A few days ago Homeland Security published an e-mail on threats to network devices and securing them. Rather than cut and paste I exported the e-mail to a PDF. Some good best practices in here.
TA16250A The Increasing Threat to Network Infrastructure Devices and Recommended Mitigations