security assumptions.<\/p><p>That is precisely why securing privileged remote access end to end matters.<\/p><h2><strong>Confidence is not the same as assurance<\/strong><\/h2><p>Perhaps the most important finding in RealVNC&#8217;s research is not simply that incidents are common. It is that organisations experiencing them often believe they are already well protected.<\/p><p>The report describes this as the confidence paradox.<\/p><p>Security teams may measure how many controls have been deployed, how many audits have been completed, or how many security tools are in place.<\/p><p>Those are useful operational measures, but they are not necessarily evidence that the architecture will hold under real-world conditions.<\/p><p><strong>The study found that 55% of highly confident respondents had still experienced a remote access incident. Among CIOs and CTOs who described themselves as very or extremely confident, that figure reached 77%.<\/strong><\/p><p>The implication is that a Zero Trust strategy should do more than add authentication controls. It should reduce assumptions:<\/p><ul><li>Do not assume that being inside the network makes someone trustworthy.<\/li><li>Do not assume that authentication alone means the user should reach every resource.<\/li><li>Do not assume that granting access means the resulting remote session is automatically secure.<\/li><li>And do not assume that a large security stack means every remote access pathway is equally governed.<\/li><\/ul><h2><strong>From landscape to last mile<\/strong><\/h2><p>This is ultimately why the relationship between <a href=\"https:\/\/www.realvnc.com\/en\/discover\/webinar\/securing-privileged-remote-access-zero-trust-from-landscape-to-last-mile\/\">RealVNC and Zscaler is important.<\/a><\/p><p>The problem spans more than one layer.<\/p><p><a href=\"https:\/\/www.zscaler.com\/learn\/zero-trust\">Zscaler&#8217;s Zero Trust approach<\/a> focuses on verifying users, devices, context, and access requests before granting the minimum access required. Its framework is designed to reduce implicit trust and limit lateral movement.<\/p><p>RealVNC focuses on the remote interaction with the endpoint itself, where an authorised administrator, engineer, or support professional needs to securely operate the system.<\/p><p><strong>One helps govern whether and how the resource is reached.<\/strong><\/p><p><strong>The other helps secure the interaction with the machine once the authorised connection reaches it.<\/strong><\/p><p>That combination is what it means to think about privileged remote access from the security landscape to the last mile.<\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/section>\n\t\t\t\t<\/div>\n\t\t","protected":false},"excerpt":{"rendered":"<p>Why privileged remote access needs protection from the first access decision to the final endpoint<\/p>\n","protected":false},"author":16,"featured_media":114167,"template":"","blog_category":[258,270,255],"class_list":["post-126601","blog","type-blog","status-publish","has-post-thumbnail","hentry","blog_category-strategy","blog_category-technology-trends","blog_category-vnc-connect"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v27.7 (Yoast SEO v28.0) - https:\/\/yoast.com\/product\/yoast-seo-premium-wordpress\/ -->\n<title>Zero Trust Cannot Stop at the Point of Access<\/title>\n<meta name=\"description\" content=\"Why privileged remote access needs protection from the first access decision to the final endpoint\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.realvnc.com\/en\/blog\/zero-trust-cannot-stop-point-access\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Zero Trust Cannot Stop at the Point of Access\" \/>\n<meta property=\"og:description\" content=\"Why privileged remote access needs protection from the first access decision to the final endpoint\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.realvnc.com\/en\/blog\/zero-trust-cannot-stop-point-access\/\" \/>\n<meta property=\"og:site_name\" content=\"RealVNC\u00ae\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/realvnc\" \/>\n<meta property=\"article:modified_time\" content=\"2026-09-16T14:56:38+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.realvnc.com\/wp-content\/uploads\/2026\/05\/emerging-threats-report-cover-blog.