Managed Infrastructure Services

Infrastructure Security Services

Protect Your Infrastructure Before It Becomes a Problem.

Hardening · Firewall & WAF · Vulnerability Management · Malware Removal · Monitoring

  • Free security assessment with findings ranked by severity
  • Linux and Windows hardening by engineers who run production servers daily
  • Malware cleanup and incident response when something has already gone wrong
  • Any hosting provider — your server doesn't have to be with us
  • Clear scope — we state plainly what is and isn't covered
Request a Security Assessment     Talk to a Security Engineer
Since 2007 Running Secure Infrastructure
Linux & Windows One Team, Both Platforms
Free Security Assessment
Any Host Provider Independent
Under attack?

Server hacked or infected right now?

Emergency incident response and malware cleanup are available to anyone — whether or not your server is hosted with eWebGuru or covered by a support plan.

  • Investigation, containment and cleanup
  • We fix the weakness that allowed it, not just the symptom
  • Increased monitoring after remediation
  • Quoted per incident after a short triage
Get Emergency Help  

Or call 8800334921 — tell us it's a security incident.

Free Security Assessment
Hardening & Access Control
Firewall & WAF Management
Malware Cleanup & Incident Response
25,000+ Happy Clients

Security Starts With Your Infrastructure

A well-written application can still be exposed by a poorly configured server, unnecessary open ports, outdated software or a shared administrative password. Most compromises we see are not clever attacks on application code — they are old software, weak access control and services that should never have been reachable from the internet.

Our security services focus on that infrastructure layer: the servers, cloud resources, network and supporting services your applications run on. You get practical controls implemented and maintained, without building a security team of your own.

What we secure

  • Linux servers
  • Windows servers
  • VPS and dedicated servers
  • Cloud infrastructure
  • AWS, Azure and Google Cloud environments
  • Web servers
  • Databases
  • Control panels
  • Network infrastructure
  • Mail infrastructure
  • Business applications at the infrastructure layer
An honest statement about security. Security controls reduce the likelihood and the impact of a compromise. They cannot eliminate the risk, and no provider can truthfully promise that a system will never be attacked successfully. What we can commit to is finding the weaknesses that matter, fixing them in priority order, and responding quickly when something does happen.

Find Security Weaknesses Before Attackers Do

Before implementing controls, we assess what you have. The assessment is free, and the report is yours whether or not you proceed.

What we review

  • Open ports and internet-facing services
  • Firewall configuration
  • User accounts and administrative access
  • SSH and RDP configuration
  • Software versions and missing security patches
  • SSL/TLS configuration
  • File permissions and web server configuration
  • Database exposure
  • Backup arrangements
  • Malware indicators

What you receive

  • Written assessment report
  • Findings ranked critical, high and medium
  • What each finding actually exposes
  • Prioritised remediation roadmap
  • Quick wins you can apply yourself
  • Fixed quote for the remediation work
  • Post-remediation verification, if you proceed

What we need from you

  • Read access to the servers or cloud account
  • A technical or administrative contact
  • Authorisation for any configuration change
  • A list of legitimate administrative IPs
  • Your maintenance window for patching and reboots
  • Details of applications that could be affected

Request a Free Security Assessment

Practical Infrastructure Security

Server Hardening

Default configurations are rarely production-ready. We review and tighten SSH and RDP, root and administrator access, permissions, services and login controls.

Firewall Management

Server firewalls, cloud security groups, network ACLs, port restrictions, IP allowlists and periodic rule reviews so old rules don't outlive their purpose.

Web Application Firewall

WAF deployment and rule tuning, rate limiting, IP blocking, bot control where supported, and investigation of false positives.

Vulnerability & Patch Management

Version review, vulnerability scanning, risk ranking, remediation and verification — not just a report handed over for someone else to action.

Malware Detection & Removal

Investigation of suspicious files and processes, compromise assessment, cleanup and post-cleanup hardening, plus ongoing detection where supported.

Access & Identity

Least-privilege access, SSH key authentication, MFA where supported, administrator review, removal of stale accounts and access logging.

Cloud Security

Security groups, IAM permissions, public exposure, storage permissions, logging and encryption settings across AWS, Azure and Google Cloud.

