惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

IT之家
IT之家
Engineering at Meta
Engineering at Meta
腾讯CDC
宝玉的分享
宝玉的分享
H
Help Net Security
I
InfoQ
博客园 - Franky
The GitHub Blog
The GitHub Blog
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
H
Hackread – Cybersecurity News, Data Breaches, AI and More
Microsoft Security Blog
Microsoft Security Blog
M
MIT News - Artificial intelligence
博客园_首页
美团技术团队
Recent Announcements
Recent Announcements
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
雷峰网
雷峰网
The Cloudflare Blog
博客园 - 司徒正美
Vercel News
Vercel News
MyScale Blog
MyScale Blog
人人都是产品经理
人人都是产品经理
爱范儿
爱范儿
月光博客
月光博客

Search Security Resources and Information from TechTarget

How to operationalize threat modeling with AI | TechTarget CISO First fully agentic ransomware attack sparks readiness concerns | TechTarget Evaluating secure enterprise browsers vs. security plugins | TechTarget The AI vulnerability storm is here: Is your security program ready? | TechTarget Perimeter to posture: A roadmap to zero trust maturity | TechTarget TLS certificate lifetime changes: What CISOs must do now | TechTarget The agentic AI 8 key aspects of a mobile device security audit program | TechTarget Why mobile security audits are important in the enterprise | TechTarget Beyond the perimeter: The shift to data-centric protection | TechTarget How agentic AI threat intelligence aids NGO cyber defense: Case study | TechTarget How to conduct a mobile app security audit | TechTarget NO FAKES Act advances: What CISOs need to know | TechTarget What CISOs should know about AI runtime security | TechTarget As Q-Day looms, 90% of systems are unprepared for PQC | TechTarget A CISO Most security pros say their culture is Zscaler lays out its vision to secure the AI era at Zenith Live | TechTarget The OpenClaw security risks every CISO needs to know | TechTarget Cloud security metrics and KPIs: A CISO Florida public sector training on SimSpace cyber range: Case study | TechTarget Reporters' Notebook — Focus on Cyber Insurance: How Quantifying Risk Is Reshaping Security It's time to update incident response for the AI era How to build AI security guardrails without blocking innovation The prosecution gap: Why cybercrimes go unpunished AI in cyberdefense: Learning from threat actors' playbooks Top identity and access management risks CISO role changes as cyber-risk appetites in the C-suite grow CISO's guide to data minimization
Network security management challenges and best practices
2026-03-27 · via Search Security Resources and Information from TechTarget

Amy Larsen DeCarlo

By

Published: 27 Mar 2026

Increasingly sophisticated adversaries are putting IT on the defensive. A cohesive approach to network security is more critical than ever.

Threat actors have been quick to adopt cutting-edge technologies, among them AI and automation, to make their attacks more potent. At the same time, cybercriminals are more aggressive, putting more pressure on the network security practitioners standing on the front lines in defense of enterprise assets. To combat these threats, organizations must craft a comprehensive, scalable network security management strategy that uses best practices to protect their network from end to end.

Threat actors profit by using a combination of tactics, including phishing, ransomware and AI-generated deepfakes, to breach organizations. IBM's 2025 report on the Cost of a Data Breach pegged the average cost of a data breach in the U.S. at upward of $10 million -- driven by more stringent regulatory fines and a surge in detection expenses. 

In this volatile climate, security practitioners must arm themselves with tools that protect the organization before attacks occur, as well as platforms that mitigate incidents as quickly as possible. Resilience is the ultimate objective.

What is effective network security management?

A solid network defense underpins every productive and healthy enterprise network. The most effective strategies map the right security policies, tools, processes and practices to the organization's operational objectives.

Enterprises must also heed government regulations and corporate mandates. Security practitioners are tasked with ensuring data integrity, security and the availability of their infrastructures. Yet, attaining complete protection isn't achievable. No enterprise can lock down its environment 100% without sacrificing productivity.

To that end, effective enterprise security taps into essential technologies, such as the following:

  • AI-driven endpoint security platforms.
  • Extended detection and response.
  • Platformization.
  • Zero-trust and access management.
  • Firewalls.
  • Multifactor authentication (MFA).
  • Identity and access management.
  • Network and traffic monitoring and analysis.
  • Security information and event management.
  • Identity and access management.
  • Vulnerability and testing.
  • Unified threat management.
  • DoS mitigation and incident response services.
  • Encryption.
  • Data loss prevention.

