You could try using a route map with your static NAT but I am not sure you can use it for port forwarding.
That said you should not rely on NAT for security which is what you are trying to do here.
You should be using acls on the WAN interface to restrict which IPs can connect your services.
Jon