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1724\" \/>\n\t<meta property=\"og:image:height\" content=\"1020\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:site\" content=\"@realvnc\" \/>\n<meta name=\"twitter:label1\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data1\" content=\"8 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.realvnc.com\\\/en\\\/blog\\\/zero-trust-cannot-stop-point-access\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.realvnc.com\\\/en\\\/blog\\\/zero-trust-cannot-stop-point-access\\\/\"},\"author\":{\"name\":\"Bogdan Bele\",\"@id\":\"https:\\\/\\\/www.realvnc.com\\\/en\\\/#\\\/schema\\\/person\\\/6fa9f449ba19409f0cd7235931f51987\"},\"headline\":\"Zero Trust Cannot Stop at the Point of Access\",\"datePublished\":\"2026-09-16T14:56:35+00:00\",\"dateModified\":\"2026-09-16T14:56:38+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.realvnc.com\\\/en\\\/blog\\\/zero-trust-cannot-stop-point-access\\\/\"},\"wordCount\":1488,\"publisher\":{\"@id\":\"https:\\\/\\\/www.realvnc.com\\\/en\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.realvnc.com\\\/en\\\/blog\\\/zero-trust-cannot-stop-point-access\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.realvnc.com\\\/wp-content\\\/uploads\\\/2026\\\/05\\\/emerging-threats-report-cover-blog.jpg\",\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.realvnc.com\\\/en\\\/blog\\\/zero-trust-cannot-stop-point-access\\\/\",\"url\":\"https:\\\/\\\/www.realvnc.com\\\/en\\\/blog\\\/zero-trust-cannot-stop-point-access\\\/\",\"name\":\"Zero Trust Cannot Stop at the Point of Access\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.realvnc.com\\\/en\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.realvnc.com\\\/en\\\/blog\\\/zero-trust-cannot-stop-point-access\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.realvnc.com\\\/en\\\/blog\\\/zero-trust-cannot-stop-point-access\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.realvnc.com\\\/wp-content\\\/uploads\\\/2026\\\/05\\\/emerging-threats-report-cover-blog.jpg\",\"datePublished\":\"2026-09-16T14:56:35+00:00\",\"dateModified\":\"2026-09-16T14:56:38+00:00\",\"description\":\"Why privileged remote access needs protection from the first access decision to the final endpoint\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.realvnc.com\\\/en\\\/blog\\\/zero-trust-cannot-stop-point-access\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.realvnc.com\\\/en\\\/blog\\\/zero-trust-cannot-stop-point-access\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.realvnc.com\\\/en\\\/blog\\\/zero-trust-cannot-stop-point-access\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.realvnc.com\\\/wp-content\\\/uploads\\\/2026\\\/05\\\/emerging-threats-report-cover-blog.jpg\",\"contentUrl\":\"https:\\\/\\\/www.realvnc.com\\\/wp-content\\\/uploads\\\/2026\\\/05\\\/emerging-threats-report-cover-blog.jpg\",\"width\":1724,\"height\":1020,\"caption\":\"Emerging Threats in Remote Access Security\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.realvnc.com\\\/en\\\/blog\\\/zero-trust-cannot-stop-point-access\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.realvnc.com\\\/en\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Blogs\",\"item\":\"https:\\\/\\\/www.realvnc.com\\\/en\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"Zero Trust Cannot Stop at the Point of Access\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.realvnc.com\\\/en\\\/#website\",\"url\":\"https:\\\/\\\/www.realvnc.com\\\/en\\\/\",\"name\":\"RealVNC\u00ae\",\"description\":\"The world&#039;s safest remote access software\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.realvnc.com\\\/en\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.realvnc.com\\\/en\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.realvnc.com\\\/en\\\/#organization\",\"name\":\"RealVNC\u00ae\",\"url\":\"https:\\\/\\\/www.realvnc.com\\\/en\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.realvnc.com\\\/en\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.realvnc.com\\\/wp-content\\\/uploads\\\/2023\\\/05\\\/realvnc-logo-blue.png\",\"contentUrl\":\"https:\\\/\\\/www.realvnc.com\\\/wp-content\\\/uploads\\\/2023\\\/05\\\/realvnc-logo-blue.png\",\"width\":300,\"height\":41,\"caption\":\"RealVNC\u00ae\"},\"image\":{\"@id\":\"https:\\\/\\\/www.realvnc.com\\\/en\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/www.facebook.com\\\/realvnc\",\"https:\\\/\\\/x.com\\\/realvnc\",\"https:\\\/\\\/www.linkedin.com\\\/company\\\/realvnc\\\/\",\"https:\\\/\\\/www.youtube.com\\\/RealVNCLtd\",\"https:\\\/\\\/en.wikipedia.org\\\/wiki\\\/RealVNC\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.realvnc.com\\\/en\\\/#\\\/schema\\\/person\\\/6fa9f449ba19409f0cd7235931f51987\",\"name\":\"Bogdan