SlideShare a Scribd company logo
1 of 46
MAKING SECURITY MAKE SENSE
JAMIE
SCHMID• COMMUNITY EVANGELIST @SITELOCK
• FREELANCE DESIGNER AND
DEVELOPER
• PASSIONATE ABOUT WORDPRESS AND
DRUPAL
• CONTENT ENTHUSIAST
• PROUD CAT MOM IN PORTLAND, OR
@JAMIESC
WHAT WE’LL COVER TODAY
• Securing your own site first
• Securing your client sites
• Benefits for your business
and your those of your clients
• Communicating security
benefits efficiently
• Including security in the project
scope
• Security best practices
• Security in your maintenance
program
• Maintenance and reporting
options
THE BENEFITS OF…
FAMILIARITY
WITH SECURITY
BEST
SECURING YOUR
CLIENT SITES
THE BENEFITS OF…
ESPECIALLY WHEN
INHERITING WEBSITES
DEVELOPED BY
SOMEONE ELSE
EDUCATING CLIENTS
ABOUT SECURITY
THE BUSINESS BENEFITS OF…
MAKING THE INTERNET
SAFER
WHO’S RESPONSIBLE
FOR SECURITY?
YOU? THE CLIENT? THE WEB
HOST?
SETTING YOUR
BUSINESS APARTINCREASING YOUR VALUE
HIGHER PRICES -
RESIDUAL INCOME
COMMUNICATING THE
NEED FOR SECURITY
THE BENEFITS OF…
DEFACEMENT
FINANCIAL GAIN
WHO AND HOW?
MOSTLY BOTS
ACCESS POINT
VULNERAILITIES
LITERALLY ALL
THE TIME
IMPLEMENTING 5
SIMPLE WEBSITE
THE BENEFITS OF…
1. BACKUPS
2. UPDATES
3. STRONG
PASSWORDS
HTTPS://HAVEIBEENPWNED.COM/PASSWORD
S
UNIQUE
PASSWORDS
4. FIREWALLS AND
CDNS
5. CONTINUOUS
MONITORING
INCLUDING SECURITY IN
THE PROJECT SCOPE
THE BENEFITS OF…
PROFESSIONAL
IMAGE
& TRUST
INFORMS
CLIENT FROM
THE BEGINNING
HOST BACKUPS ON A
DIFFERENT SERVER
SCHEDULE BACKUPS
REGULARLY
THROUGH YOUR HOST
(BE SURE IT IS A FULLY
RESTORABLE BACKUP!)
VAULT PRESS
BACKUP BUDDY
UPDRAFT PLUS
AUTOMATE WITH A BACKUP
SCRIPT (ADVANCED)
INCLUDING SECURITY
AS A SERVICE
THE BENEFITS OF…
2-3 LEVELS
LIST THEM ON
YOUR WEBSITE
MONTHLY
EASY DIGITAL
DOWNLOADS
ULTIMATE
ADD-ON
SERVICESONE-TIME CLEANUP
INITIAL SETUP
EVALUATION/REVIEW
CONSULTATION
AUTOMATING
MAINTENANCE AND
THE BENEFITS OF…
MANAGEWP
INFINITEWP
SITELOCK
ASANA
GOOGLE CALENDAR
WORDPRESS PLUGIN
PASSWORD
MANAGEMENTLASTPASS 1PASSWORD
REMEMBER THESE AND
GROW YOUR BUSINESS• Including security in the
project scope
• Security best practices
• Security in your maintenance
program
• Maintenance and reporting
options
• Securing your own site first
• Securing your client sites
• Benefits for your business
and your those of your clients
• Communicating security
benefits efficiently
THANK
YOU
QUESTI
ONS?

More Related Content

What's hot

Security Webinar: Harden the Heart of Your WordPress SiteSe
Security Webinar: Harden the Heart of Your WordPress SiteSeSecurity Webinar: Harden the Heart of Your WordPress SiteSe
Security Webinar: Harden the Heart of Your WordPress SiteSeWP Engine
 
WordPress.com vs WordPress.org - How to Choose Your Host
WordPress.com vs WordPress.org - How to Choose Your HostWordPress.com vs WordPress.org - How to Choose Your Host
WordPress.com vs WordPress.org - How to Choose Your Hostlimesquare
 
How to create a WordPress Site
How to create a WordPress Site How to create a WordPress Site
How to create a WordPress Site MuhammadUsaid2
 
Top Insights for Your WordPress Site
Top Insights for Your WordPress SiteTop Insights for Your WordPress Site
Top Insights for Your WordPress SiteWP Engine
 
Nashville WordPress meetup - iThemes' Backup Buddy
Nashville WordPress meetup - iThemes' Backup BuddyNashville WordPress meetup - iThemes' Backup Buddy
Nashville WordPress meetup - iThemes' Backup BuddyD'nelle Dowis
 
How to set up a website
How to set up a websiteHow to set up a website
How to set up a websitejosephlyman15
 
Deploying A Static Website Using WordPress
 Deploying A Static Website Using WordPress Deploying A Static Website Using WordPress
Deploying A Static Website Using WordPressDaniel Schutzsmith
 
Word press theme and plugins WordCamp Presentation
Word press theme and plugins WordCamp PresentationWord press theme and plugins WordCamp Presentation
Word press theme and plugins WordCamp PresentationAngela Samuels
 
Gaining (and Not Betraying) User Trust in WordPress eCommerce
Gaining (and Not Betraying) User Trust in WordPress eCommerceGaining (and Not Betraying) User Trust in WordPress eCommerce
Gaining (and Not Betraying) User Trust in WordPress eCommerceAndrew Wikel
 
Word press workshop powerpoint
Word press workshop   powerpointWord press workshop   powerpoint
Word press workshop powerpointerezwe
 
WordPress Multisite | WordPress Meetup Saint Petersburg, Russia 13 January 2017
WordPress Multisite | WordPress Meetup Saint Petersburg, Russia 13 January 2017WordPress Multisite | WordPress Meetup Saint Petersburg, Russia 13 January 2017
WordPress Multisite | WordPress Meetup Saint Petersburg, Russia 13 January 2017Doug Lawrence
 
