You should first consider how you want to secure the RDP connection. You could setup a VPN connection, you could lock down ports on the firewall to only certain IP addresses, you could add MFA to prevent brute force password attacks, etc.

