Welcome to

WordPress Security (Plugins) Compared

Made with love by David B Hayes and WPShout

Plugin/Service Name Quick Assessment Lowest Cost Likely Monthly Spend WAF Malware Scan Block Brute Force File Integrity Audit Log Hardening Help 2-Factor Auth Smart IP Blocking Backups
Wordfence Solid, reasonably priced exactly-what you'd expect security plugin FREE $8.25 YES, paid YES YES YES YES no YES, paid YES no
iThemes Security Solid plugin for best practice enforcement and some endpoint WAF FREE $8 no YES, blackbox YES YES YES YES YES YES local only
Sucuri Solid free awareness plugin, pay more for remediation help and WAF FREE $25 YES, paid YES YES, paid YES YES no no YES no
All in One WP Security So many features, and amazing that they're all free. But too many features, and cumbersome to setup FREE FREE no no YES YES no YES no YES no
Jetpack/VaultPress Everything plugin with some great security features included FREE $15 no YES, paid YES no no no YES YESish YES, paid
Cloudflare Great free DDOS protection, solid WAF option at $20. Not WordPress-specific FREE $20 YES, paid no YESish no no no no YES no
SiteLock Solid but spend malware scanner and WAF FREE $40 YES, paid YES YES YES no no no YES no
WP Defender (WPMU) Solid plugin, but at $49/month for paid features (because you can't get just this plugin) is too much FREE $50 no YES YES YES YES, paid YES YES, paid YES no
SecuPress Buggy but beautiful little security plugin for a low price FREE $5 no YES, paid YES no no YES YES YES local only
WP Security Audit Log Great logs of everything that happens on your site FREE $8 no no no YES YES, paid no no no no
Limit Login Attempts Old reliable and ad-free version of what it says it does FREE FREE no no YES no no no no YES, on failed login no
Check out WordPress Security with Confidence, which started this whole thing.