Shared Hosting and WordPress
Shared Hosting and WordPressShared Hosting and WordPress
Shared Hosting and WordPressAl Davis
 
Introduction to E-Commerce - Creating your own website in 6 easy steps!
Introduction to E-Commerce - Creating your own website in 6 easy steps!Introduction to E-Commerce - Creating your own website in 6 easy steps!
Introduction to E-Commerce - Creating your own website in 6 easy steps!Ramon Manuel Nisperos, MBA, CEP
 
After the install
After the installAfter the install
After the installAl Davis
 
One day WordPress workshop
One day WordPress workshopOne day WordPress workshop
One day WordPress workshopRashna Maharjan
 

What's hot (20)

Managed WordPress Demystified
Managed WordPress DemystifiedManaged WordPress Demystified
Managed WordPress Demystified
 
Security Webinar: Harden the Heart of Your WordPress SiteSe
Security Webinar: Harden the Heart of Your WordPress SiteSeSecurity Webinar: Harden the Heart of Your WordPress SiteSe
Security Webinar: Harden the Heart of Your WordPress SiteSe
 
More Multisite for the Masses
More Multisite for the MassesMore Multisite for the Masses
More Multisite for the Masses
 
Web development
Web development Web development
Web development
 
WordPress.com vs WordPress.org - How to Choose Your Host
WordPress.com vs WordPress.org - How to Choose Your HostWordPress.com vs WordPress.org - How to Choose Your Host
WordPress.com vs WordPress.org - How to Choose Your Host
 
How to create a WordPress Site
How to create a WordPress Site How to create a WordPress Site
How to create a WordPress Site
 
Top Insights for Your WordPress Site
Top Insights for Your WordPress SiteTop Insights for Your WordPress Site
Top Insights for Your WordPress Site
 
Nashville WordPress meetup - iThemes' Backup Buddy
Nashville WordPress meetup - iThemes' Backup BuddyNashville WordPress meetup - iThemes' Backup Buddy
Nashville WordPress meetup - iThemes' Backup Buddy
 
How to set up a website
How to set up a websiteHow to set up a website
How to set up a website
 
Deploying A Static Website Using WordPress
 Deploying A Static Website Using WordPress Deploying A Static Website Using WordPress
Deploying A Static Website Using WordPress
 
Word press theme and plugins WordCamp Presentation
Word press theme and plugins WordCamp PresentationWord press theme and plugins WordCamp Presentation
Word press theme and plugins WordCamp Presentation
 
Gaining (and Not Betraying) User Trust in WordPress eCommerce
Gaining (and Not Betraying) User Trust in WordPress eCommerceGaining (and Not Betraying) User Trust in WordPress eCommerce
Gaining (and Not Betraying) User Trust in WordPress eCommerce
 
Word press workshop powerpoint
Word press workshop   powerpointWord press workshop   powerpoint
Word press workshop powerpoint
 
WordPress Multisite | WordPress Meetup Saint Petersburg, Russia 13 January 2017
WordPress Multisite | WordPress Meetup Saint Petersburg, Russia 13 January 2017WordPress Multisite | WordPress Meetup Saint Petersburg, Russia 13 January 2017
WordPress Multisite | WordPress Meetup Saint Petersburg, Russia 13 January 2017
 
Shared Hosting and WordPress
Shared Hosting and WordPressShared Hosting and WordPress
Shared Hosting and WordPress
 
Introduction to E-Commerce - Creating your own website in 6 easy steps!
Introduction to E-Commerce - Creating your own website in 6 easy steps!Introduction to E-Commerce - Creating your own website in 6 easy steps!
Introduction to E-Commerce - Creating your own website in 6 easy steps!
 
After the install
After the installAfter the install
After the install
 
Creating website
Creating websiteCreating website
Creating website
 
Wcto2014
Wcto2014Wcto2014
Wcto2014
 
One day WordPress workshop
One day WordPress workshopOne day WordPress workshop
One day WordPress workshop
 

Similar to Making Security Make Sense to Users and Clients

Making Security Make Sense to Users and Clients
Making Security Make Sense to Users and ClientsMaking Security Make Sense to Users and Clients
Making Security Make Sense to Users and ClientsJamie Schmid
 
ValueLabs - inspired by Potential - Insurance
ValueLabs - inspired by Potential - InsuranceValueLabs - inspired by Potential - Insurance
ValueLabs - inspired by Potential - InsuranceSrikanth Mulle
 
Evg Capabilities2011 Ei 1
Evg Capabilities2011 Ei 1Evg Capabilities2011 Ei 1
Evg Capabilities2011 Ei 1eingrand
 
Evg Capabilities2011 Ei 1
Evg Capabilities2011 Ei 1Evg Capabilities2011 Ei 1
Evg Capabilities2011 Ei 1eingrand
 
E commerce essentials - Introduction to E-commerce
E commerce essentials - Introduction to E-commerceE commerce essentials - Introduction to E-commerce
E commerce essentials - Introduction to E-commerceCareerEd India
 
Rubber Cheese - Visitor Attraction Credentials
Rubber Cheese - Visitor Attraction CredentialsRubber Cheese - Visitor Attraction Credentials
Rubber Cheese - Visitor Attraction CredentialsRubber Cheese
 
Customer Experience is a Team Sport
Customer Experience is a Team SportCustomer Experience is a Team Sport
Customer Experience is a Team SportNuxeo
 
Use of entertainment solutions for small and medium enterprises marketing
Use of entertainment solutions for small and medium enterprises marketing Use of entertainment solutions for small and medium enterprises marketing
Use of entertainment solutions for small and medium enterprises marketing USAID CEED II Project Moldova
 
Data-driven touch point marketing for customer service and increased conversions
Data-driven touch point marketing for customer service and increased conversionsData-driven touch point marketing for customer service and increased conversions
Data-driven touch point marketing for customer service and increased conversionscloud.IQ
 
About C4B Media - integrated creative and marketing agency
About C4B Media - integrated creative and marketing agencyAbout C4B Media - integrated creative and marketing agency
About C4B Media - integrated creative and marketing agencyC4B Media
 
