Secure network design • Embeds core protections and improvements into an IT infrastructure before it is implemented • Design comes from planning • Planning comes from understanding of business needs, user behavior, and network vulnerabilities Common security goals • Confidentiality, integrity, availability, privacy, authentication, authorization, nonrepudiation, and accounting