Recruitment
Recruitment agency websites are simultaneously job boards, candidate acquisition tools, and client-facing credentials pages. Each function has specific technical demands -- and the candidate data they process has serious GDPR implications that the wrong hosting choice makes worse.
CVs, application data, and candidate contact information are personal data under UK GDPR. The ICO has specifically investigated recruitment agencies for GDPR compliance failures. UK data centre hosting keeps candidate data within UK jurisdiction, and we provide Data Processing Agreements for agencies that need them for their own compliance documentation.
WordPress job board plugins (WP Job Manager, Jobify, WooCommerce Jobs) generate complex search queries against large job databases. Slow database response means slow job search -- directly affecting candidate engagement and application rates. Redis object caching and fast NVMe storage keep job search fast.
Recruitment sites receive large numbers of file uploads and form submissions. PHP workers handling simultaneous application submissions, file validation, and database writes need adequate capacity. On shared hosting, application spikes -- after a mass email to candidates, for example -- overwhelm the available workers.
Bullhorn, Workable, Greenhouse, and similar ATS platforms integrate with WordPress via API. These integrations run as background processes or on form submission. Reliable PHP execution time and no shared server throttling ensures job applications reach the ATS without silent failures.
Portals for candidates to manage their profile and for clients to review candidate shortlists are high-value targets for credential stuffing and brute-force attacks. WAF protection and rate limiting at the server level protects these portals without requiring a separate security plugin on every account.
For retained search and executive recruitment firms, the website is a significant credentials document reviewed by senior candidates and clients. A slow or insecure website directly affects the professional impression these firms need to create.
UK
Data centre
99.9%
Uptime SLA
£0
Migration cost
DPA
Available on request
For professional websites
For growing businesses
For high-traffic or ecommerce
For mission-critical operations
Security
Two layers of active protection — server-level and CDN — built in as standard. Not an add-on, not an upgrade.
Enterprise DDoS Protection
Dual-layer defence — our CDN absorbs volumetric attacks at the network edge; server-level protection blocks application-layer threats before they reach WordPress.
Web Application Firewall
Active WAF at both CDN and server level. Blocks SQL injection, XSS, and malicious request patterns automatically, with continuously updated rules.
Real-Time Malware Scanning
Continuous server-wide scanning detects infections the moment they occur. Automatic cleanup included — no extra charge, no waiting for a ticket.
Automated WordPress Hardening
Security settings are enforced automatically across every site: file permissions, wp-config.php lockdown, PHP execution blocked in uploads, XML-RPC disabled, and admin rate limiting — all kept in sync without manual intervention.
Login & Brute Force Protection
Server-level rate limiting on wp-login, automatic IP blocking on repeated failures, and CAPTCHA enforcement. Offending IPs are blocked before they slow your site.
Container Isolation (Enhance CP)
Every site runs in an isolated container. A compromised site cannot affect neighbouring accounts — no shared PHP processes, no shared filesystem access between customers.
IP Reputation & Country Blocking
Continuously updated threat intelligence blocks known malicious IPs at the server level. Country-level restrictions available where appropriate.
Vulnerability Scanning & Patching
Weekly scans across all WordPress installations identify vulnerable plugins, themes, and core files. Bulk update tools apply patches server-wide automatically.
Uptime & Keyword Monitoring
Real-time uptime monitoring with keyword checks — we know if your site goes down or serves unexpected content before your customers do.
All security features included on every plan — no add-ons, no upgrades required.
Full Security Overview →