"Put your Lead Nurturing on Steroids"
"Put your Lead Nurturing on Steroids" "Put your Lead Nurturing on Steroids"
"Put your Lead Nurturing on Steroids" Regalix
 
MarkMaster corporate brochure
MarkMaster corporate brochureMarkMaster corporate brochure
MarkMaster corporate brochureRick Baker
 
Rainhopes company profile 2012
Rainhopes company profile 2012Rainhopes company profile 2012
Rainhopes company profile 2012Rainhopes
 
Evolution not Revolution - Simplify Your Digital Strategy For Closer Relation...
Evolution not Revolution - Simplify Your Digital Strategy For Closer Relation...Evolution not Revolution - Simplify Your Digital Strategy For Closer Relation...
Evolution not Revolution - Simplify Your Digital Strategy For Closer Relation...ClearPeople
 
Evolution not Revolution - Simplify Your Digital Strategy for Closer Relation...
Evolution not Revolution - Simplify Your Digital Strategy for Closer Relation...Evolution not Revolution - Simplify Your Digital Strategy for Closer Relation...
Evolution not Revolution - Simplify Your Digital Strategy for Closer Relation...marketingfinder.co.uk
 
ColdFusion Development Services
ColdFusion Development ServicesColdFusion Development Services
ColdFusion Development ServicesEtisbew-corp
 
Superfast Business: Be successful at digital marketing
Superfast Business: Be successful at digital marketingSuperfast Business: Be successful at digital marketing
Superfast Business: Be successful at digital marketingSuperfast Business
 
PPT- UK- Business Development Manager(1)
PPT- UK- Business Development Manager(1)PPT- UK- Business Development Manager(1)
PPT- UK- Business Development Manager(1)Debayan Chakraborty
 
Kieon 2013
Kieon 2013Kieon 2013
Kieon 2013Kieon
 

Similar to Making Security Make Sense to Users and Clients (20)

Making Security Make Sense to Users and Clients
Making Security Make Sense to Users and ClientsMaking Security Make Sense to Users and Clients
Making Security Make Sense to Users and Clients
 
ValueLabs - inspired by Potential - Insurance
ValueLabs - inspired by Potential - InsuranceValueLabs - inspired by Potential - Insurance
ValueLabs - inspired by Potential - Insurance
 
Evg Capabilities2011 Ei 1
Evg Capabilities2011 Ei 1Evg Capabilities2011 Ei 1
Evg Capabilities2011 Ei 1
 
Evg Capabilities2011 Ei 1
Evg Capabilities2011 Ei 1Evg Capabilities2011 Ei 1
Evg Capabilities2011 Ei 1
 
Data Privacy Day - MaRS Best Practices
Data Privacy Day - MaRS Best PracticesData Privacy Day - MaRS Best Practices
Data Privacy Day - MaRS Best Practices
 
E commerce essentials - Introduction to E-commerce
E commerce essentials - Introduction to E-commerceE commerce essentials - Introduction to E-commerce
E commerce essentials - Introduction to E-commerce
 
Rubber Cheese - Visitor Attraction Credentials
Rubber Cheese - Visitor Attraction CredentialsRubber Cheese - Visitor Attraction Credentials
Rubber Cheese - Visitor Attraction Credentials
 
Customer Experience is a Team Sport
Customer Experience is a Team SportCustomer Experience is a Team Sport
Customer Experience is a Team Sport
 
Use of entertainment solutions for small and medium enterprises marketing
Use of entertainment solutions for small and medium enterprises marketing Use of entertainment solutions for small and medium enterprises marketing
Use of entertainment solutions for small and medium enterprises marketing
 
Data-driven touch point marketing for customer service and increased conversions
Data-driven touch point marketing for customer service and increased conversionsData-driven touch point marketing for customer service and increased conversions
Data-driven touch point marketing for customer service and increased conversions
 
About C4B Media - integrated creative and marketing agency
About C4B Media - integrated creative and marketing agencyAbout C4B Media - integrated creative and marketing agency
About C4B Media - integrated creative and marketing agency
 
"Put your Lead Nurturing on Steroids"
"Put your Lead Nurturing on Steroids" "Put your Lead Nurturing on Steroids"
"Put your Lead Nurturing on Steroids"
 
MarkMaster corporate brochure
MarkMaster corporate brochureMarkMaster corporate brochure
MarkMaster corporate brochure
 
Rainhopes company profile 2012
Rainhopes company profile 2012Rainhopes company profile 2012
Rainhopes company profile 2012
 
Evolution not Revolution - Simplify Your Digital Strategy For Closer Relation...
Evolution not Revolution - Simplify Your Digital Strategy For Closer Relation...Evolution not Revolution - Simplify Your Digital Strategy For Closer Relation...
Evolution not Revolution - Simplify Your Digital Strategy For Closer Relation...
 
Evolution not Revolution - Simplify Your Digital Strategy for Closer Relation...
Evolution not Revolution - Simplify Your Digital Strategy for Closer Relation...Evolution not Revolution - Simplify Your Digital Strategy for Closer Relation...
Evolution not Revolution - Simplify Your Digital Strategy for Closer Relation...
 
ColdFusion Development Services
ColdFusion Development ServicesColdFusion Development Services
ColdFusion Development Services
 
Superfast Business: Be successful at digital marketing
Superfast Business: Be successful at digital marketingSuperfast Business: Be successful at digital marketing
Superfast Business: Be successful at digital marketing
 
PPT- UK- Business Development Manager(1)
PPT- UK- Business Development Manager(1)PPT- UK- Business Development Manager(1)
PPT- UK- Business Development Manager(1)
 
Kieon 2013
Kieon 2013Kieon 2013
Kieon 2013
 

More from Jamie Schmid

Content Architectures in WordPress 5
Content Architectures in WordPress 5Content Architectures in WordPress 5
Content Architectures in WordPress 5Jamie Schmid
 
Content Strategy in a Gutenberg World Lightning Talk at WordCamp Phoenix 2019
Content Strategy in a Gutenberg World   Lightning Talk at WordCamp Phoenix 2019Content Strategy in a Gutenberg World   Lightning Talk at WordCamp Phoenix 2019
Content Strategy in a Gutenberg World Lightning Talk at WordCamp Phoenix 2019Jamie Schmid
 