Security Monitoring

Failed logins, suspicious authentication, unexpected processes, firewall events and critical configuration changes, with agreed response times.

Security Across the Stack

The work itself — operating system, perimeter, access and data, and the cloud control plane.

Linux & Windows Server Hardening

Hardening is a configuration exercise, done with an understanding of what the application actually needs. We close what isn't needed and control what is.

Linux

  • SSH security and key-based authentication
  • Root access controls
  • User and permission management
  • Firewall configuration
  • Removal of unnecessary services
  • Security updates and kernel patching
  • File permissions and ownership
  • Login controls and fail2ban-style protection

Windows Server

  • RDP security and restricted access
  • User and administrator permissions
  • Windows Firewall configuration
  • Security policies and group policy
  • Windows Updates
  • Unnecessary services and roles
  • Event logging and audit policy
  • Remote access controls

Every hardening change is agreed before it's applied, because a control that breaks your application is not a security improvement.

Firewall, WAF and Attack Protection

Controlling what can reach your infrastructure is the foundation. Beyond that sits application-layer filtering and, where the risk justifies it, dedicated attack protection.

Firewall & WAF

  • Linux and Windows server firewalls
  • AWS security groups and network ACLs
  • Cloud and hardware firewalls
  • Port restrictions and IP allowlists
  • Administrative access restrictions
  • WAF deployment and rule tuning, including AWS WAF
  • Rate limiting and bot control where supported
  • False-positive investigation

DDoS & attack protection

  • DDoS exposure assessment
  • Cloud-based protection services
  • Traffic filtering and rate limiting
  • Network architecture review
  • Assistance during an active attack

Where dedicated DDoS protection is required, the appropriate cloud or third-party service is built into the architecture rather than improvised mid-attack.

Access, Data and Mail Security

Administrative access is the most common route into a server, and databases and mail are where the damage usually lands.

Access & encryption

  • Least-privilege access for SSH, RDP, panels and cloud consoles
  • SSH key authentication and MFA where supported
  • Administrator review and removal of stale accounts
  • Access logging
  • SSL certificate installation, renewal and troubleshooting
  • HTTPS enforcement and TLS protocol configuration

Database & mail

  • Database access, permissions and authentication review
  • Network exposure and firewall rules for MySQL, MariaDB, PostgreSQL and SQL Server
  • Database version and encryption options
  • Mail server hardening and SMTP authentication
  • Spam and outbound abuse monitoring
  • Blacklist investigation and suspicious login review

Already on eWebGuru hosting? Free SSL via AutoSSL is included there — the SSL work above is for servers and environments hosted elsewhere.

Cloud Security

Cloud security is more than securing the operating system. Most cloud incidents come from the control plane: over-permissive IAM, public storage and security groups open to the world.

  • Network access and security group review
  • IAM permissions and least privilege
  • Administrative and root account protection
  • Public exposure review
  • Storage bucket permissions
  • Logging and audit trail configuration
  • Encryption settings at rest and in transit
  • AWS: security groups, IAM, AWS WAF, network controls
  • Azure: network security, identity and access configuration
  • Google Cloud: firewall rules, IAM and network controls

For full day-to-day administration of an AWS environment: Managed AWS Services

When Your Server Has Been Compromised

Available to anyone, hosted anywhere, with or without a support plan. Quoted per incident after a short triage so you know the cost before work starts.

01

Investigate

We identify suspicious processes, accounts, files and activity, and establish how far the compromise reaches.

02

Contain

With your authorisation, we restrict affected access and stop the compromise spreading further.

03

Clean

Malicious files, backdoors and unauthorised access are removed from the affected systems.

04

Harden

We fix the weakness that allowed the incident, because cleanup without that just resets the clock.

05

Monitor

Monitoring is increased after remediation to catch any persistence we haven't seen yet.

06

Recover

Services are restored from clean systems or backups where a rebuild is safer than a cleanup.

Two things worth knowing before an incident happens. Containment often means taking something offline, so we need an authorised contact who can approve that quickly. And where a compromise is extensive, rebuilding from a known-clean backup is usually safer than cleaning in place — which is only possible if the backups exist and have been tested. That's what Backup & Disaster Recovery covers.

