OPSWORQ

Managed IT · Security · Continuity

One flat price. Every device watched, patched, backed up and answered for.

Three plans from $125 a user. Critical issues reach a person in 15 minutes, in writing. Month to month, and the proof arrives on the 10th.

From $125 / user / month · $750 minimum · Month to month

An open-plan office with rows of desks and monitors, one orange cable run down a desk leg to a floor box.
Commitment

15 min

Critical response, written into the agreement

Commitment

Same day

Monitoring live from the day you say yes

Commitment

Unlimited

Remote support for everyone on the plan

Standard

By the 10th

Your monthly report, every month

Plans

Three plans. The differences are real.

Most businesses belong in Secured. Essential is for the smaller environment that still needs watching properly. Complete is for when hours of downtime cost more than the difference.

Essential

From $125/user/month

For the smaller environment that still needs watching properly.

  • Monitoring and alerting, around the clock
  • Operating system and third-party patching
  • Unlimited remote support
  • Endpoint protection on every device
  • Backup monitored, restore-tested quarterly
Price Essential

Secured

From $175/user/month

Where most businesses belong: the security and recovery work done properly.

  • Everything in Essential, plus
  • Detection and response, alerts triaged
  • Multi-factor with conditional access
  • Vulnerability scanning, monthly
  • Restore tests monthly, and a written recovery plan
  • Quarterly technology review
Price Secured

Complete

From $235/user/month

When hours of downtime cost more than the difference.

  • Everything in Secured, plus
  • 4-hour recovery objectives by default
  • Executed failover test, once a year
  • Vendor management and renewals
  • Operational architecture review
Price Complete
Coverage by plan
ItemEssentialSecuredComplete
Infrastructure
Continuous monitoring and alertingIncludedIncludedIncluded
Patch management, operating system and third-partyIncludedIncludedIncluded
Remote support, unlimitedIncludedIncludedIncluded
On-site supportPartialIncludedIncluded
Network managementIncludedIncludedIncluded
Server, cloud and Microsoft 365 administrationIncludedIncludedIncluded
Security
Endpoint detection and responsePartialIncludedIncluded
Email security and phishing filteringPartialIncludedIncluded
Identity, access and multi-factor managementNot in this planIncludedIncluded
Vulnerability scanning and remediationNot in this planIncludedIncluded
Continuity
Backup, monitored and restore-testedPartialIncludedIncluded
Disaster recovery planNot in this planIncludedIncluded
Continuity testing, scheduledNot in this planPartialIncluded
Operations
Documentation and asset registerPartialIncludedIncluded
Vendor managementNot in this planPartialIncluded
Quarterly technology reviewNot in this planIncludedIncluded
Operational architecture reviewNot in this planNot in this planThe bridge into operations work
Included Partial: a lighter version, defined below Not in this plan The bridge into operations work

What “Partial” means.

So the table can’t be read two ways, every Partial has a written meaning.

Partial, defined
ItemPartial means
On-site support (Essential)Scheduled within three business days rather than prioritized. Travel is billed.
Endpoint detection and response (Essential)Deployed and alerting. Alert triage is best effort in business hours, not continuous.
Email security and phishing filtering (Essential)Standard filtering is on. There is no tuning cycle and no quarantine review.
Backup, monitored and restore-tested (Essential)Monitored daily. A restore is tested quarterly rather than monthly.
Documentation and asset register (Essential)The asset register is maintained. Runbooks are not.
Continuity testing (Secured)A tabletop exercise once a year, rather than an executed failover.
Vendor management (Secured)We contact a vendor when you raise a ticket. We don’t manage the relationship or the renewals.

What’s included

Four layers, run as one system.

Every layer is designed, installed and run by the same engineers, so a problem never falls into the gap between two vendors. Which plan includes what is in the table above.

01INFRASTRUCTURENetwork · DevicesServers · Microsoft 36502SECURITYIdentity · EmailEndpoint · Patching03CONTINUITYBackup · Restore testsRecovery plan04RUNHelp desk · MonitoringMonthly report
  1. 01InfrastructureNetwork, devices, servers, Microsoft 365
  2. 02SecurityIdentity, email, endpoint, patching
  3. 03ContinuityBackup, restore tests, recovery plan
  4. 04RunHelp desk, monitoring, monthly report

Infrastructure

  • Monitoring and alerting, around the clock
  • Operating system and third-party patching
  • Unlimited remote support, on-site when needed
  • Network, server, cloud and Microsoft 365 administration

Security

  • Endpoint detection and response
  • Email security and phishing filtering
  • Identity, access and multi-factor management
  • Vulnerability scanning and remediation

Continuity

  • Backup, monitored and restore-tested
  • A written disaster recovery plan
  • Continuity tested on a schedule
  • Recovery objectives written into the agreement

Operations

  • Documentation to the 3am test
  • An asset register that matches the office
  • Vendor management and renewals
  • Quarterly technology review

Help desk

A person answers. The ticket says what happened.

Unlimited remote support for everyone on the plan. Every request gets a number, a severity and a clock you can see, and it ends with a note that says what was done.

