Secure Design Principles in Network Architectures
When building and assessing IT systems for security, it is useful to have principles to guide you. Modern architectures are large and complex, so to fully understand them, it helps to break them down into key concepts, or layers. The CISSP exam expects you to understand two key models, the OSI and TCP/IP models. The OSI model helps with secure design principles by providing a structured framework that can be used to ensure security measures are applied consistently and comprehensively across all aspects of a network. Each layer of the OSI model addresses a different aspect of network communication, and by considering security at each layer, a more robust and secure system can be designed. TCP/IP similarly provides a structured approach to implementing security measures across different layers of network communication, but with four layers instead of seven.
The following sections will first take you through the multi-layer protocols...