Corporate Site Security Enhancement
Budget: $8 – $15 USD
My corporate information portal must stay online and dependable, so I’m tightening every layer of its security. The immediate priorities are rock-solid data encryption, a properly tuned firewall (hardware or cloud-based is fine as long as it fits our stack), and an actionable schedule for recurring security audits.
Here’s how I picture the engagement unfolding:
• Begin with a quick assessment of the current SSL/TLS implementation, server configuration and any encryption in transit or at rest.
• Deploy or improve a Web Application Firewall and fine-tune its rules to our CMS and custom modules.
• Produce a clear audit checklist I can run quarterly, plus documentation of everything you changed—config files, hardening steps, and monitoring hooks.
You’ll have SSH/hosting-panel access in a staging environment first, then production once we’re confident in the fixes. The site runs on a standard LAMP stack with Cloudflare sitting in front, so experience with Apache hardening, ModSecurity, and Let’s Encrypt/ACME bots will be handy.
Success for me means the portal passes an external vulnerability scan with no high-severity findings, and that I have a repeatable audit plan in my hands.
Here’s how I picture the engagement unfolding:
• Begin with a quick assessment of the current SSL/TLS implementation, server configuration and any encryption in transit or at rest.
• Deploy or improve a Web Application Firewall and fine-tune its rules to our CMS and custom modules.
• Produce a clear audit checklist I can run quarterly, plus documentation of everything you changed—config files, hardening steps, and monitoring hooks.
You’ll have SSH/hosting-panel access in a staging environment first, then production once we’re confident in the fixes. The site runs on a standard LAMP stack with Cloudflare sitting in front, so experience with Apache hardening, ModSecurity, and Let’s Encrypt/ACME bots will be handy.
Success for me means the portal passes an external vulnerability scan with no high-severity findings, and that I have a repeatable audit plan in my hands.