Bele\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/db953d23953822fd0e4cf9ec4b44b151a5712b3d00982d581e2c162042f75c3d?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/db953d23953822fd0e4cf9ec4b44b151a5712b3d00982d581e2c162042f75c3d?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/db953d23953822fd0e4cf9ec4b44b151a5712b3d00982d581e2c162042f75c3d?s=96&d=mm&r=g\",\"caption\":\"Bogdan Bele\"},\"description\":\"A journalist by formation and experience, and a content writer by trade. I\u2019ve been writing content, both online and offline, for more than 15 years. My focus has always been technology, but I\u2019ve also ventured into fields as diverse as music, football or news. I am RealVNC\u2019s Content Manager, so a lot of what you\u2019re reading on this blog is written by me. I also edit a lot of our content output. When I\u2019m not writing, editing or reading, you\u2019ll probably find me at a concert or watching a Chelsea FC game.\",\"sameAs\":[\"https:\\\/\\\/www.linkedin.com\\\/in\\\/bogdanbele\\\/\"]}]}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"Zero Trust Cannot Stop at the Point of Access","description":"Why privileged remote access needs protection from the first access decision to the final endpoint","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.realvnc.com\/en\/blog\/zero-trust-cannot-stop-point-access\/","og_locale":"en_US","og_type":"article","og_title":"Zero Trust Cannot Stop at the Point of Access","og_description":"Why privileged remote access needs protection from the first access decision to the final endpoint","og_url":"https:\/\/www.realvnc.com\/en\/blog\/zero-trust-cannot-stop-point-access\/","og_site_name":"RealVNC\u00ae","article_publisher":"https:\/\/www.facebook.com\/realvnc","article_modified_time":"2026-09-16T14:56:38+00:00","og_image":[{"width":1724,"height":1020,"url":"https:\/\/www.realvnc.com\/wp-content\/uploads\/2026\/05\/emerging-threats-report-cover-blog.jpg","type":"image\/jpeg"}],"twitter_card":"summary_large_image","twitter_site":"@realvnc","twitter_misc":{"Est. reading time":"8 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.realvnc.com\/en\/blog\/zero-trust-cannot-stop-point-access\/#article","isPartOf":{"@id":"https:\/\/www.realvnc.com\/en\/blog\/zero-trust-cannot-stop-point-access\/"},"author":{"name":"Bogdan Bele","@id":"https:\/\/www.realvnc.com\/en\/#\/schema\/person\/6fa9f449ba19409f0cd7235931f51987"},"headline":"Zero Trust Cannot Stop at the Point of Access","datePublished":"2026-09-16T14:56:35+00:00","dateModified":"2026-09-16T14:56:38+00:00","mainEntityOfPage":{"@id":"https:\/\/www.realvnc.com\/en\/blog\/zero-trust-cannot-stop-point-access\/"},"wordCount":1488,"publisher":{"@id":"https:\/\/www.realvnc.com\/en\/#organization"},"image":{"@id":"https:\/\/www.realvnc.com\/en\/blog\/zero-trust-cannot-stop-point-access\/#primaryimage"},"thumbnailUrl":"https:\/\/www.realvnc.com\/wp-content\/uploads\/2026\/05\/emerging-threats-report-cover-blog.jpg","inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/www.realvnc.com\/en\/blog\/zero-trust-cannot-stop-point-access\/","url":"https:\/\/www.realvnc.com\/en\/blog\/zero-trust-cannot-stop-point-access\/","name":"Zero Trust Cannot Stop at the Point of Access","isPartOf":{"@id":"https:\/\/www.realvnc.com\/en\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.realvnc.com\/en\/blog\/zero-trust-cannot-stop-point-access\/#primaryimage"},"image":{"@id":"https:\/\/www.realvnc.com\/en\/blog\/zero-trust-cannot-stop-point-access\/#primaryimage"},"thumbnailUrl":"https:\/\/www.realvnc.com\/wp-content\/uploads\/2026\/05\/emerging-threats-report-cover-blog.jpg","datePublished":"2026-09-16T14:56:35+00:00","dateModified":"2026-09-16T14:56:38+00:00","description":"Why privileged