Cost & Pricing

Managed IT Support Pricing

How much should managed IT support cost in Scotland?

Managed IT support in Scotland typically costs £35–£60 per user per month for businesses with 10–100 employees. Most managed IT services include unlimited support, Microsoft 365 management, cybersecurity protection, device monitoring, patch management, and strategic IT planning. A 25-person business can expect to invest around £875–£1,500 per month, while a 50-person business may budget £1,750–£3,000 per month, depending on support and security requirements.

How much does managed IT support cost for a 10-person business?

A 10-person business in Scotland should typically budget £350–£600 per month for managed IT support. Most MSPs charge between £35 and £60 per user per month, which usually includes unlimited IT support, Microsoft 365 administration, cybersecurity protection, device monitoring, patch management, and strategic IT advice. The exact cost depends on your security requirements, infrastructure, and support needs.

How much does managed IT support cost for a 50-person business?

For a business with 50 employees, managed IT support typically costs between £1,750 and £3,000 per month in Scotland. This investment usually covers day-to-day IT support, Microsoft 365 management, cybersecurity protection, proactive monitoring, patch management, and strategic technology planning. While pricing varies depending on your infrastructure and security requirements, most growing businesses find that proactive managed IT support costs significantly less than the downtime, productivity loss, and cyber risks associated with reactive IT support.

How much does managed IT support cost for a 100-person business?

A 100-person business in Scotland should typically budget £3,500–£6,000 per month for managed IT support. Most MSPs charge between £35 and £60 per user per month, which usually includes unlimited IT support, Microsoft 365 management, cybersecurity protection, device monitoring, patch management, backup oversight, and strategic IT planning. Organisations with multiple sites, compliance requirements, or advanced cybersecurity needs may require additional services and investment.

What is included in managed IT support pricing?

Most managed IT support packages include unlimited IT support, Microsoft 365 management, device monitoring, cybersecurity protection, software updates, user administration, backup oversight, and proactive maintenance. Many MSPs also provide strategic IT planning and vendor management. Before comparing providers, always ask whether project work, Microsoft licences, cybersecurity tools, onsite support, and backup services are included or charged separately.

What's not included in managed IT support pricing?

Most managed IT support agreements do not include hardware purchases, Microsoft licensing, major projects, cloud migration work, office moves, internet connectivity costs, or third-party software subscriptions. Some providers may also charge extra for advanced cybersecurity services, onsite support, after-hours work, or strategic consultancy. Understanding these exclusions upfront helps avoid unexpected costs and makes it easier to compare IT support providers fairly.

Why do MSP pricing models vary so much?

Managed IT support pricing can vary significantly because not all MSPs offer the same services. Factors that influence cost include the level of cybersecurity protection, support availability, Microsoft 365 management, backup services, response time commitments, compliance requirements, and strategic IT planning. A lower-cost provider may offer basic support only, while a higher-value MSP may include proactive monitoring, advanced security, and strategic guidance designed to reduce downtime and business risk.

Is unlimited IT support really unlimited?

Many managed service providers offer unlimited IT support, but "unlimited" does not always mean everything is included. Typically, unlimited support covers day-to-day helpdesk requests, troubleshooting, Microsoft 365 administration, user support, and proactive maintenance. Larger projects such as cloud migrations, office relocations, infrastructure upgrades, or new technology deployments are often quoted separately. Before signing an agreement, ask your MSP to clearly define what is covered and what may incur additional charges.

What hidden costs should we watch for when comparing MSPs?

Many businesses focus on the monthly per-user price when comparing MSPs, but hidden costs can significantly affect the total investment. Common examples include Microsoft licensing, backup and disaster recovery services, advanced cybersecurity tools, project work, office relocations, new user setup fees, cloud migrations, and hardware replacement costs. The best MSPs are transparent about these charges upfront and provide a clear scope of services so there are no unexpected surprises later.

What is the average monthly IT budget for an SME?

The average monthly IT budget for an SME depends on its size, industry, and cybersecurity requirements. As a guide, many Scottish businesses with 10–100 employees invest between 3% and 6% of annual revenue in technology. This typically includes managed IT support, Microsoft 365 licensing, cybersecurity protection, hardware replacement, backups, and cloud services. For many SMEs, total IT spending ranges from £1,000 to £6,000+ per month, depending on the complexity of their environment.

How much should a nonprofit budget for IT support and cybersecurity?

