Services / Security & hardening

Security & hardening

Smaller teams are targeted precisely because attackers assume nobody's watching: default SSH ports, password auth, and unpatched packages are common, not rare. We close the gaps that actually get exploited: access control, patching, and the basic hygiene most breaches trace back to.

What's included

  • Firewall configuration (ufw, iptables or cloud security groups)
  • SSH key-only access, password authentication disabled
  • fail2ban and intrusion detection
  • Patch cadence and vulnerability tracking
  • Periodic security audits with a written report
RATES
$115–$150 / hour

Standard remote and on-site support in Calgary. Fixed-scope project quotes available on request.

Request a Quote

Frequently asked questions

Is a small business actually a target for attacks?

Yes, often more so, since attackers assume smaller teams aren't watching closely. Default SSH ports, password auth, and unpatched packages get scanned for constantly, regardless of company size.

What's the first thing you'd fix on a typical server?

SSH: switching to key-only access with password authentication disabled, plus fail2ban. It's the single most commonly exploited gap we see.

Do you provide a report after an audit?

Yes, a written report covering what was found and what was changed, not just a verbal summary.

FROM THE BLOG

Related reading

The Linux Server Security Checklist Every Business Should Run

Most server compromises aren't sophisticated. They exploit the same handful of unhardened defaults. Here's the checklist that closes them.

SSH Hardening Checklist: Beyond Disabling Password Auth

Turning off password auth is where most SSH hardening guides stop. Here's what actually closes the gap.

OTHER SERVICES

Often paired with this

Ready to talk about security & hardening?

Get a Quote