Dont Break Live lightning talk
Dont Break Live lightning talkDont Break Live lightning talk
Dont Break Live lightning talkJamie Schmid
 
Introduction to WooCommerce
Introduction to WooCommerceIntroduction to WooCommerce
Introduction to WooCommerceJamie Schmid
 
Securing your WooCommerce Site
Securing your WooCommerce SiteSecuring your WooCommerce Site
Securing your WooCommerce SiteJamie Schmid
 
Remote Project Management WordCamp OC 2018
Remote Project Management WordCamp OC 2018Remote Project Management WordCamp OC 2018
Remote Project Management WordCamp OC 2018Jamie Schmid
 
YAY I'm Working Remotely! Now What?
YAY I'm Working Remotely! Now What?YAY I'm Working Remotely! Now What?
YAY I'm Working Remotely! Now What?Jamie Schmid
 
Introduction to Content Strategy: SANDCamp 2018
Introduction to Content Strategy: SANDCamp 2018Introduction to Content Strategy: SANDCamp 2018
Introduction to Content Strategy: SANDCamp 2018Jamie Schmid
 
Content Doesn't Grow on Trees - An Introduction to Content Strategy
Content Doesn't Grow on Trees - An Introduction to Content StrategyContent Doesn't Grow on Trees - An Introduction to Content Strategy
Content Doesn't Grow on Trees - An Introduction to Content StrategyJamie Schmid
 
Introduction to Custom WordPress Themeing
Introduction to Custom WordPress ThemeingIntroduction to Custom WordPress Themeing
Introduction to Custom WordPress ThemeingJamie Schmid
 
Introduction to Content Strategy - WordCamp Montreal 2016
Introduction to Content Strategy - WordCamp Montreal 2016Introduction to Content Strategy - WordCamp Montreal 2016
Introduction to Content Strategy - WordCamp Montreal 2016Jamie Schmid
 
Content Architecture in WordPress
Content Architecture in WordPressContent Architecture in WordPress
Content Architecture in WordPressJamie Schmid
 
Content Doesn't Grow on Trees - Intruduction to Content Strategy
Content Doesn't Grow on Trees - Intruduction to Content StrategyContent Doesn't Grow on Trees - Intruduction to Content Strategy
Content Doesn't Grow on Trees - Intruduction to Content StrategyJamie Schmid
 
WCCBUS 2015 - Content Architecture in WordPress
WCCBUS 2015 - Content Architecture in WordPressWCCBUS 2015 - Content Architecture in WordPress
WCCBUS 2015 - Content Architecture in WordPressJamie Schmid
 
Structuring Content in WordPress using Advanced Custom Fields
Structuring Content in WordPress using Advanced Custom FieldsStructuring Content in WordPress using Advanced Custom Fields
Structuring Content in WordPress using Advanced Custom FieldsJamie Schmid
 
Structuring Content in WordPress using Advanced Custom Fields
Structuring Content in WordPress using Advanced Custom FieldsStructuring Content in WordPress using Advanced Custom Fields
Structuring Content in WordPress using Advanced Custom FieldsJamie Schmid
 
WordPress Beginner: Choosing & Customizing Your Theme
WordPress Beginner: Choosing & Customizing Your ThemeWordPress Beginner: Choosing & Customizing Your Theme
WordPress Beginner: Choosing & Customizing Your ThemeJamie Schmid
 
Structuring Content in WordPress: Against All the Odds
Structuring Content in WordPress: Against All the OddsStructuring Content in WordPress: Against All the Odds
Structuring Content in WordPress: Against All the OddsJamie Schmid
 
Structuring Content in Wordpress
Structuring Content in WordpressStructuring Content in Wordpress
Structuring Content in WordpressJamie Schmid
 
The Administrative Backend - Designing an Experience for the OTHER Users!
The Administrative Backend - Designing an Experience for the OTHER Users!The Administrative Backend - Designing an Experience for the OTHER Users!
The Administrative Backend - Designing an Experience for the OTHER Users!Jamie Schmid
 

More from Jamie Schmid (20)

Content Architectures in WordPress 5
Content Architectures in WordPress 5Content Architectures in WordPress 5
Content Architectures in WordPress 5
 
Content Strategy in a Gutenberg World Lightning Talk at WordCamp Phoenix 2019
Content Strategy in a Gutenberg World   Lightning Talk at WordCamp Phoenix 2019Content Strategy in a Gutenberg World   Lightning Talk at WordCamp Phoenix 2019
Content Strategy in a Gutenberg World Lightning Talk at WordCamp Phoenix 2019
 
Dont Break Live lightning talk
Dont Break Live lightning talkDont Break Live lightning talk
Dont Break Live lightning talk
 
Introduction to WooCommerce
Introduction to WooCommerceIntroduction to WooCommerce
Introduction to WooCommerce
 
Securing your WooCommerce Site
Securing your WooCommerce SiteSecuring your WooCommerce Site
Securing your WooCommerce Site
 
Remote Project Management WordCamp OC 2018
Remote Project Management WordCamp OC 2018Remote Project Management WordCamp OC 2018
Remote Project Management WordCamp OC 2018
 
YAY I'm Working Remotely! Now What?
YAY I'm Working Remotely! Now What?YAY I'm Working Remotely! Now What?
YAY I'm Working Remotely! Now What?
 
