Security is relative, generally from outside to inside: router (routing) → firewall (routing or transparency) →IPS (transparency) → bandwidth management (transparency) → internet behavior management (transparency) → core switching (routing) → convergence switching, server area, IDS→ access switching or VLAN→ desktop terminal.
Of course, this is only a basic model, and the actual network may be more or less than this as needed.