Get Emergency Incident Help

Know When Something Suspicious Happens

Security isn't a one-time configuration exercise. A server hardened last year drifts: packages age, rules get added for a quick fix and never removed, accounts outlive the people who used them. Security event monitoring catches the activity that indicates a problem, and the configuration changes that quietly create one.

What we watch

  • Failed login attempts and brute-force patterns
  • Suspicious or unusual authentication
  • Unexpected processes and resource anomalies
  • Firewall events
  • Malware and security tool alerts
  • System events
  • Critical configuration changes

How we respond

  • Detect — an alert or anomaly is raised
  • Investigate — an engineer establishes whether it's real
  • Respond — containment or remediation, with your authorisation where it affects availability
  • Harden — the underlying weakness is addressed so it doesn't recur

Response times for security events are set in your service schedule. Suggested starting point: [30 minutes] for a confirmed active compromise, [4 hours] for suspicious activity needing investigation.

This is security event monitoring, which is different from the availability monitoring in our management plans — that watches whether your server is up, this watches whether something is wrong.

Already on a Management Plan?

Some security work is already included in Server Management and Managed AWS. Here's exactly where the line sits.

Security Work Where It Sits
Routine OS security patchingIn your management plan
Basic firewall rules and port managementIn your management plan
Availability and resource monitoringIn your management plan
IAM users and MFA enforcement (AWS)In Managed AWS
Full hardening project, Linux or WindowsSecurity Services
Vulnerability scanning and remediationSecurity Services
Web Application FirewallSecurity Services
Security event monitoringSecurity Services
Malware cleanup and incident responseSecurity Services
Cloud control-plane security reviewSecurity Services
Backup policy, retention and restore testingBackup & DR

Clear Scope. Clear Responsibilities.

Infrastructure security is not the same as application security or regulatory compliance. We'd rather say so up front than have it discovered later.

What we cover

  • Server and operating system security
  • Firewall, WAF and network access control
  • Vulnerability and patch management
  • Access, identity and privilege control
  • Malware detection, cleanup and incident response
  • Cloud infrastructure security configuration
  • Security event monitoring

Separate engagements

  • Application code security and source code audit
  • Penetration testing
  • Compliance certification and audit
  • SOC/SIEM implementation
  • Digital forensics and legal evidence handling
  • Dedicated security operations centre
  • Regulatory and legal consulting

Where these are needed, they can be scoped as separate projects or delivered through specialist partners.

On compliance: we implement and maintain technical controls that support a compliance programme. Certification, audit and interpretation of a specific regulation are specialist work and are not covered by these services.

Security Wherever Your Infrastructure Runs

Your infrastructure doesn't have to be hosted with eWebGuru.

AWS
Microsoft Azure
Google Cloud
eWebGuru Cloud
VPS Providers
Dedicated Servers
Colocation
Private Cloud
On-Premise

Security Services for Your Environment

Start with the free assessment. Fix what it finds. Keep it that way only if you want to.

Security Assessment
Understand your current posture
Free Report in around [5] working days
  • Infrastructure and configuration review
  • Vulnerability review
  • Findings ranked by severity
  • Remediation roadmap
  • Fixed quote for the work
Request Assessment
Managed Security
Keep it secure, continuously
Monthly retainer Agreed response times for security events
  • Security event monitoring
  • Vulnerability and patch management
  • Malware monitoring
  • Firewall and configuration management
  • Incident assistance
  • Monthly security report
Request a Quote
Advanced Security
Complex or high-exposure environments
Custom scope Designed around your architecture
  • Cloud security architecture
  • WAF deployment and tuning
  • Advanced firewall and segmentation
  • DDoS protection design
  • Advanced monitoring and alerting
  • Priority incident response
Talk to Us

Fees exclude 18% GST. Emergency incident response and malware cleanup are available separately, quoted per incident after triage, to customers and non-customers alike.

Security Backed by
Infrastructure We Run Ourselves

We're not a consultancy that writes security reports. We operate hundreds of production virtual machines behind enterprise firewalls in Tier-IV facilities, and handle hardening, patching and malware cleanups as routine work.

