Network Segmentation
East-West Corridor Segmentation Roadmap
8 weeks · On-site kickoff, then remote deep dives
We model traffic flows, identify choke points, and propose segmentation tiers that align with recovery objectives. The roadmap sequences work so network, platform, and application teams can execute in parallel without thrashing.
₩19,800,000 (KRW)
Request scoping notes
Included focus areas
- Flow analysis using sampled telemetry and CMDB cross-checks
- Tiered segmentation model with explicit trust boundaries
- Policy-as-code starter patterns for common controllers
- Chaos-style failure exercises scoped to non-production
- Cost-impact notes for hardware refresh vs software enforcement
- Runbooks for emergency policy rollback
- Integration points with SOC detection use cases
Outcomes
- Documented corridors with owners and measurable blast-radius targets
- Phased investment plan that separates quick wins from structural work
- Shared vocabulary between network and platform engineering
FAQ
Will you recommend a specific firewall vendor?
We document capabilities required from any vendor you shortlist. Selection remains your procurement decision.
How do you handle legacy VLAN sprawl?
We tag technical debt explicitly and propose containment strategies rather than a fictional overnight rebuild.
Is active scanning included?
Passive sampling is default. Active scans require a signed window and are billed as optional.
Experience notes
The tiered model made finance conversations easier because each tier had a capex line we could compare.
Detection stories finally referenced subnets we could actually defend.