Chapter 2. Learning from Military Defense

In comparison to a modern military, the previous examples of protecting users and web applications have little, if any, similarity to the way a modern defense in depth (DiD) approach works in the context of warfare. For example, as one line of defense is attacked in the military, the other lines of defense downstream are adjusted by way of the internal threat intelligence gained to adequately shore up all defenses. There is a complete synergy that exists in the military lines of defense. Next, we look at the conventional definition of DiD as well as explore how a modern military operates in the context of integrated lines of defense.

Military Usage of Defense in Depth

DiD is a conventional military defense tactic that is being practiced today across many different industries. Traditionally, DiD provided a means of slowing down an attack against a target by using independent layers of protection, often called “lines of defense.” The standard, widely accepted definition is that DiD argues against using a single line of defense because the likelihood of failure is usually quite high. DiD accepts the notion that when one defensive line fails, another line will take its place and ensure that risks are kept to tolerable levels.

The main deficiency in the current DiD definition is that it calls for “independent lines of the defense,” which does not convey how a modern military operates. Today, lines of communication and intelligence overlay ...

Get Modern Defense in Depth now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.