RESEARCH
Your SOW Is Costing You Clients: The MSP Blind Spot That Destroys Trust Before the Work Even Starts

A while back, I got a call from an MSP owner who sounded like he had just finished gargling battery acid. He told me he lost a client he had supported for ...
Cyber Compliance
Stop Getting Mad When Your Client Won’t Buy Compliance

You know the look. You explain how they need MFA, a risk assessment, documented policies, backups that actually restore… and your client stares back at you like you just recited the GDPR in ancient Greek. You leave the meeting frustrated. ...
“Fined Without a Breach?” Why the Wojeski $60,000 Penalty Matters—even if You Think You’re Small

You’ve seen two kinds of headlines after cyber incidents: (1) lawsuits and (2) regulatory enforcement. The recent $60,000 fine against Wojeski ...
New California Audit Law Just Put Your MSP on the Hook. Here’s How to Turn It Into Recurring Revenue

If your clients process sensitive data, your MSP is now part of the legal conversation. On July 24, 2025, California finalized new rules that require businesses processing high-risk personal information to undergo annual, independent cybersecurity audits. This isn’t just for ...
Cyber Liability
AI Is Already Inside Your Walls. You Just Haven’t Looked Hard Enough.

Think your clients are the ones playing fast and loose with AI? Guess again. Your techs are doing it—right now—on your network. Not because they’re reckless. Because they’re efficient. They’re pasting configs into ChatGPT. Running SOPs through Gemini. Copying proposals ...
You’re Using Your Smartest Engineer Wrong (And So Are Your Clients)

What if I told you that you’re misusing the most powerful engineer on your team? No, not Josh. Not the guy with the beard who still thinks ZFS is the answer to everything. I’m talking about AI. And right now? ...
What a New Lawsuit Can Teach Us About Cyber Liability and Documentation

When a cyber insurance provider sues vendors after a ransomware incident, it’s not just about fault—it’s about proof. In Ace American Insurance Co. v. Congruity 360 and Trustwave, we see how courts allocate responsibility—and why the side with the best ...
Insurance & MSP Liability
You’re Not Insured. You’re Just Hopeful.

So there I am, wrapping up a conference session—over 1,000 MSPs in the building—and one guy comes up clutching a fresh copy of Standardized like it’s a fire extinguisher in a server room. He’s nodding along, clearly rattled in all ...
Your MSP Carries More Risk Than a Magazine Stand—and That’s a Problem

Let’s talk about airport gift shops for a minute. You know the ones—tiny kiosks with $14 neck pillows, expired jerky, and three copies of Men’s Health no one’s ever going to read. Now, tell me—how much sensitive data do you ...
If You Don’t Own the Security Stack, You’ll Be Replaced

There’s a quiet shift happening in the cyber insurance world—and if you’re not talking to your clients about it, someone else is. That someone is their insurance provider. And they’re not just selling policies anymore. They’re selling cybersecurity solutions too. ...
More Articles
What Happens When the Small Client Becomes the Big Problem?
It’s your smallest client. The one who always pushes back on MFA. The one still using the same unmanaged laptop from 2016. The one who just “wants to keep it simple.” Now imagine they get breached. And it’s not just ...
Your Clients Think You’re Ready for a Breach—Are You?
Let me guess: your incident response plan is a two-page PDF that basically says “call IT and hang in there.” Maybe there’s a phone tree. Maybe a “stay calm” reminder. But if you’re honest—it’s not a plan. It’s a coping ...
Your Smallest Client Is Your Biggest Lawsuit Waiting to Happen
We just launched Cyber Liability Essentials, and here’s the wild part: Over 700 clients now have a fully documented Incident Response Plan—with communication playbooks, mapped responsibilities, and customized evidence ready to go. Let that sink in. While you’re still trying ...
If You’re Not Writing the Plan, You’re Writing the Check
When the breach hits, it won’t matter how fast you can spin up backups. What matters is who speaks first, who gets blamed, and who can prove they had a plan. Here’s the problem: most of your clients don’t have ...
Welcome to the Galactic Bubble—Now Let Me Pop It
I’m at Galactic Universe, and let me tell you: it’s electric. Everyone’s smiling. Everyone’s hugging. Everyone’s got a success story to share. You’d think we were celebrating unicorn valuations and flawless QBRs. It’s inspiring. It’s contagious. And honestly, I’m thrilled ...
The Breach Is Just the Beginning: Why Most MSPs Aren’t Ready for What Comes Next
You’re an MSP. You’ve got this. You’ve got backups the hackers can’t touch. You know how to restore a server faster than a barista makes espresso. Your EDR stack is top-notch, your RMM’s locked down, and you’ve got tabletop exercises ...
You’re Going to Universe—But You Left Your Engineer Behind?
I was talking to the CEO of an MSP this week. Sharp guy. He tells me, “Yeah, I’m going to Galactic Universe. So’s my sales guy.” I nodded… and waited. “And your service manager?” I asked. Silence. “No, just us.” ...
Stop Supporting Clients Who Don’t Want to Be Secure
I was on a call with the owner of an MSP the other day. Smart guy. He tells me, “We’ve got our Basic IT solution and our Advanced Security offering split out.” I nodded. That’s exactly how you should do ...
So, You Think Your Security Tools Have You Covered?
An attacker lands in your environment. It’s not ideal—but hey, you’ve done the right things. You’ve got a hardened stack. You’ve even deployed something bulletproof like SentinelOne. You’re sleeping well. Until you read this. There’s a Little Trick to Disable ...
One Lawsuit Away from Bankruptcy—And It’s Not Even Your Breach
I was talking to a lawyer recently—sharp guy, been through the wringer with business litigation. I asked him, “How do you avoid getting sued?” He didn’t even blink. “You don’t.” “If you’re running a business long enough, it’s not a ...
A $925,000 Wake-Up Call: How One MSP Got Dragged Into a Nightmare He Didn’t Cause
If you’ve been in the MSP business long enough, you’ve had this type of “client.” Not really a client. Not really not. The kind who doesn’t want your stack. Doesn’t want to be managed. Doesn’t believe in layered security or ...
You’re Testing Like It’s 2015—And Hackers Love That
I was just on a call with an engineer the other day—smart guy, lots of certifications, clearly well-meaning. We were walking through a penetration test report, and suddenly he hits me with this: “According to NIST, this pen test isn’t ...


