Ensure root password is secure, change SSH port from default 22, configure some iptables rules (or use a firewall like CSF), and ensuring installed software is up to date are just a few basic measures you should always take with any server.
Now if you are running a website on your server, look...