Most nonprofits and charities in Scotland should budget between £35 and £60 per user per month for managed IT support, plus Microsoft 365 licensing and cybersecurity services. For example, a charity with 20 employees may invest between £700 and £1,200 per month in managed IT support, while a 50-person organisation may budget £1,750 to £3,000 per month. The right budget depends on your cybersecurity requirements, compliance obligations, remote working needs, and the level of support required.

How much should a law firm budget for IT support?

Law firms typically invest more heavily in cybersecurity than many other SMEs because they handle confidential client information and sensitive legal documents. As a guide, most Scottish law firms should budget £35–£60 per user per month for managed IT support, plus Microsoft 365 licensing and cybersecurity services. A proactive IT strategy can help reduce downtime, improve client data protection, support compliance requirements, and minimise the risk of costly cyber incidents.

How much should an accounting firm budget for IT support?

Accounting firms handle sensitive financial and personal information, making reliable IT support and cybersecurity essential. As a guide, most accountancy practices should budget £35–£60 per user per month for managed IT services, including helpdesk support, Microsoft 365 management, cybersecurity protection, device monitoring, and backup oversight. Investing in proactive IT support can help reduce downtime, protect client data, and support productivity during critical periods such as tax deadlines, payroll processing, and year-end reporting.

How much should a manufacturing company budget for IT support?

Manufacturing businesses often rely heavily on technology to support production, logistics, inventory management, and customer service. As a guide, most manufacturers should budget £35–£60 per user per month for managed IT support, including helpdesk services, Microsoft 365 management, cybersecurity protection, device monitoring, backups, and proactive maintenance. Investing in reliable IT support can help reduce costly downtime, improve cybersecurity, and keep operations running efficiently.

Cybersecurity Costs

How much should cybersecurity cost for a small business?

Cybersecurity costs for a small business typically range from £10–£30 per user per month, depending on the level of protection required. For a 25-person business, this could equate to £250–£750 per month for services such as endpoint protection, email security, Multi-Factor Authentication, security awareness training, backup monitoring, and threat detection. For most SMEs, investing in proactive cybersecurity is significantly less expensive than recovering from a cyberattack, ransomware incident, or data breach.

How much does Cyber Essentials certification cost?

Most SMEs can expect to pay £450–£700+ VAT for Cyber Essentials certification. The certification fee covers the assessment itself, but businesses may also need to budget for cybersecurity improvements if they do not already meet the required standards. Common requirements include Multi-Factor Authentication, secure device configuration, user access controls, malware protection, and regular security updates.

How much does ransomware recovery typically cost?

The cost of recovering from a ransomware attack varies significantly, but many SMEs face recovery costs ranging from £5,000 to £50,000+ when downtime, lost productivity, incident response, system restoration, and business disruption are taken into account. Organisations with strong backups, Multi-Factor Authentication, and proactive cybersecurity measures can often recover faster and at a much lower cost than businesses without these protections in place

What is the cost of a data breach for an SME?

The cost of a data breach for an SME can range from a few thousand pounds to tens of thousands of pounds, depending on the severity of the incident. Costs may include business downtime, IT recovery services, legal and compliance support, regulatory investigations, customer notifications, reputational damage, and lost productivity. For many businesses, the indirect costs of disruption and lost trust can exceed the direct cost of recovering systems.

How much should a business spend on Microsoft 365 security?

The amount a business should spend on Microsoft 365 security depends on the level of protection required, but many SMEs invest £5–£20 per user per month on security features and management. This typically includes Multi-Factor Authentication (MFA), Microsoft Defender, device management through Intune, email protection, security monitoring, and data loss prevention controls. Investing in Microsoft 365 security can significantly reduce the risk of phishing attacks, account compromise, ransomware, and data breaches.

Problems & Concerns

IT Support Problems

Why is our IT support provider so slow to respond?

There are several reasons why an IT support provider may be slow to respond, including insufficient staffing, unclear service level agreements (SLAs), high ticket volumes, or a reactive approach to support. Modern managed service providers should proactively monitor systems, prioritise critical issues, and provide clear response time commitments. If recurring problems are taking too long to resolve, it may be a sign that your current IT support arrangement is no longer meeting your business needs.

Why do the same IT problems keep happening?

Recurring IT problems are usually a sign that your technology environment is being maintained reactively rather than proactively. Common causes include ageing devices, unresolved infrastructure issues, poor patch management, inadequate monitoring, or a lack of strategic IT planning. A good managed service provider should investigate root causes, implement long-term solutions, and continuously improve your IT environment to reduce recurring disruptions and downtime.

