Personal Web Server has major security flaws. If you have a small business, consider putting nothing important on the server for fear of hacking/thrashing, etc.
A good firewall (ZoneAlarm would be fine) should be installed if you plan to give out the IP address. I have been port scanned by unknown places plenty of times (many diff. countries), but my firewall/router works to help prevent people from getting in.
vash