In the set up guide, Sebastian recommends protecting the private key.
What's your preferred way to protect it? Filevault? (I don't normally do this.)
Basically if you have a strong passphrase on the private key you're good to go. I recommend enabling Filevault on OSX to encrypt all the hard drive.