Archive Digital Job Description Linux Server & WordPress Security Engineer (Contract)
Job Summary
Archive Digital Job Description: Linux Server & WordPress Security Engineer (Contract)
Company Overview
We are a growing digital agency specializing in web development design and strategic digital execution. All web development and design work is handled internally. We are seeking a dedicated infrastructure and security professional to manage server integrity hardening monitoring and protection.
Position Overview
We are seeking an experienced Linux Server & WordPress Security Engineer to conduct a full audit of two production servers and implement enterprise-level security hardening and monitoring. This role focuses strictly on infrastructure and security. It does not include web development design SEO or marketing responsibilities.
Scope of Work
Phase 1: Infrastructure Security Audit
- Full Linux server security audit (users permissions SSH access root configuration)
- Review of system logs (auth logs web server logs PHP logs)
- Malware and integrity sweep
- Cron job inspection
- Running process inspection
- File permission and ownership correction
- Identification of vulnerabilities and remediation plan
Phase 2: WordPress Hardening
- WordPress core integrity verification
- Plugin and theme audit
- hardening
- Disable file editing and tighten permissions
- XMLRPC assessment and lockdown (if applicable)
- Rate limiting and brute force protection
- Security headers implementation
Phase 3: Monitoring & Protection Setup
- Server monitoring (CPU RAM disk usage inode usage)
- Intrusion detection configuration
- Automated patch management setup
- Secure offsite backup configuration
- Cloudflare WAF configuration and optimization
- Recommendations for SOC / threat monitoring integration
Requirements
Requirements
- Strong Linux server administration experience
- Proven experience securing production WordPress environments
- Familiarity with Cloudflare and WAF configuration
- Experience implementing monitoring and intrusion detection tools
- Ability to collaborate with internal development lead without overlapping responsibilities
- Clear documentation and reporting skills
Engagement Details
- Initial audit-based contract
- Potential ongoing monthly security monitoring work
- Remote engagement
- Compensation based on experience and scope
What This Role Is Not
- Not a web development position
- Not a design role
- Not an SEO or marketing role
- Not a helpdesk or general IT support position (these services may be needed later)
Application Instructions
Please provide:
- Examples of infrastructure you currently manage
- Security tools and frameworks you use
- Your approach to WordPress hardening
- Availability for an initial audit
- Proposed engagement structure and pricing
Required Skills:
Requirements - Strong Linux server administration experience - Proven experience securing production WordPress environments - Familiarity with Cloudflare and WAF configuration - Experience implementing monitoring and intrusion detection tools - Ability to collaborate with internal development lead without overlapping responsibilities - Clear documentation and reporting skills Engagement Details - Initial audit-based contract - Potential ongoing monthly security monitoring work - Remote engagement - Compensation based on experience and scope What This Role Is Not - Not a web development position - Not a design role - Not an SEO or marketing role - Not a helpdesk or general IT support position (these services may be needed later) Application Instructions Please provide: - Examples of infrastructure you currently manage - Security tools and frameworks you use - Your approach to WordPress hardening - Availability for an initial audit - Proposed engagement structure and pricing
Required Education:
3 to 5 years
Company Industry
IT Services and IT Consulting