The challenge
Hacking and ransomware remains a pervasive global cyber security problem. This is in most cases irrespective of significant investments in security solutions.
The traditional segmentation and isolation designs using shared virtual local area networks (VLANs) and network-based firewalls have a few fundamental flaws:
Ransomware hits the availability of your data. It does this by encrypting the data to which the malware has access to. To maximise the impact, the attacker designs the malware to move laterally quickly to maximise the number of compute assets it can encrypt your data on.
For this reason, stopping the spread of ransomware in the Lateral movement/propagation stage is key. Stopping patient zero is less important if you can contain patient zero.