First Name
*
Last Name
*
Company Name
*
Email
*
Bot protection
Business Context:
List planned hiring, office changes, acquisitions, new services, compliance work, and major client commitments for 2027.
Identify the five workflows the business cannot afford to lose for one business day.
Name an executive owner and a technical owner for the technology plan.
Record each critical workflow's acceptable downtime and acceptable data loss.
Inventory and Lifecycle
Inventory endpoints, servers, network devices, phone systems, cloud services, domains, vendors, warranties, and privileged accounts.
Flag unsupported or end-of-life systems and equipment with expiring warranties.
Identify duplicate, unused, or ownerless applications and licenses.
Create a three-year replacement schedule, prioritized by role, exposure, and business impact.
Budget for setup, migration, disposal, documentation, and staff time — not only the purchase price.
Recovery and Resilience
Confirm which systems and cloud data are backed up, how often, and where copies are stored.
Verify that at least one recovery copy is protected from routine administrator compromise.
Restore representative files and one critical application in a controlled test.
Record actual recovery time, missing dependencies, access problems, and communication gaps.
Review backup internet, power protection, VoIP rerouting, and remote-work continuity.
Schedule the next recovery exercise and assign an owner.
Cybersecurity and Identity
Confirm multi-factor authentication coverage, including remote access and privileged accounts.
Review endpoint detection, email protection, firewall management, vulnerability scanning, and 24/7 monitoring — and who's responsible for each.
Prioritize actively exploited vulnerabilities and internet-facing systems first.
Review joiner, mover, and leaver processes for employees and contractors.
Document incident-response roles, insurer contacts, legal contacts, and escalation paths.
Define approved AI tools, data rules, application permissions, and who reviews new use cases.
Map contractual, regulatory, and insurance requirements to actual evidence, not intentions.
Support and Projects
Estimate support demand from headcount, locations, business hours, projects, and how many platforms you run.
Identify gaps in after-hours coverage, security specialization, vendor management, documentation, and project capacity.
For co-managed IT, document exactly what the internal team owns and what the partner owns.
For each 2027 project, record outcome, owner, dependencies, timing, one-time cost, recurring cost, deferral risk, and how you'll measure success.
Separate spending into Run, Protect, and Advance lanes.
Reserve a governed contingency for urgent vulnerabilities, failures, and material business changes.