Security builder & leader

Security Architecture Cheat Sheet for Internet Applications

A cheat sheet for initial design and review of Internet application security architecture, covering four areas: business requirements (data classification, users, partners, regulations), infrastructure requirements (network, systems, monitoring), application requirements (data processing, access, monitoring), and security program requirements (operations, change management).

Security Architecture Cheat Sheet for Internet Applications - illustration

This cheat sheet offers tips for the initial design and review of a complex Internet application’s security architecture. To print, use the two-page PDF version; you can also edit the Word version for you own needs.

  1. Business Requirements
  2. Infrastructure Requirements
  3. Application Requirements
  4. Security Program Requirements

#1: Business Requirements

Business Model

Data Essentials

End-Users

Partners

Administrators

Regulations

#2: Infrastructure Requirements

Network

Systems

Infrastructure Monitoring

Virtualization and Externalization

#3: Application Requirements

Environment

Data Processing

Access

Application Monitoring

Application Design

#4: Security Program Requirements

Operations

Change Management

Software Development

Corporate

Additional Resources

Post-Scriptum

Special thanks for feedback from Slava Frid. If you have suggestions for improving this cheat sheet, please let me know. This cheat sheet is distributed according to the Creative Commons v3 “Attribution” License. File version 1.2. Take a look at my other security cheat sheets.

About the Author

Lenny Zeltser is a cybersecurity executive with deep technical roots, product management experience, and a business mindset. As CISO at Axonius, he leads the security and IT program, focusing on trust and growth. He is also a Faculty Fellow at SANS Institute and the creator of REMnux, a popular Linux toolkit for malware analysis. Lenny shares his perspectives on security leadership and technology at zeltser.com.

Learn more →