These techniques include implementing network segmentation and isolation, using encryption for secure data transmission, and configuring intrusion detection and prevention systems. Establish, implement, and actively manage (track, report on, correct) the security configuration of network infrastructure devices using a rigorous configuration management and change control process in order to prevent attackers from exploiting vulnerable services and settings. Why is this CIS. This document was developed in furtherance of NSA's cybersecurity missions. This includes its responsibilities to identify and disseminate threats to National Security Systems, Department of Defense information systems, and the Defense Industrial Base, and to develop and issue cybersecurity. Examples of where certificates can be used are for network access, Transport Layer Security (TLS) and Virtual Private Networks (VPNs). Choosing, deploying and configuring VPN technologies. Has security and resilience been designed into your network. Network infrastructure devices (routers, switches, load balancers, firewalls etc) are among the assets of an enterprise that play an important role in security and thus need to be protected and configured accordingly. The TCG Guidance for Securing Network Equipment Preview Synopsis provides a summary of the ongoing effort.