Frequently Asked Questions's
FAQ for Executives | FAQ for IT Professionals
While every attempt has been made to provide you
with answers to the most frequently asked questions about our
security reviews, you may also reach Mike Foster direct for
specific answers, pricing and availability using our contact
form or calling 1-800-657-7107
FAQ for Executives
Some executives feel their IT professional has it all under control.
Some executives say, "I am already paying an IT professional to take care of IT; why should I have to pay for someone else to make sure the IT department is doing what I am already paying them to do?” They think every IT professional should know all there is to know about IT.
Think about. That thought-process is much like saying, "I am paying my general practitioner already, why does he want me to see a specialist to perform my open heart surgery. If I hire the heart surgeon, can he repair my knee too at the same time?"
As a skilled, experienced systems engineer and enterprise security
specialist, Mike understands that YOU want strategic, practical,
and useful IT security information in an easy-to-understand format. Mike will provide you and your IT Professional practical insights and relevant IT
Security solutions that will help protect your business!
Some executives feel a review will cost too much money.
You might be surprised at how economical a review is. Also, how expensive is it to have a security breech and/or for your team to be less productive if they are using older methods?
The good news is that often, as long as you already have modern hardware and software in place, the purchases you will make from your vendors after the review will be minimal. Mike will provide a third-party input on buying decisions as someone who isn't trying to sell the hardware/software. It is very easy to make the wrong choices with technology and a wrong choice can be very expensive.
Nobody ever wants to look stupid, and sometimes executives feel "stupid" when talking to their IT professional so they avoid important topics.
Mike will have those conversations with the IT professionals either in the presence of, or on behalf of, the executives. That way, the important questions get asked, and both the IT professionals and executives address the most important IT challenges companies face.
Some organizations have gone through many IT professionals, in-house or outsourced, and now their network is a jumble of what other professionals have put together.
IT professionals are often well meaning and highly trained, but they are spread thin working on many projects. Mike can help you hold outside IT Professionals/ consultants accountable if you "wouldn't know how to tell if they are doing it right or not."
Many IT professionals talk about fixing the issues "first thing tomorrow" (after they fix today's burning issue), but every "tomorrow" has some new crisis to fix and some important tasks are never taken care of.
Mike will show your IT professional how to resolve this problem AND help the IT professional finish projects on time and in budget.
Some executives are afraid to upset their IT professionals and may fear the repercussions of having a review.
After Mike's presentation, executives would charge back to their IT professionals and say "These are things you ought to know about!"
The IT professional responds, "Duh. And also these and these and these items. Yes. I know, Boss. Everybody has known since they first came out."
At which point the CEO slinks off with his tail between his legs muttering "never mind."
If the executive understood all about technology, they could ask the next important question, "Why haven't you been doing those and the other 300 things we need to do?"
It is important to have an independent third party IT best practices specialist to be there for the executive to facilitate the conversation that follows the executive's second question. Both sides will have important issues to bring up for resolution, and the answers need to be the best solutions using the hardware and software you have already invested in.
If we use a third-party vendor
for IT security — why do we need your security review?
Because you only call your third-party IT Vendor to come in
to put out fires. Unless you've asked them to, they have likely
never done a thorough overview to see what needs to be fixed. With our review, you'll have a roadmap detailing the steps to
take to improve your security.
If we already have qualified IT
people on staff — why do we need your security review too?
- Most IT team members are very busy working on other projects for your company. They don't have the opportunity to spend their time attending security training and visiting other organizations discovering the best current security techniques. Having a specialist that focuses on keeping
up-to-date on security risks just makes good sense. Most people welcome a
third-party specialist assessment with suggestions to take network
security to the next level.
- Your IT team also appreciates the vital systems security review
because Mike can be an advocate to help them feel understood
by the CFO and other executives.
What is the best way to introduce
the security review to our IT team?
Use these words...
"In the interest of increasing our security, I have
found an experienced IT security specialist who works with
many companies. He'll come in and review our vital systems...
and, if he finds anything... will offer a suggested roadmap
and mentoring about how we can improve our IT security."
Why do executives love the security
review?
- The executives feel more understood by the technical team,
moving forward on clearing out old concerns and issues.
- The executives are often shocked at first at the number of
security risks discovered, and they too will ultimately sleep
better at night knowing that steps are being taken to close up
the security holes that the review uncovers.
FAQ's for IT Professionals
Why will our IT team love the
security review?
Most IT team members are very busy working on other projects
for your company. They don't have the opportunity to spend their
time attending security training and visiting other organizations
like yours discovering the best current security techniques.
Mike does this, and brings the best knowledge to your
IT team, and delivers it in a fast and targeted method, tailored
just to your network.
This allows your IT team to gain a large amount of specific
knowledge in a short period of time, described in
Mike's fun and easy to understand manner. Mike is able to answer
questions for them that apply to your network & systems.
This ultimately allows the technical team to sleep better at
night, feeling more confident about the security of the network. Listen
to Mike's message to your IT team...
Should the IT professionals
fear they will lose their job after the security review?
Absolutely not. Mike's mission is to stop the hackers of the
world. In order to do that effectively, companies need strong
IT professionals on their team. Mike's mission is to empower
your team to start recognizing even more security vulnerabilities
than before, and applying corrective action.
Mike is available to help the IT team grow if needed to reach "industry
best practices" level in IT security. During the review,
Mike will provide volumes of information and resources for the
IT team member(s) if they want some "suggestions for improvement" in
the security field. The review has nothing to do with "who" is
right, and everything to do with "what" is right.
Can our users keep working during
the review?
Yes, your servers will be left "up" during the review.
We will "spot check" some machines, so some of your
users might not have the use of their workstation for half an
hour or so, but other than that, you will be functioning in a "business
as usual" mode.
Is our network too small to need
a review?
Mike has reviewed networks with less than 10 users and with
more than 3000 users and the clients are always very
pleased with the previously unrecognized vulnerabilities and
the suggested action plan to increase the security of the network.
Will our IT team need to defend
themselves and give reasons for what they are doing now?
Absolutely no defense needed; the review is all about
cooperation.
The purpose of the review is for Mike to be a helper / assistant
/ mentor / good-guy who is there to help. He has the benefit
of working with other excellent companies on security issues,
and then brings in those ideas so you can put them to work too.
The Vital System Security Review is designed to empower
your existing IT team to take care of the issues themselves. Listen
to Mike's message to your IT team about outside IT contractors...
Who should be participate in the
security review?
- Kick-off portion: IT team and any executives who wish to be present,
including the CEO, CFO, COO, mangers, etc for the first 15
minutes or so.
- Review portion: Then Mike can work with the technicians
and/or CTO as needed. The executives are welcome
to be present the entire time, or "pop in and out" of
the meeting as their time allows.
- Debriefing: At the end of the review, at 2 p.m., we should all
meet together again, the technicians and the CEO/CFO/COO/etc
for the debriefing. The review will wrap up at 3 p.m.

Contact Mike
today via e-mail or
1-800-657-7107 to schedule your security review
|