Description
Website security evaluations are intended to uncover security vulnerabilities. Is there any security monitoring and malware checking in place? Does the server have mod_security installed?
Web security risks are always present and occur from internal sources through weak passwords, poor site management, out of date server and/or website software. The external bad actors are always actively attacking your websites 24/7. They WILL get to yours eventually, its best to be ready!
Attacks come in several forms, including brute force logins, exploits targeting known or new vulnerabilities in server software, poor server configuration or iproperly configured firewalls. Phishing attacks seek to fool people into unwittingly divulging passwords.
What we do for you…
Review the website, provide recommendations to ensure security is robust and effective against the main attack vectors. Then, with your approval, install the recommended hardening applications which usually include:
- Web Appplication Firewall: the fast and lightweight Block Bad Queries plugin stops troublesome visitors in their tracks.
- Limit Login Attempts Reloaded or Loginzer – to ensure the bad guys don’t get unlimited time to fiddle behind the scenes.
- Malcare or Sucuri Security – to scan core WP files, plugins and themes.
- Asset Cleanup – which improves load speed and has an option to disable XML RPC
- Security Headers – install proactive defences: Content Security Policy, X-XSS Protection, Referrer Policy, X-Frame Options etc
- Updraftplus – ensure there’s a reliable backup system installed that uploads files ot secure Cloud storage.
Provide you with a report on completion.Â