Why is our business constantly experiencing IT downtime?

If your business is constantly experiencing IT downtime, it may be a sign that your technology environment is no longer being managed effectively. Common causes include ageing devices, server or network issues, poor patch management, cybersecurity incidents, inadequate backups, or a lack of strategic planning. A proactive managed IT service can identify and address these issues before they impact productivity, helping employees stay productive and systems remain available.

What are the warning signs that we've outgrown our MSP?

Your business may have outgrown its MSP if IT issues take too long to resolve, the same problems keep recurring, cybersecurity is not being proactively managed, or technology decisions are being made without strategic guidance. Growing businesses often need more than basic helpdesk support—they need a partner that can provide technology planning, cybersecurity expertise, Microsoft 365 optimisation, and advice aligned with business goals.

Why does our IT support cost keep increasing?

Your IT support costs may be increasing because your business is becoming more reliant on technology, cybersecurity requirements are growing, Microsoft licensing costs have risen, or your support needs have changed. Reputable MSPs should be transparent about pricing changes and clearly explain the additional services, security protections, or business benefits being provided. If costs are increasing but service levels are not improving, it may be worth reviewing alternative providers.

What should we expect from a modern MSP?

A modern MSP should do more than simply fix IT problems. Businesses should expect proactive monitoring, cybersecurity protection, Microsoft 365 management, fast helpdesk support, backup and disaster recovery services, regular technology reviews, and strategic IT planning. The best MSPs act as a trusted technology partner, helping reduce downtime, improve security, support growth, and ensure technology aligns with business objectives.

Cybersecurity Problems

What are the most common cybersecurity mistakes made by Scottish SMEs?

The most common cybersecurity mistakes made by SMEs include weak password policies, lack of Multi-Factor Authentication, inadequate backups, poor user awareness training, delayed software updates, and insufficient monitoring of business systems. Many organisations also underestimate the importance of Microsoft 365 security and endpoint protection. Addressing these basic security controls can significantly reduce the likelihood of a successful cyberattack.

What cybersecurity protections does a 50-person business actually need?

Most 50-person businesses do not need enterprise-level security tools, but they do need a strong cybersecurity foundation. This typically includes Multi-Factor Authentication, Microsoft 365 security controls, endpoint detection and response (EDR), email filtering, backup and disaster recovery, user security training, device management, and regular security reviews. Together, these measures significantly reduce cyber risk while remaining practical and cost-effective for growing organisations.

How vulnerable is our business to ransomware?

Every business is a potential ransomware target, regardless of size or industry. Your vulnerability depends on factors such as whether Multi-Factor Authentication is enabled, how well devices are patched, the quality of your backups, employee security awareness, and the strength of your cybersecurity monitoring. Businesses that implement Cyber Essentials controls, maintain secure backups, and proactively manage cybersecurity can significantly reduce their exposure to ransomware attacks.

How do cybercriminals typically target small businesses?

Most cyberattacks against small businesses begin with phishing emails, stolen passwords, or compromised user accounts. Cybercriminals often exploit weak security controls, outdated software, poor password practices, and a lack of employee awareness. Common attack methods include ransomware, business email compromise, credential theft, and malicious links or attachments. Implementing Cyber Essentials controls and a layered cybersecurity strategy can help protect against the majority of common threats.

How can we tell if our Microsoft 365 environment is secure?

One of the best ways to assess Microsoft 365 security is to review whether key controls are enabled, including Multi-Factor Authentication, conditional access policies, Microsoft Defender, device management, secure sharing settings, and user activity monitoring. Many organisations discover security gaps during a Microsoft 365 review because default settings do not always provide the level of protection required for modern cyber threats. Regular security assessments help ensure your environment remains secure as your business grows.

How often should cybersecurity training be delivered?

Most cybersecurity experts recommend providing formal cybersecurity awareness training at least once per year, supported by regular phishing simulations and ongoing security reminders. Because cyber threats constantly change, businesses that deliver quarterly or monthly training updates often see better results than those relying on annual training alone. Well-informed employees are one of the most effective defences against phishing, ransomware, and business email compromise attacks.

What happens if our business suffers a cyberattack?

A cyberattack can affect your business in several ways, including system outages, ransomware encryption, data breaches, financial loss, and operational disruption. Recovery may involve restoring data from backups, investigating the cause of the attack, notifying affected parties, and strengthening security controls to prevent future incidents. Having proactive cybersecurity measures, secure backups, and an incident response plan in place can significantly reduce both the impact and recovery time.

