Minimum Technology Standard for Client Environments
Every client we take on has to meet a minimum technical bar — not because we’re picky, but because supporting an environment we don’t trust to be stable, patched, and backed up properly means firefighting instead of actually managing it. This is the real standard we hold every environment we manage to, documented plainly rather than left as an unwritten assumption. If your current setup doesn’t meet it yet, that’s fine — bringing it up to this bar is usually one of the first things we do.
Hardware Requirements
Workstations:
- Windows 10/11 Pro or Enterprise
- Minimum 8GB RAM, SSD storage, TPM 2.0 enabled
- Manufacturer-supported hardware (no white-box systems)
Servers:
- Windows Server 2019 or newer
- RAID-configured storage, redundant power supply
- Active warranty or support contract
Networking Equipment:
- Business-grade firewall (e.g., Fortinet, SonicWall, or equivalent)
- Managed switches and access points
- VLAN-capable infrastructure for segmentation
Software Standards
Operating Systems:
- Must be supported by vendor (no EOL systems)
- Automatic updates enabled or managed via RMM
Productivity Suite:
- Microsoft 365 Business Standard or higher
- Licensed and centrally managed
Endpoint Protection:
- Next-gen antivirus with EDR (e.g., SentinelOne, Defender for Business)
- Centralized dashboard access for MSP
Backup Software:
- Daily backups with offsite replication
- Minimum 30-day retention
- Quarterly restore tests required
Security Requirements
Authentication:
- MFA enforced for all cloud services and VPN access
- Password policy: minimum 12 characters, complexity enforced
Email Security:
- Advanced threat protection (ATP) enabled
- SPF, DKIM, and DMARC properly configured
- Phishing simulation and user training quarterly
Patch Management:
- All endpoints enrolled in automated patching
- Critical updates applied within 72 hours
Dark Web Monitoring:
- Active monitoring for credential exposure
- Immediate remediation plan in place
Operational Standards
Documentation:
- Network diagram, asset inventory, and credentials stored securely
- Change management process for infrastructure updates
Monitoring & Alerts:
- All systems enrolled in RMM
- 24/7 alerting for critical failures and security events
Supportability:
- Remote access tools pre-installed and tested
- Admin access granted to MSP for all supported systems
Compliance:
- HIPAA, PCI, or other relevant standards acknowledged and supported
- Regular security assessments and remediation plans
Not sure if your environment meets this bar?
We’ll take a look and tell you plainly what’s missing.