Comprehensive and Detailed Step-by-Step Explanation:Network segmentation supports zero-trust principles by ensuring sensitive systems are isolated and access is restricted based on identity, role, and context. Unlike traditional models, zero-trust architecture does not automatically trust authenticated users or internal network traffic. It enforces strict access controls to minimize risk. References: CompTIA CySA+ Study Guide (Chapter 2: Zero Trust and Network Segmentation, Page 52) CompTIA CySA+ Objectives (Domain 1.1 - Zero Trust Architecture)