remote access needs protection from the first access decision to the final endpoint","breadcrumb":{"@id":"https:\/\/www.realvnc.com\/en\/blog\/zero-trust-cannot-stop-point-access\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.realvnc.com\/en\/blog\/zero-trust-cannot-stop-point-access\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.realvnc.com\/en\/blog\/zero-trust-cannot-stop-point-access\/#primaryimage","url":"https:\/\/www.realvnc.com\/wp-content\/uploads\/2026\/05\/emerging-threats-report-cover-blog.jpg","contentUrl":"https:\/\/www.realvnc.com\/wp-content\/uploads\/2026\/05\/emerging-threats-report-cover-blog.jpg","width":1724,"height":1020,"caption":"Emerging Threats in Remote Access Security"},{"@type":"BreadcrumbList","@id":"https:\/\/www.realvnc.com\/en\/blog\/zero-trust-cannot-stop-point-access\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.realvnc.com\/en\/"},{"@type":"ListItem","position":2,"name":"Blogs","item":"https:\/\/www.realvnc.com\/en\/blog\/"},{"@type":"ListItem","position":3,"name":"Zero Trust Cannot Stop at the Point of Access"}]},{"@type":"WebSite","@id":"https:\/\/www.realvnc.com\/en\/#website","url":"https:\/\/www.realvnc.com\/en\/","name":"RealVNC\u00ae","description":"The world&#039;s safest remote access software","publisher":{"@id":"https:\/\/www.realvnc.com\/en\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.realvnc.com\/en\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.realvnc.com\/en\/#organization","name":"RealVNC\u00ae","url":"https:\/\/www.realvnc.com\/en\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.realvnc.com\/en\/#\/schema\/logo\/image\/","url":"https:\/\/www.realvnc.com\/wp-content\/uploads\/2023\/05\/realvnc-logo-blue.png","contentUrl":"https:\/\/www.realvnc.com\/wp-content\/uploads\/2023\/05\/realvnc-logo-blue.png","width":300,"height":41,"caption":"RealVNC\u00ae"},"image":{"@id":"https:\/\/www.realvnc.com\/en\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/realvnc","https:\/\/x.com\/realvnc","https:\/\/www.linkedin.com\/company\/realvnc\/","https:\/\/www.youtube.com\/RealVNCLtd","https:\/\/en.wikipedia.org\/wiki\/RealVNC"]},{"@type":"Person","@id":"https:\/\/www.realvnc.com\/en\/#\/schema\/person\/6fa9f449ba19409f0cd7235931f51987","name":"Bogdan Bele","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/db953d23953822fd0e4cf9ec4b44b151a5712b3d00982d581e2c162042f75c3d?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/db953d23953822fd0e4cf9ec4b44b151a5712b3d00982d581e2c162042f75c3d?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/db953d23953822fd0e4cf9ec4b44b151a5712b3d00982d581e2c162042f75c3d?s=96&d=mm&r=g","caption":"Bogdan Bele"},"description":"A journalist by formation and experience, and a content writer by trade. I\u2019ve been writing content, both online and offline, for more than 15 years. My focus has always been technology, but I\u2019ve also ventured into fields as diverse as music, football or news. I am RealVNC\u2019s Content Manager, so a lot of what you\u2019re reading on this blog is written by me. I also edit a lot of our content output. When I\u2019m not writing, editing or reading, you\u2019ll probably find me at a concert or watching a Chelsea FC game.","sameAs":["https:\/\/www.linkedin.com\/in\/bogdanbele\/"]}]}},"_links":{"self":[{"href":"https:\/\/www.realvnc.com\/en\/wp-json\/wp\/v2\/blog\/126601","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.realvnc.com\/en\/wp-json\/wp\/v2\/blog"}],"about":[{"href":"https:\/\/www.realvnc.com\/en\/wp-json\/wp\/v2\/types\/blog"}],"author":[{"embeddable":true,"href":"https:\/\/www.realvnc.com\/en\/wp-json\/wp\/v2\/users\/16"}],"version-history":[{"count":7,"href":"https:\/\/www.realvnc.com\/en\/wp-json\/wp\/v2\/blog\/126601\/revisions"}],"predecessor-version":[{"id":126609,"href":"https:\/\/www.realvnc.com\/en\/wp-json\/wp\/v2\/blog\/126601\/revisions\/126609"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.realvnc.com\/en\/wp-json\/wp\/v2\/media\/114167"}],"wp:attachment":[{"href":"https:\/\/www.realvnc.com\/en\/wp-json\/wp\/v2\/media?parent=126601"}],"wp:term":[{"taxonomy":"blog_category","embeddable":true,"href":"https:\/\/www.realvnc.com\/en\/wp-json\/wp\/v2\/blog_category?post=126601"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}