Introduction to Content Strategy: SANDCamp 2018
Introduction to Content Strategy: SANDCamp 2018Introduction to Content Strategy: SANDCamp 2018
Introduction to Content Strategy: SANDCamp 2018
 
Content Doesn't Grow on Trees - An Introduction to Content Strategy
Content Doesn't Grow on Trees - An Introduction to Content StrategyContent Doesn't Grow on Trees - An Introduction to Content Strategy
Content Doesn't Grow on Trees - An Introduction to Content Strategy
 
Introduction to Custom WordPress Themeing
Introduction to Custom WordPress ThemeingIntroduction to Custom WordPress Themeing
Introduction to Custom WordPress Themeing
 
Introduction to Content Strategy - WordCamp Montreal 2016
Introduction to Content Strategy - WordCamp Montreal 2016Introduction to Content Strategy - WordCamp Montreal 2016
Introduction to Content Strategy - WordCamp Montreal 2016
 
Content Architecture in WordPress
Content Architecture in WordPressContent Architecture in WordPress
Content Architecture in WordPress
 
Content Doesn't Grow on Trees - Intruduction to Content Strategy
Content Doesn't Grow on Trees - Intruduction to Content StrategyContent Doesn't Grow on Trees - Intruduction to Content Strategy
Content Doesn't Grow on Trees - Intruduction to Content Strategy
 
WCCBUS 2015 - Content Architecture in WordPress
WCCBUS 2015 - Content Architecture in WordPressWCCBUS 2015 - Content Architecture in WordPress
WCCBUS 2015 - Content Architecture in WordPress
 
Structuring Content in WordPress using Advanced Custom Fields
Structuring Content in WordPress using Advanced Custom FieldsStructuring Content in WordPress using Advanced Custom Fields
Structuring Content in WordPress using Advanced Custom Fields
 
Structuring Content in WordPress using Advanced Custom Fields
Structuring Content in WordPress using Advanced Custom FieldsStructuring Content in WordPress using Advanced Custom Fields
Structuring Content in WordPress using Advanced Custom Fields
 
WordPress Beginner: Choosing & Customizing Your Theme
WordPress Beginner: Choosing & Customizing Your ThemeWordPress Beginner: Choosing & Customizing Your Theme
WordPress Beginner: Choosing & Customizing Your Theme
 
Structuring Content in WordPress: Against All the Odds
Structuring Content in WordPress: Against All the OddsStructuring Content in WordPress: Against All the Odds
Structuring Content in WordPress: Against All the Odds
 
Structuring Content in Wordpress
Structuring Content in WordpressStructuring Content in Wordpress
Structuring Content in Wordpress
 
The Administrative Backend - Designing an Experience for the OTHER Users!
The Administrative Backend - Designing an Experience for the OTHER Users!The Administrative Backend - Designing an Experience for the OTHER Users!
The Administrative Backend - Designing an Experience for the OTHER Users!
 

Recently uploaded

Magic exist by Marta Loveguard - presentation.pptx
Magic exist by Marta Loveguard - presentation.pptxMagic exist by Marta Loveguard - presentation.pptx
Magic exist by Marta Loveguard - presentation.pptxMartaLoveguard
 
Q4-1-Illustrating-Hypothesis-Testing.pptx
Q4-1-Illustrating-Hypothesis-Testing.pptxQ4-1-Illustrating-Hypothesis-Testing.pptx
Q4-1-Illustrating-Hypothesis-Testing.pptxeditsforyah
 
Call Girls Near The Suryaa Hotel New Delhi 9873777170
Call Girls Near The Suryaa Hotel New Delhi 9873777170Call Girls Near The Suryaa Hotel New Delhi 9873777170
Call Girls Near The Suryaa Hotel New Delhi 9873777170Sonam Pathan
 
Call Girls In The Ocean Pearl Retreat Hotel New Delhi 9873777170
Call Girls In The Ocean Pearl Retreat Hotel New Delhi 9873777170Call Girls In The Ocean Pearl Retreat Hotel New Delhi 9873777170
Call Girls In The Ocean Pearl Retreat Hotel New Delhi 9873777170Sonam Pathan
 
『澳洲文凭』买拉筹伯大学毕业证书成绩单办理澳洲LTU文凭学位证书
『澳洲文凭』买拉筹伯大学毕业证书成绩单办理澳洲LTU文凭学位证书『澳洲文凭』买拉筹伯大学毕业证书成绩单办理澳洲LTU文凭学位证书
『澳洲文凭』买拉筹伯大学毕业证书成绩单办理澳洲LTU文凭学位证书rnrncn29
 
Blepharitis inflammation of eyelid symptoms cause everything included along w...
Blepharitis inflammation of eyelid symptoms cause everything included along w...Blepharitis inflammation of eyelid symptoms cause everything included along w...
Blepharitis inflammation of eyelid symptoms cause everything included along w...Excelmac1
 
定制(Lincoln毕业证书)新西兰林肯大学毕业证成绩单原版一比一
定制(Lincoln毕业证书)新西兰林肯大学毕业证成绩单原版一比一定制(Lincoln毕业证书)新西兰林肯大学毕业证成绩单原版一比一
定制(Lincoln毕业证书)新西兰林肯大学毕业证成绩单原版一比一Fs
 
Elevate Your Business with Our IT Expertise in New Orleans
Elevate Your Business with Our IT Expertise in New OrleansElevate Your Business with Our IT Expertise in New Orleans
Elevate Your Business with Our IT Expertise in New Orleanscorenetworkseo
 
办理(UofR毕业证书)罗切斯特大学毕业证成绩单原版一比一
办理(UofR毕业证书)罗切斯特大学毕业证成绩单原版一比一办理(UofR毕业证书)罗切斯特大学毕业证成绩单原版一比一
办理(UofR毕业证书)罗切斯特大学毕业证成绩单原版一比一z xss
 
定制(AUT毕业证书)新西兰奥克兰理工大学毕业证成绩单原版一比一
定制(AUT毕业证书)新西兰奥克兰理工大学毕业证成绩单原版一比一定制(AUT毕业证书)新西兰奥克兰理工大学毕业证成绩单原版一比一
定制(AUT毕业证书)新西兰奥克兰理工大学毕业证成绩单原版一比一Fs
 
定制(Management毕业证书)新加坡管理大学毕业证成绩单原版一比一
定制(Management毕业证书)新加坡管理大学毕业证成绩单原版一比一定制(Management毕业证书)新加坡管理大学毕业证成绩单原版一比一
定制(Management毕业证书)新加坡管理大学毕业证成绩单原版一比一Fs
 
Film cover research (1).pptxsdasdasdasdasdasa
Film cover research (1).pptxsdasdasdasdasdasaFilm cover research (1).pptxsdasdasdasdasdasa
Film cover research (1).pptxsdasdasdasdasdasa494f574xmv
 
