Educational institutions are facing increasingly complex cyber threats, particularly as they continue to rely on on-premises servers with limited cybersecurity resources. Zero Trust Architecture (ZTA) offers a security model that rejects implicit trust and requires strict verification of each access request. This study aims to examine the applicability of ZTA in managing local servers within educational institutions through a qualitative literature review approach. Relevant literature from 2014 to 2025 was analyzed using thematic synthesis to identify recurring concepts, strategies, and gaps. The results show that ZTA, when integrated with Identity and Access Management (IAM), Security Information and Event Management (SIEM), and real-time monitoring tools like Zabbix, Prometheus, and Grafana, significantly enhances network security by implementing granular access controls and continuous monitoring. However, the implementation is constrained by limited infrastructure and IT governance maturity in many institutions. This research is considered significant because it addresses a pressing gap in the cybersecurity practices of educational institutions, which often lack the robust frameworks and resources found in the corporate sector. By offering an adaptable and scalable ZTA-based security framework, the study contributes to advancing secure digital infrastructure and data protection in the education domain. Therefore, a strategic and phased adoption is recommended, supported by IT governance frameworks such as COBIT. This study contributes a conceptual framework that links ZTA, server monitoring, and institutional readiness, and offers recommendations for building sustainable cybersecurity strategies in the educational sector.
Copyrights © 2026