Your WordPress secure, monitored and backed up - so your business keeps running.
Zento is a Peru-based managed WordPress security service: prevention, continuous monitoring and incident response, with a technical report for every intervention.
No strings attached. We reply within one business day.
The risk isn't theoretical
- ~42%
- of all websites run on WordPress - making it the most attacked CMS on the planet.Source: W3Techs
- 91%
- of new WordPress vulnerabilities are in plugins, not the core: updating alone isn't enough.Source: Patchstack
- +54billion
- malicious requests against WordPress sites were blocked by Wordfence in 2024 alone: the attacks are bots - no site is "too small".Source: Wordfence
- 96%
- of ransomware victims (where company size is known) are small and mid-sized businesses.Source: Verizon DBIR
What we do
Three one-off services to solve today's problem. If you want to make sure it doesn't come back, that's what the plans are for.
Hacked site recovery
We clean your site, get it off Google's blocklists and hand you evidence of the cleanup.
See details→Security audit
We go through your WordPress top to bottom and tell you what's fine, what's at risk and how to fix it - in writing.
See details→WordPress hardening
We harden access, permissions and configuration so attacking your site costs more than it’s worth.
See details→Managed security, monthly
So maintenance and monitoring don't depend on anyone remembering. No hidden pricing: we quote based on your site. No lock-in.
Basic
The essentials, managed.
- Continuous uptime and malware monitoring
- Daily backups stored outside your hosting
- Monthly updates - critical patches as soon as they're out
- Monthly report
Pro
Active prevention for sites that sell.
- Everything in Basic, with weekly updates
- Managed WAF
- Incident response included, no event limit
- Response in under 4 business hours
Business
Maximum coverage, top response priority.
- Everything in Pro, with backups every 6 hours
- Quarterly security review
- Response in under 2 business hours
- Direct support channel
How we work
The same process every time, with deliverables at every stage. No surprises.
- 01
Assessment
We assess the real state of your site: versions, access, known vulnerabilities, backups. Then we tell you what we found, in plain language.
- 02
Proposal
We propose only what your site needs, with the scope, timelines and deliverables in writing.
- 03
Execution
We do the work, coordinating change windows with you. Your site doesn't go down on our watch.
- 04
Report
You close with a technical report of what was done, backed by evidence. Every intervention, every time.
Commitments, not promises
We don't have client logos to show yet - and we're not going to invent them. Here's what we can commit to, in writing:
A technical report for every intervention
Every job ends in a document: what was found, what was done, and the evidence behind it.
Defined response times
Every plan puts our response time in writing. If we miss it, you'll know - because it's on the record.
No lock-in
Plans are month to month. You stay because it works, not because a contract makes you.
Your data, protected by law
We process your personal data under Peru's Data Protection Law (Law 29733) and tell you exactly what we use it for.
This site is the demo
zento.pe runs the same security headers we configure for our clients.Check it on securityheaders.com →
Frequently asked questions
Do you work with my hosting provider?
Yes. We work on any hosting that gives us access to the site (control panel, SFTP or SSH). If your hosting is part of the problem - it happens more often than you’d think - we tell you so with evidence and help you migrate safely.
How long does it take to clean a hacked site?
It depends on the scope of the infection. A typical case takes 24 to 72 hours from the moment we have access; after the diagnosis you get a concrete estimate, and we let you know if anything changes it.
What if I get hacked again?
A serious cleanup doesn't just delete the malware: it identifies and closes the entry point, and documents it in the report. Every recovery also includes a 30-day guarantee: if the same infection comes back, we clean it again at no cost. Still, security is a process, not an event - that's what the plans are for, with continuous monitoring and response included.
Do I need to be technical to work with you?
No. Our reports explain everything in plain language, and we translate technical decisions into what actually matters: risk, cost and the continuity of your business.
Is there a minimum contract?
No. Plans are billed month to month and you can cancel anytime.
Why only WordPress?
Because specialization shows. WordPress powers over 40% of the web and has its own ecosystem of plugins, themes and vulnerabilities. Focusing on it alone lets us know it at a depth a generalist IT service can’t reach.
Let's start by finding out how your site is doing.
Tell us what you need - an assessment, a quote or a second opinion - and we'll get back to you within one business day.
Is your site hacked right now? Message us directly on WhatsApp - it's faster.