This article describes a Conditional Access architecture that adheres to Zero Trust principles. The architecture uses a persona-based approach to form a structured Conditional Access framework.
https://learn.microsoft.com/en-us/azure/architecture/guide/security/conditional-access-architecture