So sorry, but here are a few additional tips to keep your hot wallet more secure in the feature:
1. Never store your private key or json file on google drive or any other cloud storage
2. Never use your gmail account password as your wallet account.
3. Bookmark your wallet address on your prefered browser on your device. Never click on hot links to your wallet address from untrested sources such as emails and other webpages
4. Avoid bounty campaigns and airdrops that asks you to verify your wallet address via direct link. You might be phished.
5. It is safer to check your token balance via etherscan.io and not by logging into your wallet often. You might compromise your security in the process
6. Never root your android device if you use one. Doing so would render most google security features ineffective.
Nevertheless, no measure is as safe as using a hard wallet such as Trezor.
You don't need to do that, just visit mycrypto.com and then tries to dowload the offline client and you can create an offline transaction through use it. It's not safe anymore to use the online wallet such as MEW and i have no any problem by used mycrypto offline client to open or send my money to others. Trezor is safe but it will cost you more and nano ledger is the worst hardware wallet ever.