Risk Management for MSPs

OTX Roundtable GRC

OTX Roundtable GRC is a peer group specifically geared to MSPs looking to collaborate to achieve compliance with an established security framework. Members work on completing controls as a group and report progress regularly. Successes are shared, challenges are discussed, and tips and tricks are traded. Members hold each other accountable to progress.

“Being a member of the OTX Roundtable for the past three years has been an invaluable asset as we navigate the complexities of CIS and CMMC compliance. The collaboration with like-minded MSPs keeps us focused and accountable, ensuring compliance remains a top priority. Mark Jennings’ leadership and thorough research provide us with up-to-date insights and guidance, saving us countless hours and helping us stay ahead in the ever-evolving compliance landscape.”

- Jeff Loeb – President, Vitis Technologies, a Prosource Company

The Importance of the Shared Responsibility Model

For decades MSPs have used the adage "We take care of IT so you don’t have to." Back when MSP services included remote monitoring and management, managed AV, and managed firewall services, this was largely a legitimate claim. The MSP was analogous to the HVAC company. Nobody on staff was typically responsible for the heat or AC system.

In today's world, where cyber security is integral to the management of IT systems this is no longer the case. Customers hold some of the responsibility in maintaining the security of their networks. However many organizations do not understand the responsibilities they hold. And many MSPs are not forthcoming about the expectations they have of their clients in holding up their end of the bargain. Read More…


Latest Webinar

CMMC is Here!: What does it Mean for MSPs

What You Will Learn:

  • Details of the CMMC program and what it entails

  • The underlying set of controls that must be in place to meet the certification requirements

  • What it means to be compliant

  • How MSPs fit into the assessment process

  • Unique challenges that office technology/MSP organizations face

  • Strategies to limit the scope of CMMC requirements within your MSP

  • What to expect from clients doing business within the DIB

  • The implementation timing and the four-phase rollout plan

Who Should Attend: This webinar covers a combination of business level concerns, as well as the technical requirements of providing services to DIB clients. Owners and senior executive team members will learn about the potential loss of business due to an inability to comply, as well as estimated costs to meet the requirements. Service leaders and chief information security officers (CISO) will learn what is required regarding people, process and technology to be prepared to assist clients with their assessments.

CMMC affects a broad range of industries, not just manufacturing. Take this opportunity to understand the business that might be at risk and learn ways to protect it.

Helping Small and Medium Managed Service Providers Manage Risk in Today’s Landscape

The IT Managed Services business has never been more risky. Increasingly MSPs are becoming the target of cyber criminals. They are being used as the conduit to get to their clients. Recently, several MSPs unwittingly became party to the distribution of malware, infecting some of their clients.

Most MSPs have implemented strong security in part throughout their organization but many have not followed a structured security framework designed to eliminate gaps. Why? Time and focus. It is on their list of priorities, but it never makes it to the top of their list. That is because they are trying to go it alone.

OTX Roundtable GRC is a peer group specifically geared to MSPs looking to collaborate to achieve compliance with an established security framework. Members work on completing controls as a group and report progress regularly. Successes are shared, challenges are discussed, and tips and tricks are traded. Members hold each other accountable to progress. A large library of process and policy templates are available to all members.

OTX Roundtable GRC members are provided a custom portal for the tracking and management of their compliance. Tasks and to-dos are kept up to date and progress is reported regularly. Policies and procedures are stored securely within the portal

MSPs participating in OTX Roundtable GRC can take what they have accomplished internally and provide governance and compliance services to their clients. Increasing their value and providing an additional revenue stream.

Get in Touch

Let us help you manage your risk and achieve compliance.