Microsoft 365 Problems

Why is Microsoft 365 running slowly?

Slow Microsoft 365 performance is often caused by factors such as unreliable internet connections, outdated laptops, oversized Outlook mailboxes, OneDrive sync issues, device resource limitations, or misconfigured Microsoft 365 settings. Businesses experiencing ongoing performance problems should review both their Microsoft 365 configuration and the underlying IT infrastructure to identify the root cause and improve user productivity.

Why are employees not using Microsoft Teams effectively?

Microsoft Teams adoption challenges are usually caused by people and process issues rather than technology problems. Employees may not understand when to use Teams instead of email, how to organise files effectively, or how to collaborate within channels. Businesses that provide user training, establish clear governance policies, and integrate Teams into daily workflows typically achieve higher adoption rates and greater productivity benefits.

Why is SharePoint difficult to manage?

SharePoint can become difficult to manage when document libraries, permissions, Teams integration, and file structures are not properly planned from the outset. Common challenges include duplicate files, inconsistent access controls, poor governance, and a lack of user training. Businesses that establish clear governance policies, document management standards, and user adoption programmes typically find SharePoint much easier to manage and more effective as a collaboration platform.

Why are our Microsoft 365 costs increasing?

Microsoft 365 costs often increase as businesses grow, add users, adopt new security tools, or move to higher-tier licence plans. Microsoft also periodically adjusts licensing prices and introduces new features that may affect subscription costs. Conducting regular Microsoft 365 licence and security reviews can help identify unused licences, optimise spending, and ensure you're receiving value from your investment.

Comparisons

MSP Comparisons

Internal IT Manager vs Outsourced IT Support: Which is Better?

Neither option is always better—it depends on your business size, budget, and requirements. An internal IT manager can provide dedicated, on-site support but often comes at a significantly higher cost. Outsourced IT support gives businesses access to a team of specialists covering helpdesk support, cybersecurity, Microsoft 365, infrastructure, and strategic planning for a predictable monthly fee. For many organisations with 10–100 employees, outsourced IT support provides broader expertise and better value.

Managed IT Services vs Break-Fix IT Support

The main difference between managed IT services and break-fix IT support is that managed services are proactive, while break-fix support is reactive. With managed IT services, systems are continuously monitored, maintained, and secured to prevent issues before they affect the business. Break-fix providers typically only become involved after a problem occurs. For most growing businesses, managed IT services offer greater reliability, improved cybersecurity, and lower long-term business risk.

Local MSP vs National MSP

When comparing a local MSP to a national provider, businesses should focus on service quality rather than company size. Local MSPs often deliver more personalised support, greater accountability, and a better understanding of regional business challenges. National MSPs may have larger support teams and wider geographic coverage. The best choice is a provider that can deliver reliable support, strong cybersecurity, Microsoft 365 expertise, and strategic IT guidance aligned with your business goals.

In-House IT Team vs Managed Service Provider

The choice between an in-house IT team and a Managed Service Provider depends on your business size, budget, and technology requirements. In-house teams can provide close day-to-day support but may have limited expertise across specialist areas. MSPs provide access to multiple IT disciplines, proactive monitoring, cybersecurity management, Microsoft 365 expertise, and strategic guidance for a fixed monthly cost. Many SMEs find that an MSP delivers greater coverage and resilience without the expense of hiring multiple internal IT specialists.

Co-Managed IT vs Fully Managed IT

The main difference between co-managed IT and fully managed IT is who takes primary responsibility for your technology environment. In a co-managed model, your internal IT team works alongside an MSP to access specialist skills, cybersecurity expertise, proactive monitoring, and strategic guidance. In a fully managed model, the MSP provides complete IT support, management, and strategic oversight. The right approach depends on the size of your internal team, your business goals, and the level of support required.

Microsoft Comparisons

Microsoft 365 Business Premium vs E5

Microsoft 365 Business Premium is the preferred choice for many SMEs because it combines productivity tools with advanced security features such as Microsoft Defender and Intune at a lower cost than E5. Microsoft 365 E5 includes enhanced threat protection, advanced compliance capabilities, security analytics, and Microsoft Teams Phone features, making it more suitable for larger organisations or businesses with strict compliance requirements. For most organisations with 10–100 employees, Business Premium delivers excellent value and strong security.