  1. 01

    Ticket raised

    By phone, the portal or email. You get the ticket number and the severity straight away.

  2. 02

    A person picks it up

    Inside the clock for its severity. The clock stops when someone who can act is working it, not when an automated reply goes out.

  3. 03

    Updates you don’t have to chase

    Critical issues every 30 minutes, high every two hours, whether or not there’s progress.

  4. 04

    Fixed, and written down

    What broke, what was done and what would stop it happening again, in your ticket history.

The desk covers people, devices, Microsoft 365, printers and line-of-business applications, working with the software vendor where the fix is theirs.

A pair of headphones resting on a closed laptop, with an orange cable.

Not a client, and something’s broken?

A managed plan isn’t a condition of getting help. A server that won’t start, email that stopped, three new laptops with nobody to set them up: that’s hourly work, often same-day. You get it fixed first and the conversation second.

Response

Severity is set by what has stopped.

If the business has stopped, it’s critical however it was reported. Anyone can raise a severity at any time. Lowering one needs your recorded agreement.

Time to first human responseCommitment
Time to first human response
Critical (The business has stopped)15 min
High (A team is blocked)1 hour
Normal (One person is stopped)4 hours
Scheduled (Planned work, questions)Next business day

Next business day is drawn at the end of the scale.

Written into the managed IT agreement. High, Normal and Scheduled clocks run in business hours. The clock stops when a person who can act is working the issue, not when an automated reply goes out.

What each severity means
SeverityWhat it meansFirst human response
CriticalThe business has stopped15 minutes
HighA team is blocked1 hour
NormalOne person is stopped or slowed4 hours
ScheduledPlanned work and questionsNext business day

Response times apply to managed clients under their agreement. The clock starts when you tell us by the portal, the support email or the published phone number. The High, Normal and Scheduled clocks run in business hours.

While you’re asleep

The night shift you never have to staff.

Monitoring doesn’t sleep. Patches land in the window you agreed, backups run and get checked, and a failing disk gets flagged before it fails. By morning, every step is in your ticket history.

Illustrative night The kind of work, not a client’s data.

How backup and restore testing work
  1. Patches stagedfor the window you agreed
  2. Backups runand checked for errors
  3. Disk alertflagged before it fails
  4. Off-site copysent and verified
  5. Phishing messagequarantined
  6. Overnight login your ticket history

Security baseline

The same baseline on every environment we manage.

The CIS Controls, Implementation Group 1, are the floor. Secured and Complete go further, and the difference is written down.

Security baseline by plan
ControlEssentialSecured and Complete
Multi-factor authenticationRequired on all accountsRequired on all accounts, conditional access enforced
Endpoint protectionDeployed on every deviceDeployed on every device, alerts triaged
Local administrator rightsRemoved where you permitRemoved, exceptions documented
PatchingTo the patch standardTo the patch standard
Email securityStandard filteringAdvanced filtering, tuned, quarantine reviewed
IdentityDocumentedConditional access and risky sign-in review
Vulnerability scanningNot includedMonthly, critical findings fixed within 72 hours
Offboarding a departing userWithin one business dayWithin four business hours
Access reviewOnce a yearEvery quarter

A client who refuses multi-factor authentication on email is refused the engagement. We can’t be accountable for a system we’re not allowed to protect. Any other exception is recorded in writing, with an owner and a review date.

How we approach security

Backup

Restored and opened, not just checked.

A restore test means data was actually brought back and opened. A green tick in a console is monitoring, not testing.

The front of a storage server with rows of drive sleds, one of them marked orange.
Backup by plan, servers and PCs
ItemEssentialSecuredComplete
Backup monitoredDailyDailyDaily
Failed job investigatedNext business daySame business daySame business day
Restore testQuarterlyMonthlyMonthly
Restore test evidenceFile, time, who did itFile, time, who did itFile, time, who did it
Recovery point objective, default24 hours24 hours4 hours
Recovery time objective, defaultBest effort8 business hours4 business hours
Disaster recovery planNot includedWritten, reviewed yearlyWritten, reviewed yearly
Continuity testNot includedTabletop, yearlyExecuted failover, yearly

Recovery objectives are defaults. Yours are set at onboarding and written into your agreement. How backup is run.

Patching

Updates that land, and proof that they did.

Patch compliance is reported to you every month. A device that can’t be patched becomes an exception with an owner, a compensating control and a review date, never a silence.

Firmware and network device updates run quarterly as planned changes. Servers and line-of-business systems are patched in a window you agree, with a restore point taken first.

Security patches applied withinStandard
Security patches applied within
Critical (Security patches)72 hours
High (Security patches)7 days
Standard (All other updates)30 days

OpsWorq patch standard. Servers and line-of-business systems are patched in a window you agree in writing, with a restore point taken first. A device that can’t be patched becomes a written exception with an owner and a date.

How we communicate

Silence during an incident is what clients remember.

“No progress yet, still working it, next update at 14:30” is a complete and acceptable update. This is what you get, and when.

