The IT and security assessment

A point-in-time review of how your business runs on technology, written for the owner rather than for an IT department. $395 flat, delivered within a week of the on-site visit.

Two levels of access. You choose.

Some businesses are comfortable handing over the keys on day one. Many are not, and should not have to be. The external assessment needs no access to your systems at all; the internal assessment adds the hands-on checks. Only the scope you authorize in writing is performed.

External assessment

No access to your systems required

  • Email security configuration: SPF, DKIM, and DMARC
  • Breached credential exposure for your email domain
  • Website security posture
  • Publicly exposed services on your internet connection
  • On-site visual walkthrough of the office
  • Structured interview covering IT practices, backups, account management, and security procedures

Internal assessment

Everything in the external assessment, plus limited access you define

  • Hardware and software inventory
  • Patch and update status across computers and servers
  • User account and permissions review
  • Backup verification: do backups exist, and do they restore?
  • Network device discovery
  • Authorized vulnerability scan of the internal network, during a window you approve

What is never touched. This is an assessment, not a repair. Nothing is modified, installed, or removed. Nezra IT does not view, copy, or record the contents of your business files, patient or customer records, financial records, or communications. The assessment examines systems and configurations, not your data.

What you receive

A written findings report within seven calendar days of the on-site visit. The report is your property and can be shared with your insurance carrier, auditors, or other advisors.

  • Every issue identified, ranked fix now, fix soon, or fix eventually
  • A plain-English explanation of what each issue means for your business
  • An estimated cost to fix each item, whether you use Nezra IT or anyone else
  • A compliance snapshot: HIPAA and HITECH for medical and dental practices, NIST Cybersecurity Framework alignment for any business, and cyber insurance questionnaire readiness

How your information is handled

Everything collected is covered by a mutual non-disclosure agreement signed before the visit. Working files are stored encrypted on Nezra IT equipment, are never uploaded to third-party services without your written consent, and are securely destroyed within thirty days of report delivery. One encrypted copy of the final report is retained for Nezra IT's records.

Any weaknesses found are disclosed only to your designated contact and never shared with anyone else without your written permission.

Honest limits

An assessment reduces risk; it cannot eliminate it. The report reflects conditions on the day of the visit, and no assessment can promise that every issue was found or that you will never experience an outage or breach.

The compliance snapshot identifies gaps against common frameworks. It is not a certified audit, attestation, or legal opinion.

Fee and cancellation

$395 flat, due on delivery of the report, by check or electronic payment. If you engage Nezra IT for ongoing support within sixty days, the full fee is credited toward your first month.

Cancel any time before the on-site visit at no charge. If you cancel after the visit but before the report is delivered, a prorated fee of $200 applies for work performed.

$395flat, no hourly surprises

Ready when you are

Most assessments are scheduled within two weeks. Book a time directly, or send a note if you would rather talk first.

Book an assessment