SharePoint vs Traditional File Server

The main difference between SharePoint and a traditional file server is that SharePoint is designed for cloud-based collaboration, while file servers were built for office-based access to files. SharePoint enables secure access from anywhere, automatic version history, document sharing, and integration with Microsoft Teams. Traditional file servers can still be effective for certain workloads, but many organisations are moving to SharePoint to improve productivity, support remote working, and reduce infrastructure costs.

Teams vs Zoom

The choice between Microsoft Teams and Zoom depends on how your business collaborates. Microsoft Teams offers a complete collaboration platform that includes chat, video meetings, document sharing, and integration with Microsoft 365 applications. Zoom specialises in video conferencing and is widely recognised for its ease of use and webinar capabilities. Businesses already invested in Microsoft 365 often find Teams more cost-effective because it reduces the need for additional collaboration tools.

OneDrive vs Dropbox

The main difference between OneDrive and Dropbox is ecosystem integration. OneDrive is tightly integrated with Microsoft 365, allowing users to collaborate on documents in real time, securely share files, and access content through Teams and SharePoint. Dropbox offers strong file synchronisation and sharing features, but businesses already investing in Microsoft 365 can often reduce costs and simplify management by standardising on OneDrive. The best choice depends on your existing technology stack and collaboration requirements.

Microsoft Defender vs Traditional Antivirus

The main difference between Microsoft Defender and traditional antivirus is that Defender is designed to protect against modern cyber threats, not just viruses. In addition to malware detection, Microsoft Defender can identify suspicious behaviour, ransomware activity, phishing threats, and compromised devices. Traditional antivirus remains useful, but many organisations are moving to endpoint detection and response (EDR) solutions such as Microsoft Defender to improve visibility and strengthen cybersecurity.

Security Comparisons

Cyber Essentials vs Cyber Essentials Plus

The main difference between Cyber Essentials and Cyber Essentials Plus is the level of verification. Cyber Essentials involves completing a self-assessment questionnaire that is reviewed by a certification body, while Cyber Essentials Plus includes hands-on testing of devices, user accounts, and security controls by an independent assessor. Both certifications demonstrate a commitment to cybersecurity, but Cyber Essentials Plus provides a higher level of assurance and is often preferred by organisations handling sensitive data or bidding for larger contracts.

MFA vs Password-Only Security

The main difference between MFA and password-only security is that MFA requires users to verify their identity using a second factor in addition to their password. While passwords can be stolen through phishing, reused across multiple accounts, or cracked by attackers, MFA provides an additional layer of protection that significantly reduces the risk of account compromise. For most businesses, enabling MFA is one of the simplest and most effective cybersecurity improvements available.

Cloud Backup vs On-Premise Backup

The main difference between cloud backup and on-premise backup is where your data is stored. Cloud backups are held in secure offsite data centres and can be accessed even if your office, server, or network is unavailable. On-premise backups remain within your business environment and can provide faster local recovery but may be vulnerable to ransomware, theft, hardware failure, or site-wide incidents. Many organisations adopt a hybrid backup strategy that combines local and cloud backups for maximum resilience.

Microsoft Defender vs Third-Party Endpoint Protection

The choice between Microsoft Defender and third-party endpoint protection depends on your business requirements. Microsoft Defender offers modern endpoint detection and response (EDR), threat protection, vulnerability management, and seamless integration with Microsoft 365 security tools. Third-party products may provide additional reporting, industry-specific features, or support for mixed technology environments. For most organisations using Microsoft 365 Business Premium, Defender delivers strong security, simplified management, and excellent value.

Best-In-Class

IT Support

What is the best IT support solution for a growing business?

The right IT support solution depends on your business size and requirements, but most growing organisations benefit from a managed IT service that includes proactive monitoring, fast helpdesk support, cybersecurity management, Microsoft 365 expertise, backup protection, and strategic technology guidance. Businesses with 10–100 employees often find that managed IT services provide broader expertise, better security, and more predictable costs than reactive or break-fix support models.

What should we look for in an MSP?

A good MSP should provide proactive monitoring, cybersecurity protection, Microsoft 365 management, backup and disaster recovery services, strategic technology guidance, and responsive support. When comparing providers, ask about response times, cybersecurity capabilities, industry experience, escalation processes, and what's included in the monthly fee. The right MSP should act as a long-term technology partner rather than simply a helpdesk provider.

What should law firms look for in a cybersecurity-focused MSP?