Top 10 Interactive Website Design Trends in 2024.pptx
Top 10 Interactive Website Design Trends in 2024.pptxTop 10 Interactive Website Design Trends in 2024.pptx
Top 10 Interactive Website Design Trends in 2024.pptxDyna Gilbert
 
A Good Girl's Guide to Murder (A Good Girl's Guide to Murder, #1)
A Good Girl's Guide to Murder (A Good Girl's Guide to Murder, #1)A Good Girl's Guide to Murder (A Good Girl's Guide to Murder, #1)
A Good Girl's Guide to Murder (A Good Girl's Guide to Murder, #1)Christopher H Felton
 
PHP-based rendering of TYPO3 Documentation
PHP-based rendering of TYPO3 DocumentationPHP-based rendering of TYPO3 Documentation
PHP-based rendering of TYPO3 DocumentationLinaWolf1
 
Potsdam FH学位证,波茨坦应用技术大学毕业证书1:1制作
Potsdam FH学位证,波茨坦应用技术大学毕业证书1:1制作Potsdam FH学位证,波茨坦应用技术大学毕业证书1:1制作
Potsdam FH学位证,波茨坦应用技术大学毕业证书1:1制作ys8omjxb
 
SCM Symposium PPT Format Customer loyalty is predi
SCM Symposium PPT Format Customer loyalty is prediSCM Symposium PPT Format Customer loyalty is predi
SCM Symposium PPT Format Customer loyalty is predieusebiomeyer
 
Font Performance - NYC WebPerf Meetup April '24
Font Performance - NYC WebPerf Meetup April '24Font Performance - NYC WebPerf Meetup April '24
Font Performance - NYC WebPerf Meetup April '24Paul Calvano
 

Recently uploaded (20)

Magic exist by Marta Loveguard - presentation.pptx
Magic exist by Marta Loveguard - presentation.pptxMagic exist by Marta Loveguard - presentation.pptx
Magic exist by Marta Loveguard - presentation.pptx
 
Q4-1-Illustrating-Hypothesis-Testing.pptx
Q4-1-Illustrating-Hypothesis-Testing.pptxQ4-1-Illustrating-Hypothesis-Testing.pptx
Q4-1-Illustrating-Hypothesis-Testing.pptx
 
Call Girls Near The Suryaa Hotel New Delhi 9873777170
Call Girls Near The Suryaa Hotel New Delhi 9873777170Call Girls Near The Suryaa Hotel New Delhi 9873777170
Call Girls Near The Suryaa Hotel New Delhi 9873777170
 
Call Girls In The Ocean Pearl Retreat Hotel New Delhi 9873777170
Call Girls In The Ocean Pearl Retreat Hotel New Delhi 9873777170Call Girls In The Ocean Pearl Retreat Hotel New Delhi 9873777170
Call Girls In The Ocean Pearl Retreat Hotel New Delhi 9873777170
 
『澳洲文凭』买拉筹伯大学毕业证书成绩单办理澳洲LTU文凭学位证书
『澳洲文凭』买拉筹伯大学毕业证书成绩单办理澳洲LTU文凭学位证书『澳洲文凭』买拉筹伯大学毕业证书成绩单办理澳洲LTU文凭学位证书
『澳洲文凭』买拉筹伯大学毕业证书成绩单办理澳洲LTU文凭学位证书
 
Blepharitis inflammation of eyelid symptoms cause everything included along w...
Blepharitis inflammation of eyelid symptoms cause everything included along w...Blepharitis inflammation of eyelid symptoms cause everything included along w...
Blepharitis inflammation of eyelid symptoms cause everything included along w...
 
Hot Sexy call girls in Rk Puram 🔝 9953056974 🔝 Delhi escort Service
Hot Sexy call girls in  Rk Puram 🔝 9953056974 🔝 Delhi escort ServiceHot Sexy call girls in  Rk Puram 🔝 9953056974 🔝 Delhi escort Service
Hot Sexy call girls in Rk Puram 🔝 9953056974 🔝 Delhi escort Service
 
定制(Lincoln毕业证书)新西兰林肯大学毕业证成绩单原版一比一
定制(Lincoln毕业证书)新西兰林肯大学毕业证成绩单原版一比一定制(Lincoln毕业证书)新西兰林肯大学毕业证成绩单原版一比一
定制(Lincoln毕业证书)新西兰林肯大学毕业证成绩单原版一比一
 
Elevate Your Business with Our IT Expertise in New Orleans
Elevate Your Business with Our IT Expertise in New OrleansElevate Your Business with Our IT Expertise in New Orleans
Elevate Your Business with Our IT Expertise in New Orleans
 
办理(UofR毕业证书)罗切斯特大学毕业证成绩单原版一比一
办理(UofR毕业证书)罗切斯特大学毕业证成绩单原版一比一办理(UofR毕业证书)罗切斯特大学毕业证成绩单原版一比一
办理(UofR毕业证书)罗切斯特大学毕业证成绩单原版一比一
 
定制(AUT毕业证书)新西兰奥克兰理工大学毕业证成绩单原版一比一
定制(AUT毕业证书)新西兰奥克兰理工大学毕业证成绩单原版一比一定制(AUT毕业证书)新西兰奥克兰理工大学毕业证成绩单原版一比一
定制(AUT毕业证书)新西兰奥克兰理工大学毕业证成绩单原版一比一
 
定制(Management毕业证书)新加坡管理大学毕业证成绩单原版一比一
定制(Management毕业证书)新加坡管理大学毕业证成绩单原版一比一定制(Management毕业证书)新加坡管理大学毕业证成绩单原版一比一
定制(Management毕业证书)新加坡管理大学毕业证成绩单原版一比一
 
Film cover research (1).pptxsdasdasdasdasdasa
Film cover research (1).pptxsdasdasdasdasdasaFilm cover research (1).pptxsdasdasdasdasdasa
Film cover research (1).pptxsdasdasdasdasdasa
 
Top 10 Interactive Website Design Trends in 2024.pptx
Top 10 Interactive Website Design Trends in 2024.pptxTop 10 Interactive Website Design Trends in 2024.pptx
Top 10 Interactive Website Design Trends in 2024.pptx
 
