Security for your WordPress site should be one of the if not the most important thing to consider once you have installed your site.

“There is no way any site can be 100% secure against hackers – it’s a fact we all have to live with. “

Hackers are always trying to find the holes and vulnerabilities in any and all websites, including yours.  All you can do is minimise the risk by ensuring the security of your WordPress site but your site will never be 100% protected.

“Anyone who attempts to sell you 100% WordPress Security is selling you a service that does not exist.”

That is the bad news out of the way.  What you can do is minimise the risk as much as possible by ensuring the security of your WordPress site.

There are people out there that will tell you that your security woes are all about WordPress.  That’s just not true – at the end of December 2015 it was estimated that 25% of the worlds websites were running WordPress.  There are over 1,000,000,000 websites online so that means that a staggering 250,000,000 sites are running WordPress – that’s one huge target.  By comparison, Joomla, WordPress’s biggest competitor only powers about 3% of the web.

Best Practices for security

Keep everything up to date

Backup your site up regularly

Enforce strong passwords

Secure access to your control panel

Install plugins from reputable sources

Get RocketWP to manage it!

How we can help


Host your site with us, our servers are powered by Plesk Oynx and configured with security in mind.  We then install the iThemes Security Pro plugin.  Once activated this plugin is configured for maximum security.  Securing your site against, brute force attacks, spam attacks, malicious content uploads and the main core WordPress files.


All our servers are backed up using R1Soft Backup, daily.  Backups are retained for a minimum of 14 days.  If we only manage a server we use iTheme Backup Buddy and backup again on a daily basis and retained for a minimum on 14 days.


We keep your site up to date using the Plesk Oynx WordPress Tool Kit.  If we are only managing a site we use iThemes Sync to manage WordPress updates. Regardless of the type of hosting all sites are updated between 05:00 – 07:00 and 22:00 – 00:00 daily.


All sites are monitored both for availability and PageSpeed.  All clients are provided with their own status page which can be accessed at anytime to check the uptime of their site.

You could do that?

Yes you could!  Most of the plugins are developed by iThemes, you could simply visit their site and subscribe.

Why use RocketWP?

All the plugins and solutions we use are off the shelf products.  You can install the plugins we use and sign up for the services we use.

So why use RocketWP?  Because it is what we do, it is our business.  We are not trying to run a business – WordPress Management IS our business.  We are not designers, we are not accountants, not driving instructors or any other type of business.  We simply host and manage your WordPress site or website letting you run and manage your business.

Ready for Step 2: Performance? I'm ready! Step 2: Performance