# ETTE - Empowerment Through Technology & Education, Inc. > Full text of the ETTE pages most often needed to answer questions about the company, its services, and its pricing. Washington, DC managed IT services provider serving nonprofits, associations, and established businesses since 2002. Location: 5335 Wisconsin Ave. NW, Suite 440, Washington, DC 20015. Phone: 202-345-1965. Email: sales@ette.biz. Hours: Mon-Fri, 7:00 AM-7:00 PM ET. Pricing: Fully Managed IT from $150 per user per month. Remote-Only Managed IT from $125 per user per month. Co-Managed Partnership scoped per engagement. List pricing covers organizations of roughly 10 to 75 people; nonprofit rates are available on all three plans. Virtual CIO advisory is listed at $2,500 per month as an add-on to a managed plan. Index of shorter page summaries: https://ettebiz.com/llms.txt --- ## Home Source: https://ettebiz.com/ Remote IT support nationwide · On-site across the Washington, DC metro area ### Technology support for nonprofits, associations, and small businesses. ETTE is a Washington, DC managed IT services provider serving nonprofits, associations, and established businesses since 2002 - managed IT, security, and advisory for organizations that want steadier support, stronger protection, and clearer technology guidance. One flat monthly fee per user. That's it. No hourly billing. No surprise invoices. No wondering whether a phone call will cost you. You get complete IT support for a price you can budget around, and we get an incentive to fix things fast and keep them fixed. Talk With an Advisor Explore Services Your technology should work. When it doesn't, your team loses time and your mission pays the price. One team keeps your computers, email, security, and cloud systems running, and provides senior-level guidance when bigger decisions come up. We've done this for over 20 years, and we stay with our clients: the same people, the same knowledge, year after year. Consistent engineers, shared documentation 20-minute response target for business-critical outages Board-ready reporting Aligned to your goals 20+ years, nationwide reach Smooth Start onboarding Security baseline from day one Americas-based support How Service Is Delivered #### Remote, on-site, or both. You don't need to be in DC. ##### Remote support, nationwide Most day-to-day support happens remotely: you call or submit a ticket, and an engineer who already knows your environment connects to fix it. Our help desk is staffed Monday through Friday, 7 AM to 7 PM ET, and serves clients across the country. ##### On-site when you want it Fully managed plans include on-site technician dispatch across the Washington, DC metro area for the work that's better done in person: hardware, office moves, and hands-on troubleshooting. ##### Your location, your choice Local teams often choose a hybrid of remote and on-site. Distributed teams anywhere in the US choose the remote-only plan. Same engineers, same documentation, same security baseline either way. More questions about coverage? See our FAQs on service area and on-site support. Who We Serve #### Built for teams of 10 to 75 people. Most of our clients have no IT staff of their own, or one person carrying everything. Some have a small internal team that needs backup. Either way, you get reliable systems, plain-language guidance, and people who understand the stakes behind the work - whether your setup is simple or complicated, and whether your files sit on a server down the hall or entirely in the cloud. Nonprofits come first on this list on purpose: ETTE has specialized in nonprofit and association IT since 2002. Small businesses get the same discipline that mission-driven work demands. Who We Serve ##### Nonprofits Protect your mission with technology that's reliable, secure, and budget-aware. ##### Associations Deliver member value with systems your team and board can count on. ##### Businesses Steadier support, stronger security, and clearer technology planning for businesses that have outgrown informal IT. What We Do #### Services built around how effective IT is delivered. Managed IT, built-in security, cloud operations, and senior advisory - one team, one plan, no surprise line items. ##### Managed IT Plans Fully managed, remote-only, and co-managed support for teams that need documented, responsive IT. ##### Security & Risk Day-one controls, GuardRail reporting, and Virtual CISO support when risk ownership needs to be explicit. ##### Cloud, Productivity & Backup The daily systems your team runs on, from productivity platforms and backup to managed server environments. ##### Strategic Advisory & AI Virtual CIO, security leadership, and AI advisory when decisions outgrow everyday ticket support. View All Services What It Costs #### Plans start at $125 per user, per month. No hourly billing and no per-device fees. You know the number before you