A Good Girl's Guide to Murder (A Good Girl's Guide to Murder, #1)
A Good Girl's Guide to Murder (A Good Girl's Guide to Murder, #1)A Good Girl's Guide to Murder (A Good Girl's Guide to Murder, #1)
A Good Girl's Guide to Murder (A Good Girl's Guide to Murder, #1)
 
PHP-based rendering of TYPO3 Documentation
PHP-based rendering of TYPO3 DocumentationPHP-based rendering of TYPO3 Documentation
PHP-based rendering of TYPO3 Documentation
 
young call girls in Uttam Nagar🔝 9953056974 🔝 Delhi escort Service
young call girls in Uttam Nagar🔝 9953056974 🔝 Delhi escort Serviceyoung call girls in Uttam Nagar🔝 9953056974 🔝 Delhi escort Service
young call girls in Uttam Nagar🔝 9953056974 🔝 Delhi escort Service
 
Potsdam FH学位证,波茨坦应用技术大学毕业证书1:1制作
Potsdam FH学位证,波茨坦应用技术大学毕业证书1:1制作Potsdam FH学位证,波茨坦应用技术大学毕业证书1:1制作
Potsdam FH学位证,波茨坦应用技术大学毕业证书1:1制作
 
SCM Symposium PPT Format Customer loyalty is predi
SCM Symposium PPT Format Customer loyalty is prediSCM Symposium PPT Format Customer loyalty is predi
SCM Symposium PPT Format Customer loyalty is predi
 
Font Performance - NYC WebPerf Meetup April '24
Font Performance - NYC WebPerf Meetup April '24Font Performance - NYC WebPerf Meetup April '24
Font Performance - NYC WebPerf Meetup April '24
 

