By the end of this module you should be able to:
- Avoid assuming perfect isolation
- Understand shared-risk domains
- Apply layered security thinking
Logical isolation
Slices can use separate policies, traffic paths, functions and management controls. This can improve separation, but the exact isolation level depends on the design.
Shared infrastructure risk
Hypervisors, cloud platforms, orchestration systems, transport links, RAN hardware and operational processes may be shared. A weakness in a shared layer can affect multiple slices.
Layered controls
Enterprises still need authentication, encryption, firewalling, application security, monitoring, patching and incident response. Slicing complements these controls; it does not replace them.
Knowledge check
Does using a slice remove the need for application security?