When selecting a cybersecurity-focused MSP, law firms should evaluate the provider's experience with legal sector requirements, cybersecurity certifications, Microsoft 365 security capabilities, ransomware protection, backup and recovery processes, and incident response expertise. Fast response times, proactive monitoring, employee security training, and strategic cybersecurity guidance are also essential. A good MSP should help reduce risk while ensuring lawyers can work securely and efficiently from any location.

What should housing associations look for in an IT provider?

When evaluating an IT provider, housing associations should consider cybersecurity capabilities, response times, Microsoft 365 expertise, business continuity planning, compliance support, and experience managing sensitive data. A good IT partner should provide proactive monitoring, secure remote working solutions, backup and disaster recovery services, and strategic technology guidance that helps improve operational efficiency while protecting tenants, employees, and organisational data.

What should nonprofits look for when choosing an MSP?

When choosing an MSP, nonprofits should evaluate the provider's experience supporting charities, cybersecurity capabilities, Microsoft 365 knowledge, response times, backup and disaster recovery services, and understanding of nonprofit funding constraints. A good MSP should help protect donor and beneficiary data, improve operational efficiency, support hybrid working, and provide strategic technology advice that aligns with the organisation's mission and goals.

What should manufacturers look for in an IT partner?

When choosing an IT partner, manufacturers should evaluate cybersecurity capabilities, business continuity planning, Microsoft 365 expertise, infrastructure management, and experience supporting production-critical systems. A good IT provider should help reduce downtime, secure sensitive business data, support remote and site-based workers, and provide strategic technology guidance that improves operational efficiency and resilience.

Cybersecurity

What are the best cybersecurity protections for SMEs?

Most SMEs do not need enterprise-level security tools, but they do need a strong cybersecurity foundation. Essential protections include Multi-Factor Authentication, endpoint detection and response (EDR), Microsoft 365 security controls, email filtering, vulnerability management, secure backups, user awareness training, and regular security reviews. Businesses that implement these core controls can significantly reduce their exposure to cyber threats while maintaining productivity and operational resilience.

What are the best ways to prevent ransomware?

Ransomware prevention starts with strong cybersecurity fundamentals. Businesses should implement Multi-Factor Authentication, endpoint detection and response (EDR), email filtering, regular patch management, secure backups, employee security awareness training, and proactive monitoring. Following frameworks such as Cyber Essentials can help organisations reduce their exposure to common attack methods and improve their ability to recover if an incident occurs.

What are the best Microsoft 365 security features?

The best Microsoft 365 security features for SMEs are Multi-Factor Authentication, Microsoft Defender for Business, Conditional Access policies, Intune device management, anti-phishing protection, secure email filtering, and Data Loss Prevention controls. When properly configured, these features provide a strong cybersecurity foundation that helps protect users, devices, data, and business systems from modern cyber threats.

What are the best backup solutions for small businesses?

There is no single best backup solution for every business, but the most effective strategies typically include cloud backups, local backups, immutable backup storage, and Microsoft 365 data protection. Businesses should look for solutions that automate backups, encrypt data, provide rapid recovery options, and protect against ransomware attacks. A well-designed backup strategy is a critical part of business continuity and cybersecurity planning.

Reviews & Alternatives

MSP Reviews

What should business leaders ask during an MSP review meeting?

An effective MSP review meeting should cover key areas such as service performance, cybersecurity posture, backup and disaster recovery readiness, Microsoft 365 security, user satisfaction, infrastructure health, and future technology priorities. Business leaders should ask what risks exist, what improvements are recommended, how downtime can be reduced, and whether the current IT strategy aligns with the organisation's goals. The best MSPs use review meetings to provide strategic guidance, not just operational updates.

How do you evaluate an IT support provider?

When evaluating an IT support provider, consider factors such as service level agreements (SLAs), cybersecurity capabilities, Microsoft 365 expertise, customer satisfaction, backup and disaster recovery processes, proactive monitoring, and strategic IT planning. Ask how they measure performance, handle security incidents, and support business growth. The best providers act as trusted advisors, helping organisations improve productivity, reduce risk, and make better technology decisions.

What questions should we ask before switching MSPs?

When evaluating a new MSP, businesses should ask how support requests are handled, what cybersecurity protections are included, how data and systems will be migrated, what service level agreements (SLAs) are provided, and how success is measured. It's also important to understand the provider's experience, strategic planning capabilities, and approach to reducing downtime and business risk. A smooth transition and clear communication are just as important as technical expertise.

What should we expect during an MSP onboarding process?

