Harden an application or service against attack — defense-in-depth at the config, deploy, and runtime layer (security headers, TLS, least-privilege, safe defaults, attack-surface reduction). Use when hardening a deployment, reviewing infra/config security, or turning audit findings into systemic defenses.