Most secure goes a long way. I run firefox on a sepperate user account. I doubt it's the most secure solution but it sure is quite a bit more secure, and I'm quite sure you really don't want to the most secure solution. :-)
http://www.xs4all.nl/~hanb/documents/firefox_for_paranoid_people # Han