During an MSP onboarding process, your new provider should review your infrastructure, security controls, Microsoft 365 environment, backups, network configuration, and existing documentation. They should establish monitoring and support systems, meet key stakeholders, identify risks, and create a roadmap for future improvements. A well-managed onboarding process should improve visibility, strengthen security, and ensure a seamless transition with minimal impact on users.

Product Reviews

Is Microsoft 365 Business Premium worth it?

Microsoft 365 Business Premium is widely regarded as one of the best-value business technology subscriptions available. It combines productivity tools, collaboration features, device management, and enterprise-grade security into a single platform. For many SMEs, the security capabilities alone can justify the cost by helping reduce the risk of ransomware, phishing attacks, account compromise, and data breaches. Businesses already using Microsoft 365 often find Business Premium delivers significant value compared to purchasing separate security and management tools.

Is Cyber Essentials worth it?

Cyber Essentials is one of the most cost-effective cybersecurity certifications available to UK organisations. It focuses on practical security controls such as Multi-Factor Authentication, secure device configuration, access management, malware protection, and software updates. While certification alone does not guarantee security, businesses that implement Cyber Essentials controls can significantly reduce their exposure to common threats such as phishing, ransomware, and account compromise. For many organisations, the security improvements and commercial benefits outweigh the certification cost.

Is Microsoft Copilot worth it for SMEs?

Microsoft Copilot can deliver substantial productivity benefits for SMEs by helping users draft emails, summarise meetings, analyse spreadsheets, generate reports, and find information across Microsoft 365. Businesses that rely heavily on Outlook, Teams, Word, Excel, and SharePoint often see the greatest value. While Copilot represents an additional licensing cost, many organisations find the time savings and efficiency improvements justify the investment when deployed to the right users.

Is SharePoint worth replacing a file server?

SharePoint can be an excellent alternative to a traditional file server for businesses that want greater flexibility, collaboration, and security. It allows employees to access files from anywhere, collaborate in real time, track document versions, and securely share information with colleagues and external partners. However, before replacing a file server, organisations should assess application compatibility, file structure requirements, data volumes, and security policies to ensure SharePoint is the right fit for their environment.

Is Intune worth implementing for a 50-person business?

Microsoft Intune provides significant value for businesses with around 50 employees because it simplifies device management while improving security and compliance. With Intune, organisations can enforce security policies, deploy applications remotely, manage company-owned and personal devices, and respond quickly to lost or compromised devices. Businesses already using Microsoft 365 Business Premium often find that Intune delivers a strong return on investment because it's included within their existing licensing and reduces manual IT administration.

Switching IT Providers

How do you switch IT providers without disrupting your business?

The key to switching IT providers successfully is preparation. Before the transition, your new MSP should audit your IT environment, collect documentation, review cybersecurity controls, verify backups, and coordinate access to systems such as Microsoft 365, networking equipment, and cloud services. A well-managed transition plan helps ensure users continue working normally while reducing risk and improving visibility into your IT environment.

How long does it take to change MSP?

The time required to change MSPs depends on factors such as the number of users, locations, devices, cloud services, and the quality of existing documentation. Most businesses can expect the process to take between 14 and 45 days, including IT assessments, documentation reviews, access transfers, security audits, and onboarding activities. An experienced MSP will follow a structured transition plan to ensure continuity of support, maintain security, and reduce operational risk.

What happens when you leave an IT provider?

When you leave an IT provider, ownership of your systems, data, licences, and accounts should remain with your business. A professional MSP will provide documentation, transfer administrative access, share relevant passwords and configurations, and work with your new provider to ensure a smooth transition. The goal should be to maintain business continuity while avoiding disruption to users and critical systems.

Who owns our Microsoft 365 tenant?

A Microsoft 365 tenant is the organisation's digital environment that stores email, files, user accounts, security settings, and Microsoft services. Best practice is for the business—not the MSP—to be listed as the tenant owner and maintain access to global administrator accounts. This ensures the organisation retains control of its data and services, making it easier to change IT providers, maintain compliance, and protect business continuity if the relationship with an MSP ends.

What should we ask for when leaving an MSP?

Before ending your relationship with an MSP, make sure you receive access to all business-owned systems and documentation. This should include Microsoft 365 global administrator accounts, domain registrar access, cloud platform credentials, firewall and network configurations, backup systems, security tools, licensing information, user account documentation, and support records. Having complete ownership and visibility of your IT environment will make it easier to transition to a new provider and reduce operational risk.