Making Security Make Sense to Users and Clients

Editor's Notes

  1. Hello everyone and thanks for coming to my session. I’d like to start off by getting to know you a bit. By a show of hands: How many of you are actively building sites for clients? How many of you are managing those sites on an ongoing basis? OK, great. I created this talk because I have a passion for helping others succeed in their internet businesses. My hope is that you’ll find some useful tips for growing your business and providing extra value to your clients.
  2. Open Source Manager: actively involved in many open source communities. It’s been mostly WP over the past couple of years. FooPlugins: This is a free and premium WP plugin business Security Passion: Because I built a revenue-generating website and lost it all due to a hack.
  3. My goal is to make your job as a web development provider easier while also showing you opportunities for more revenue from your projects.
  4. First I’d like to talk about why securing your own site is a good first step.
  5. Website hack attempts happen all day, every day. Especially important when YOU are the one providing the website building service. Successful attack - directly impact your revenue, tarnish your reputation, and degrade customer loyalty. - Google or browser message saying “this website may be unsafe” or something similar. I’m going to leave that site immediately. And when that happens, I don’t send you a contact, you don’t have the opportunity to give me a proposal and even worse, I’m probably going to associate your brand with a negative thought. “They build websites but theirs is hacked?”
  6. Script: I’d never recommend something to my client that I haven’t used myself. I mean, I wouldn’t do again. (insert sheepish smile). I’ve failed clients because of not performing proper due diligence on the products and services I was referring them to. I’ve since learned my lesson!
  7. Directly related to protecting your reputation. You have many goals as a web development service provider, but first and foremost should be the goal of protecting your business.
  8. Are you actively implementing basic security best practices on the sites you hand over? Let’s talk about why securing your clients sites is important to your immediate and long term business.
  9. Client’s form emailing her credit card numbers. Receiving frantic emails or phone calls from clients that something’s wrong with their site. Inopportune inconvenient times. Our responsibility as their “technical contact” to ensure that we can fix whatever problem they’re experiencing. Spent an entire weekend trying to determine the problem and a fix in. Securing your client’s sites BEFORE the hand off will save you time, money and headaches. And even if securing their site is out of your project scope, - responsibility to AT LEAST educate them and urge them to implement basic security
  10. Whether it’s securing client sites proactively, or giving them the education and tools they need to do it themselves, the end result is YOUR PEACE OF MIND.
  11. Educating your clients (and potential clients) about website security is the right thing to do period. Who’s ultimately responsible for website security? Focusing on security can set yourself apart from the crowd and increase your value and revenue. • Spreading the importance of security (making the internet a safer place) ◦ making client aware that it is their responsibility ◦ opportunity for service benefits, setting yourself apart from the rest ◦ additional revenue, add-on or maintenance packages
  12. When I said that website security was the right thing to do, I was speaking from a global perspective. But just like walking through a dark city alone at night, it’s critical that we all become more aware of our surroundings and the potential threats that lurk in the shadows. Our responsibility as ones who understand how the internet works, to spread as much awareness about security as possible.
  13. The short answer is “all three” but to varying degrees. The long answer is that ultimately, the person responsible for security of a website is that of the website owner. Let’s use an apartment building as an analogy to better understand why that is. Website Developers: We are the ones creating that apartment building. We’re the construction company. It’s our responsibility to ensure that the website structure is solid and meets all the codes. We need to ensure that there’s no exposed wires and that the walls are supported and strong. In other words, making sure that building doesn’t fall down. Web Hosts and Website Owners: The website host is responsible for the security and maintenance of their servers. Like an apartment building superintendent, shared hosting providers are responsible for making sure the building (or the server) is protected and the lobby lock is in working order (global firewalls). The parking lot is safe and secure, etc. Website Owners: As a website owner, the security and maintenance of your website is your responsibility, just like your individual apartment within an apartment complex would be. Your website is a tenant and we’re expected to lock our own doors and windows to prevent intruders.
  14. Educating your clients from the first phone call or email: set yourself apart. Quickly position yourself as an expert and become more valuable to your client. Even if you don’t move forward with a proposal, they know where you stand and will be more likely to come back to you.
  15. Additional revenue opportunities for you and your business. Demanding higher project prices overall (because you’ve positioned yourself as the go-to and recommended resource) Imagine going from a $1,000 minimum project price to $10,000 or $50,000 minimum. Value to your client that they can’t get with anyone else and to communicate that value from the very first contact. Also: residual income - monthly maintenance plan - one time Addon services (like a one time security scan, a one time clean) - affiliate commissions by referring them to the right solution for their needs.
  16. Starts with education.
  17. They tune our or assume they “aren’t technical enough” and make a decision about security options. Break down website security to most basic questions… easier to understand. Thus making it simple to communicate its importance to business owners with concepts and terms more familiar to them.
  18. Why would someone want to hack a website anyway? Defacement - leaving a dumb mark. Cyberattacker might replace your main page with a message of their own. BIGGEST reason: financial gain. As serious as Equifax (with data on 143 million individuals stolen), As mundane as the hack that redirects your site to who knows where using the attackers affiliate ID. Hackers don’t discriminate between the types of sites they attack. - Simple 5 page brochure-type site, it’s still an attractive target can be used as an “open door” for that attacker to spread their malware across - sites on the same shared hosting server and then to visitors of all those sites they compromise.
  19. When we think of hackers, the stereotype is that it’s some angsty anti-social person — overwhelming majority of website attacks and successful hacks are performed by automated bots. Or in other words, MALicious softWARE. How? - Vulnerabilities found at various access points. Access points can include outdated software, passwords and newly discovered vulnerabilities in up-to-date software.
  20. Unfortunately it’s not a question of if or when when a website will experience an attack. Hacking attempts happen all day, every day. As we recently published in our Quarterly Security Report, websites experience an average of 59 attacks per day, which is more than 21,500 per year.
  21. It doesn't show every attack that is going on in the world as that would be impossible, given the sheer number of them happening at any one time, and in any case, your browser wouldn't be able to cope with it and would run out of memory.  But what the map does show is a sample of real-time attacks on Norse's own network infrastructure. The cyber attack map is basically a visual representation of cyber attacks on 8 million 'honey pots' scattered around the world, which the has firm purposely set up in attempt to lure hackers and more commonly, automated tools that attack computer networks and build botnets to carry out further attacks on their behalf.
  22. After you’ve communicated the Why, Who, How and When, it’s time to either start building security into your project proposals and cost, or to continue educating your clients. Or both really :) At the core of a 360 degree website security plan, are these 5 best practices. And the good news is that they’re not at all hard to implement!
  23. Backing up your website files and database is the first and most important step. If you do nothing else, do this. And you should be performing regular backups of your website too…weekly and/or monthly at least. Doing this ensure that if something does go wrong, you’ll have “something” to use to restore your site if all else fails.
  24. Keeping the software that runs your site up-to-date is critical. This includes Joomla! core and extensions… (template, module (widget), component(shopping cart system), plugin(edit core functionality) …and any other software running on your web hosting account. Software updates typically include security patches, and many times new features, bug fixes and compatibility updates – all are good reasons to keep up to date with the latest changes. Reminder: When you receive that email letting you know your site has an update available, run a backup before and after updating ANY software
  25. I know. I know. They’re hard to come up with and even harder to remember! But if you choose one really hard password and just reuse it everywhere, you’ll be fine. I’M KIDDING! Using unique passwords with every website, social account, ANY online account is just as critical (or even more so)! If you’re wondering why, go ahead and load that url, enter a password you reuse for any of your accounts, and see what the result is. Anyone have a result? To make creating strong passwords and using separate strong passwords for your logins, I highly recommend using some type of password manager. LastPass, 1Password, KeyPass or others. But guess what? You still need to come up with and memorize a strong password for your password manager login. At least it’s just one and not 4 dozen!
  26. Two types of firewalls. Network Firewalls and Web Application Firewalls. They are both hardware solutions and software solutions. Your host has a network firewall. These are used to identify and block malicious scripts between individual web servers within their network. Again, protecting the “apartment complex”. Web Application Firewalls are add-on services that the website owner must employ. Again these are hardware/software solutions and their intent is to block malicious scripts and traffic BEFORE it even reaches your web server and attempts to compromise your site. You’d be surprised at the volume of traffic to a typical website that comes from automated bots and scripts. Not only does blocking this traffic make your website safer, it also saves load time and bandwidth on your web hosting account.
  27. If Google detects malware on your site, your visitors will be greeted with an alarming error message, and your site will be removed from search results until it has been cleaned and re-crawled by Google. All too often, this is how website owners discover that their site has malware, and by then, their website has already been infected for days. As you might guess, blacklisting can have a devastating effect on a website’s revenue and reputation. An automated website scanner can monitor your website for potential threats on a daily basis, working in the background while you tend to your business. Some scanners can even automatically remove known malware.
  28. Just like discussing security during the first client contact, including the importance and requirement for security best practices within the project scope can benefit your reputation and that of your business.
  29. Include focus on security along every step in the process professional and a serious business owner. Willing (or even require) this focus on security as a way to ensure the success of site/business
  30. This continues to build trust for your company & brand. Client knows you’re committed to not only building beautiful and functional site, but also to their own success, more apt to consider you a partner in their businesses. And when you’re considered a trusted partner, you have the opportunity to earn more money.
  31. Also ManageWP, SiteLock
  32. Focusing on security from the first contact and then again in your project scope, sets you up to demand a higher price for the initial build. Sets you up to offer ongoing maintenance plans / add-on services.
  33. Do your maintenance plans include just “backups and updates”? Anyone including security? You can easily roll in security under the umbrella of “backups and updates” or call out specific levels of security.
  34. How many of you are offering maintenance plans to your clients? Do these plans include just “backups and updates”? How many of you are including security as part of that plan? Great. And if you’re not, you can easily roll in security under the umbrella of “backups and updates” or call out specific levels of security.
  35. But what happens when a client’s budget simply doesn’t allow for a recurring maintenance plan? You can still offer security as an Addon service in a few ways. Some examples include: One time malware clean up Ongoing monitoring/scanning Web Application Firewall Or even just the setup of these services
  36. Of course, if you are offering monthly maintenance or security services, you’ll want to make sure you still have time in your day to do what you do and not get mired down in the nitty gritty details of either. You’ll also want to make sure that the services you’re providing have a cost benefit for you and that you’re not simply breaking even. In short, you’ll want to automate as much as possible.
  37. SiteLock and others provide reporting tools
  38. The benefits of a presentation summary :)