Communication cadence
SituationWhat you getWhen
New inquiryA reply from a personWithin one business day
Ticket raisedThe ticket number and severityStraight away
Critical incidentA named person, saying they’re working itWithin 15 minutes
Critical incident, ongoingAn update, progress or notEvery 30 minutes
High severity, ongoingAn updateEvery 2 hours
A change that affects youThe window and the back-out planBefore it starts
A missed response commitmentWe tell you, before you askThe same business day
MonthlyYour reportBy the 10th
QuarterlyYour technology reviewWithin the quarter

Onboarding

The clock starts the day you say yes.

Monitoring goes live the day you say yes. Your plan is switched on week by week. By day 30, everything is written down, and you get the evidence at every step.

  1. Day 0

    Monitoring is live, and proven

    A test alert is raised, received and closed, with the timestamp kept in the ticket.

  2. Week by week

    Your plan switched on, in order

    Each control checked against your plan’s list. A device we can’t reach becomes a finding with an owner and a date.

  3. Day 30

    Documented, and handed to you

    Assets, accounts, network and runbooks, written to one test: could a stranger restore service at 3am? The baseline report is issued.

A missed day-0 milestone is reported to you the same day, with a new date.

How onboarding and switching work

Your price

See what it would cost.

The published floors, turned into your number. It’s a floor, not a quote: yours comes from a 20-minute review of what you run, and it holds after you sign.

Everyone who would be covered. A shared PC used by three people counts as three.
Plan

Your monthly floor

Your inputs. An estimate, not a quote. Your number comes from a 20-minute review of what you actually run, and it holds after you sign.

Want it in writing?

We email you exactly what’s on screen. Nothing is held back for the email version.

A copy comes to us too. Nothing is sold and you’re not added to a mailing list.

  • Never billed extra. Remote support, monitoring, patching, and everything in your plan.
  • Month to month. Thirty days’ notice ends it. About 10% less with a twelve-month commitment.
  • Hardware and licenses passed through at a margin stated on the quote.
  • Every quote states the plan, the users covered, the monthly fee, what’s billed separately, the term, the notice period and the start date. It’s valid for 30 days.

We don’t take on work we can’t see paying for itself. If we can’t, we’ll tell you.

In your IT lead’s languageThe technical specification, for an IT person, auditor or insurer.
  • Remote monitoring and management on every managed device, with alerts routed by severity, not category.
  • Patch management for the operating system and third-party software, with maintenance windows agreed in writing and restore points taken first.
  • Endpoint detection and response on every device; alert triage continuous (Secured, Complete) or best effort in business hours (Essential).
  • Email security policy, identity and access management, conditional access and risky sign-in review.
  • Backup and disaster recovery, with restore tests evidenced by ticket and recovery objectives set per client.
  • Vulnerability management, scanned monthly (Secured, Complete), with critical findings remediated within 72 hours.
  • Documentation to a written standard, and an asset register that matches the office: an unknown device is either an asset nobody is protecting or an intruder.
  • The CIS Controls, Implementation Group 1, as the baseline. Exceptions carry an owner, a compensating control and a review date.
  • Certifications held by our engineers and technicians: Microsoft MCSE; CompTIA Security+, Network+, A+ and Project+; fiber optic installation and termination; QuickBooks.

Questions

Straight answers about managed IT.

Is there a contract?
Month to month. Thirty days’ notice ends it, with no fee to leave and no auto-renewal. If you’d rather commit for twelve months, the rate is about 10% lower, and that’s your choice to make on purpose.
What isn’t included?
Hardware and software licenses, which we pass through at a margin stated on the quote. Projects, like a new network or a migration, are quoted in writing before they start. In the table above, a dash means not included in that plan.
What happens after hours?
Monitoring runs around the clock. Our response clocks for High, Normal and Scheduled issues run in business hours, Monday to Friday, 8am to 5pm Eastern, and your agreement states exactly how an after-hours emergency is handled.
How do we switch from our current provider?
Monitoring runs alongside your current provider from day 0, so nothing goes unwatched during the handover. We cut over in a window you choose and document everything by day 30. How switching works.
Who owns our data and passwords?
You do. Every account, password and configuration is documented in your name, and handed over in full if you ever leave, within 30 days of notice.
Do you require multi-factor authentication?
Yes, on email, for every managed client. A client who refuses it on email is refused the engagement, because we can’t be accountable for a system we’re not allowed to protect. Any other exception is written down with an owner and a review date.
How soon can you start?
On a date we agree and keep. Onboardings are scheduled, never squeezed in, so each one gets the attention the first 30 days need. The start date is on your quote.
Is there a minimum company size?
No. The $750 monthly minimum is what lets us say that and mean it: a small environment costs more per seat to look after, not less.

Get started

Talk to an engineer, not a salesperson.

1‑855‑OPSWORQ

855‑677‑9677 · Mon–Fri, 8am–5pm ET

If the business has stopped, call. Don’t use the form.

Pick a time for a 20-minute review of what you run, or write to us and a person replies within one business day. Then a written quote with a start date on it.

What’s it about? Select all that apply.

A sentence is plenty.

A person replies within one business day. Nothing is sold, and you’re not added to a mailing list.

Prefer to talk? Pick a time for a 20‑minute review Or call 1‑855‑OPSWORQ.

Call Get your price