We are a growing digital agency specializing in web development design and strategic digital execution. All web development and design work is handled internally. We are seeking a dedicated infrastructure and security professional to manage server integrity hardening monitoring and protection.
We are seeking an experienced Linux Server & WordPress Security Engineer to conduct a full audit of two production servers and implement enterprise-level security hardening and monitoring. This role focuses strictly on infrastructure and security. It does not include web development design SEO or marketing responsibilities.
- Full Linux server security audit (users permissions SSH access root configuration)
- Review of system logs (auth logs web server logs PHP logs)
- Malware and integrity sweep
- Cron job inspection
- Running process inspection
- File permission and ownership correction
- Identification of vulnerabilities and remediation plan
- WordPress core integrity verification
- Plugin and theme audit
- hardening
- Disable file editing and tighten permissions
- XMLRPC assessment and lockdown (if applicable)
- Rate limiting and brute force protection
- Security headers implementation
- Server monitoring (CPU RAM disk usage inode usage)
- Intrusion detection configuration
- Automated patch management setup
- Secure offsite backup configuration
- Cloudflare WAF configuration and optimization
- Recommendations for SOC / threat monitoring integration
- Strong Linux server administration experience
- Proven experience securing production WordPress environments
- Familiarity with Cloudflare and WAF configuration
- Experience implementing monitoring and intrusion detection tools
- Ability to collaborate with internal development lead without overlapping responsibilities
- Clear documentation and reporting skills
- Initial audit-based contract
- Potential ongoing monthly security monitoring work
- Remote engagement
- Compensation based on experience and scope
- Not a web development position
- Not a design role
- Not an SEO or marketing role
- Not a helpdesk or general IT support position (these services may be needed later)
Please provide:
- Examples of infrastructure you currently manage
- Security tools and frameworks you use
- Your approach to WordPress hardening
- Availability for an initial audit
- Proposed engagement structure and pricing
Required Skills:
Requirements - Strong Linux server administration experience - Proven experience securing production WordPress environments - Familiarity with Cloudflare and WAF configuration - Experience implementing monitoring and intrusion detection tools - Ability to collaborate with internal development lead without overlapping responsibilities - Clear documentation and reporting skills Engagement Details - Initial audit-based contract - Potential ongoing monthly security monitoring work - Remote engagement - Compensation based on experience and scope What This Role Is Not - Not a web development position - Not a design role - Not an SEO or marketing role - Not a helpdesk or general IT support position (these services may be needed later) Application Instructions Please provide: - Examples of infrastructure you currently manage - Security tools and frameworks you use - Your approach to WordPress hardening - Availability for an initial audit - Proposed engagement structure and pricing
Required Education:
3 to 5 years
IT Services and IT Consulting