- Installing a firewall.
- Lock down non-essential ports.
- Set a strong password, consider disabling password root logins in favour of SSH-key access only.
- Configure your webserver (Apache/LiteSpeed/Nginx) and PHP appropriately.
- Update your kernel and all RPMs.