What access should our business own?

Every business should maintain ownership of the key systems that support its operations. This includes Microsoft 365 administrator accounts, domain registration, DNS management, cloud services, backup platforms, security solutions, network equipment, and software licensing portals. Retaining ownership ensures you can change IT providers, maintain business continuity, recover access if needed, and avoid vendor lock-in. A reputable MSP should help manage these systems while ensuring your organisation remains in control.

Communications & Connectivity

What is Unified Communications?

Unified Communications brings communication tools such as business voice, video meetings, instant messaging, presence and collaboration into a more joined-up environment. It can reduce the need for employees to switch between separate systems throughout the working day.

What is hosted voice?

Hosted voice is a cloud-based business telephone service. Instead of relying on a traditional telephone system located at your premises, users connect to a hosted platform through desk phones, computers or mobile applications.

Is hosted voice the same as VoIP?

VoIP describes the technology used to carry voice calls over an internet connection. Hosted voice is a managed cloud telephone service that normally uses VoIP technology. The terms are often used interchangeably, although they do not mean exactly the same thing.

Can we keep our existing telephone numbers?

In many cases, yes. Existing business numbers can usually be transferred to a new provider through a process called number porting. The availability and timescale depend on the existing service, provider, number type and accuracy of the account information. Numbers should not be cancelled before the port is complete.

What happens to cloud phones if the internet goes down?

Cloud phone systems rely on connectivity. Without appropriate continuity measures, an internet failure could affect desk phones at the location. Possible protections include backup internet connections, automatic call forwarding, mobile applications and alternative working locations. These arrangements should be planned before the service is installed.

Can Microsoft Teams replace our business phone system?

For many organisations, Microsoft Teams Phone can replace a traditional private branch exchange or separate hosted phone platform. Whether it is right for your organisation will depend on your call-handling needs, Microsoft licensing, contact-centre requirements, integrations, devices and preferred support model.

Do we still need desk phones?

Not always. Some employees prefer using a headset with a computer or the Teams application on a mobile device. Desk phones can still be useful for receptions, shared areas, meeting rooms and employees who handle a high number of calls. A good solution can include a mixture of device types.

What is the difference between business broadband and a leased line?

Business broadband normally uses shared network infrastructure and may offer different upload and download speeds. A leased line is a dedicated connection that normally provides symmetrical speeds and stronger service commitments. Leased lines usually cost more and can take longer to install.

Does every business need backup internet?

Not every business needs the same level of resilience. The decision should be based on the financial and operational impact of losing connectivity. When phones, cloud systems and customer service all depend on the internet, a backup connection can be a sensible investment.

Can Stratiis manage our business mobiles?

Yes. We can help with business mobile contracts, SIMs, devices, number transfers, usage management and support. We can also consider how mobiles are secured and managed as part of your wider IT environment.

Can you support businesses with several locations?

Yes. We can help standardise connectivity, networks, Wi-Fi, communications and security across several locations. We can also provide centralised monitoring and support.

How much do business communications services cost?

Costs depend on several factors, including: Number of users, Number of telephone numbers, Required call features, Mobile usage, Connectivity type, Internet speed, Locations, Hardware, Contract term, Resilience, Contact-centre features, Installation requirements, Support level. We believe you should understand both the initial and ongoing costs before committing to a solution. Following a review, we can provide clear recommendations and pricing based on your requirements.

How long does a communications migration take?

A simple hosted voice migration may be completed relatively quickly. A larger project involving leased lines, several locations, complex number porting, contact-centre functions or legacy equipment will take longer. Connectivity installation and number-porting timescales are often the biggest dependencies. We will give you a realistic project plan before work begins.

Co-Managed IT

Will Co-Managed IT Replace Our Internal IT Team?

No. Co-managed IT is designed to support and strengthen your internal IT capability, not replace it.

Can We Choose Which Services We Need?

Yes. Our co-managed approach is flexible and can be tailored to your organisation's requirements.

Do You Work Alongside Existing IT Managers?

Absolutely. Many of our co-managed clients already have experienced IT managers and internal support teams.

Can You Help With Cybersecurity Only?

Yes. Many organisations engage us specifically for cybersecurity, Microsoft 365 security, Cyber Essentials, and compliance support.

How Much Does Co-Managed IT Cost?

Costs vary depending on the level of support required, the size of your organisation, and the services provided. Most organisations find co-managed IT significantly more cost-effective than hiring additional specialist IT staff.