Abstract: Described herein are embodiments of a computer networking system for selectively securing traffic flows based on characteristics of those traffic flows, by selecting security parameters for each traffic flow based on the characteristics of the traffic flow. In some embodiments, the traffic flows may be intercepted as they leave one network (e.g., a network associated with a premises), outbound to another network. The traffic flows may be transmitted to the other network in accordance with the selected security parameters. In some embodiments, transmitting the traffic flows in accordance with the security parameters may include selectively routing each traffic flow via a selected network path, from a group of paths with different security parameters. Routing the traffic over paths having different security parameters may include, in some embodiments, transmitting the traffic via different tunnels having different security parameters. Some such different tunnels may be different virtual private networks (VPNs).