Network security management challenges

Securing the infrastructure is a top priority, but security teams tasked with protecting network assets face some high hurdles, such as the following:

  • Virtual and highly distributed enterprise assets.
  • Network security controls that may impede infrastructure performance and hamper the end-user experience.
  • The need to integrate security data from disparate sources to protect hybrid environments and other network designs.

    Network security tools are continually improving, but certain issues still force network security engineers to scramble as they try to stay ahead of threats. It's still a challenge to obtain an accurate end-to-end perspective of network activity from multiple sources, particularly in hybrid cloud environments. Even in products that supposedly have close correlation, true integration is often missing.

    Improvements in threat identification have helped. The 2025 IBM Data Breach Report found that a combination of AI and automation helped security practitioners correctly identify breaches 80 days faster than the prior year.

    Despite these gains, the reality for most organizations is that it's a question of when -- and not if -- they will be breached. That's one reason why so many have embraced zero-trust architectures designed to ensure that only authenticated and authorized users gain network access.

    Zero-trust employs many protective controls, including granular authentication, which considers the following factors before allowing any entity or person access to the network:

    • User identity.
    • Device type.
    • Activity.
    • Query.
    • Location.

    Zero-trust also applies ongoing authentication and tracking to monitor users and devices. This ensures they have not been compromised.

    Another security tactic gaining favor is segmentation, which limits network access and prevents lateral movement. Organizations can also implement least-privilege access, which applies MFA and granular micro-segmentation to further control access to enterprise resources.

    Network observability, in which IT administrators gain insights beyond traditional network monitoring by seeing and investigating activity in real time, is another key advance helping organizations mount stronger defenses. Using both security and network performance intelligence, observability helps security engineers better discern suspicious activity, optimize service levels and mitigate incidents.

    Finally, threat detection has become a more powerful defensive tool, thanks to incremental advances in machine learning. ML establishes a baseline of network behavior, observing when activity deviates. ML-based threat detection can distinguish between harmless anomalies and real threats.

    Effective network security management best practices

    The best network security technology is only as effective as the policies and practices that implement controls. IT teams and end users must be aware of the protections in place and how to use them effectively.

    This starts with proper training. All employees and contractors should understand corporate IT security policies and how to use available tools. Policy development and continuous review is a crucial foundational element. Ongoing end-user training and education -- not just an annual training session or quiz -- is a must.

    Other fundamental best practices include the following:

    • Deploy multilayered security with support and countermeasures. This limits lateral access and protects the most critical resources.
    • Have an effective network monitoring service in place.
    • Regularly update both software and hardware. Change factory hardware settings when deploying new equipment.
    • Automate software patching but manually intervene when necessary.
    • Consider employing automation for workflow optimization and some elements of remediation.
    • Look into AI-assisted response.
    • Perform vulnerability assessments on a consistent basis. Conduct interim testing between audits.
    • Apply MFA and other access controls.
    • Implement network segregation.
    • Develop and deploy a zero-trust architecture that relies on continuous verification.
    • Define an incident response plan that applies automation when possible.
    • Take steps to prevent insider theft or data loss.
    • Recognize what baseline network activity looks like.
    • Proactively test systems to uncover vulnerabilities and poor configurations.

    Effective network security management best practices start and end with the human element. The most proactive organizations understand this concept and ensure the right practices and processes are in place.

    Amy Larsen DeCarlo has covered the IT industry for more than 30 years, as a journalist, editor and analyst. As a principal analyst at GlobalData, she covers managed security and cloud services.

    Next Steps

    What mobile network security tools should organizations use?

    Dig Deeper on Network management and monitoring

    Related Q&A from Amy Larsen DeCarlo

    The differences between cloud, fog and edge computing

    Cloud, edge and fog computing all support modern applications. Cloud computing offers centralized resources, edge enables real-time processing and ...  Continue Reading

    The benefits and challenges of AI in network monitoring

    Using AI to track network activity streamlines management and predictive maintenance. But questions about data output integrity, security risks and ...  Continue Reading

    What are the 5 types of network management?

    Despite the changes in how organizations optimize network performance, the five foundational elements of network management -- also known as FCAPS --...  Continue Reading