This project designs and simulates a secure enterprise network in Cisco Packet Tracer by implementing VLAN segmentation, ACLs, firewalls, NAT, and SSH. The topology includes routers, switches, servers, and PCs, with departmental VLANs, a DMZ for public servers, and a firewall securing the LAN–WAN boundary. Implementation steps cover IP addressing, inter-VLAN routing, ACL and firewall configuration, and secure remote management. The system ensures restricted access between departments, blocks unauthorized traffic, enables secure communication, and provides safe internet access. Deliverables include the Packet Tracer topology, device configurations, screenshots, and a final project report.