WordPress Security & Update Audit

Job ID: 40512145

Budget: $50 – $0 USD

I manage several WordPress sites that need a full refresh and hardening. First, every installation must be brought current—core, all plugins, themes, and any media elements that could break after version changes.

Once everything is up to date, I want security locked down. My highest priorities are:
• A properly configured firewall (Wordfence, Sucuri, or similar)
• Strong user-authentication controls with 2FA, password policies, and limited-login protection
• Continuous malware scanning with automatic alerts and clean-up procedures

Current pain points include repeated unauthorized access attempts, a few outdated plugins/themes, and sporadic malware or suspicious-activity notices from the host. I need each issue identified, removed, and documented with a clear “all-clean” report.

Deliverables
• Complete updates of WordPress core, plugins, and themes, with a safe rollback strategy
• Firewall, authentication, and malware-monitoring configuration and verification
• Removal of unused/vulnerable code and remediation of any active infections
• Post-engagement security audit report detailing actions taken and recommendations for ongoing improvements

When you respond, include a link to a WordPress site you have recently secured and outline the exact security workflow you would follow here. Proposals that focus on the security settings above will receive immediate attention.