We Run This on Our Own Fleet

Enterprise firewalls, outbound abuse monitoring, malware detection and hardening across our own production infrastructure since 2007 — the same practices we apply to your servers.

Linux & Windows Expertise

Security administration for both platforms from one team, which matters when a compromise crosses a mixed environment.

Cloud Security

Security configuration across AWS, Azure and Google Cloud — including the control-plane mistakes that cause most cloud incidents.

We Fix, Not Just Report

A vulnerability report nobody actions changes nothing. We prioritise findings and implement the remediation ourselves.

Production-Aware Decisions

Security recommendations are made with an understanding of how production systems actually run, so controls don't break the application they protect.

One Infrastructure Partner

Migration, server management, cloud, security and recovery handled by the same team, so nothing falls between vendors.

Which Service Do You Need?

Move it, automate it, operate it, protect it, recover it — six services, no overlap.

What You Need Service
Secure servers, cloud and infrastructureSecurity
Ongoing Linux or Windows server administrationServer Management
Ongoing AWS infrastructure managementManaged AWS
Move existing workloads to the cloudCloud Migration
CI/CD and infrastructure automationDevOps
Backup, disaster recovery and recovery planningBackup & DR

Is Your Infrastructure Secure?

Don't wait for an incident to expose a weakness. Let us assess your infrastructure, rank what we find by severity and fix what matters most first.

Request a Security Assessment   Talk to a Security Engineer

Security incident in progress? Call 8800334921 or 9711048349  ·  WhatsApp 9711048349

Frequently Asked Questions

What is infrastructure security?
Infrastructure security protects the servers, networks, cloud resources, operating systems and supporting services that run your applications — as distinct from securing the application code itself, which is a separate discipline.
My server has been hacked. Can you help right now?
Yes. Emergency incident response and malware cleanup are open to anyone, whether or not the server is hosted with us or covered by a plan. We triage first, tell you what the work involves and what it costs, then investigate, contain, clean and harden.
Can you guarantee my server won't be hacked?
No, and no provider honestly can. Security controls reduce both the likelihood and the impact of a compromise. Hardening, patching, access control and monitoring lower the risk substantially, and good backups limit the damage when something still gets through.
Isn't security patching already included in my management plan?
Routine OS security patching, basic firewall rules and availability monitoring are included in Server Management and Managed AWS. Security Services add what those don't cover: hardening projects, vulnerability scanning and remediation, WAF, security event monitoring and incident response. The comparison table above shows the full split.
Can you secure a server hosted with another provider?
Yes. Your server can stay with any hosting provider, cloud platform, colocation facility or your own premises. Security work doesn't require migrating anywhere.
Is the security assessment really free?
Yes. You get a written report with findings ranked critical, high and medium, an explanation of what each one exposes, a remediation roadmap and a fixed quote. The report is yours whether or not you go ahead — including the quick wins you could apply yourself.
Does this include penetration testing?
No. Penetration testing is a specialised assessment and is scoped separately, as are source code audits, digital forensics and compliance certification. We'd rather be clear about that than have it assumed.
Does this make my business compliant with security regulations?
Not on its own. We implement and maintain technical controls that support a compliance programme, but certification, audit and interpretation of a specific regulation are specialist engagements handled separately.
What happens if a security patch breaks my application?
Patches are applied in your agreed maintenance window, with compatibility considered first and a rollback path where the change is risky. Anything likely to affect application behaviour is flagged to you before it's applied rather than after.
Do you provide 24×7 security monitoring?
Security event monitoring with agreed response times is available on Managed Security plans. Our operations team works around the clock; the specific response commitments for your environment are set in your service schedule.
Can you manage firewalls and WAF?
Yes — server firewalls, cloud security groups and network ACLs, supported hardware and cloud firewalls, and WAF deployment with rule tuning and false-positive investigation, including AWS WAF for AWS environments.
Do you provide DDoS protection?
We assess your exposure and design protection appropriate to the infrastructure and attack profile, using cloud-based protection services, traffic filtering and architecture changes. Dedicated protection services are built into the architecture rather than improvised during an attack.

AWS, Microsoft Azure, Windows Server, Google Cloud and other product names are trademarks of their respective owners. eWebGuru is an independent service provider and is not affiliated with or endorsed by any of these companies.