Wordpress and PHP both have inherited vulnerabilities that help intruders. And When you add extensions, it adds. For Security, only Host can not do any thing.
Either, you make a penetration testing from some reasonable security company, and you will get save from 99% of amateur attacks.
Or make your Wordpress installation always updated, and use as less extensions as possible.
Its better to use some backup plugin, and keep on taking daily automatic backups. So In any such case you can instanlty bring your site back to life.
I am using http://me.wisnetsol.com for last 3 years, and never get hacked.