sign, and it adjusts as your headcount changes. ##### Remote-Only Managed IT From $125 / user / month. Help desk, security, backups, and monitoring delivered remotely to teams anywhere in the US. Built for distributed staff. ##### Fully Managed IT From $150 / user / month. Everything in Remote-Only, plus on-site technician dispatch across the Washington, DC metro area and 30-day Smooth Start onboarding. ##### Co-Managed Partnership Custom, scoped to your environment. For organizations that already have internal IT and need added capacity, expertise, and around-the-clock security coverage. ##### What that works out to A user is a person who signs into your email, computers, or business apps - not a device. So a 10-person team on Remote-Only starts at 10 × $125 = $1,250 per month. A 25-person team on Fully Managed starts at 25 × $150 = $3,750 per month. That single number covers the help desk, security tools, backups, and monitoring for your whole team. Volume discounts are available as your user count grows, nonprofit pricing is available, and longer agreement terms receive a discount. We work out which of those apply to you on your call, before any proposal. See Full Pricing & Calculator Plan details, what is included at each tier, and how this compares to hiring in-house are all on the pricing page. Clarity that drives decisions #### Reporting your board can actually use. You shouldn't need a technical background to understand your technology posture. We turn system health, security posture, and project progress into plain-language reporting your leadership and board can act on. Explore GuardRail Why ETTE #### The same team, year after year. Accountable to your outcomes. A lot of IT providers look the same on paper. The difference is continuity. At ETTE, support and advisory come from long-term members of one team, backed by deep documentation of your environment. 20+ years serving clients nationwide 7 AM-7 PM staffed help desk, Monday through Friday ET, with 24/7 managed threat detection after hours 10 to 75 common staff range for managed IT relationships ##### What sets ETTE apart from other managed IT providers Most managed service providers rotate staff, reset relationships, and leave clients re-explaining their environments every year. ETTE works differently. Our engineers carry CISSP and CISA certifications, offer bilingual English and Spanish support, and maintain detailed documentation of every environment we manage - so you never start from zero. We serve nonprofits, trade associations, and small businesses nationwide, with on-site support available across the Washington, DC metro area for teams that want it in person. Whether your team runs on Microsoft 365, needs a cloud migration handled cleanly, or wants a Virtual CIO (a part-time technology executive) who shows up to board meetings prepared, ETTE has filled that role for organizations like yours for more than two decades. Our Process #### From clarity to confidence. ##### Discover We document systems, users, vendors, access, risks, and support history before making changes. 2 ##### Design We map the support model, security baseline, roadmap, owners, and budget priorities around how you operate. 3 ##### Implement We stabilize access, endpoints, backup, email, monitoring, and documentation with clear communication. 4 ##### Improve Quarterly reviews turn support trends, security posture, lifecycle needs, and projects into next actions. Who We Are #### A minority-owned managed service provider (MSP), built for mission-driven organizations nationwide ETTE has been a minority-owned business since 2002, headquartered in the DC metro area and serving nonprofits and associations nationwide. We understand the operating environment nonprofits and associations work in - the budget pressures, the lean IT staffing, the board scrutiny, and the compliance expectations that come with handling sensitive data and donor trust. Our clients range from 10-person teams operating on tight budgets to 75-person organizations managing complex Microsoft 365 environments, hybrid work policies, and board-level security reporting. Whatever the size, the expectation is the same: technology that works, support that shows up, and a team that stays. Is This You? #### Common reasons organizations come to ETTE Staff are creating IT tickets faster than your current provider resolves them. A security incident, audit finding, or board question surfaced a gap nobody owns. You're planning a move to Microsoft 365 or SharePoint and need it done without disruption. Or you've simply outgrown whoever set up your systems originally. Any of those sound familiar? That's a conversation worth having. What Clients Say #### Named clients. Verified reviews. ★★★★★ "ETTE consistently delivers professional, intuitive, and personal IT services, making them a standout partner for over a decade." Leroy Hughes · VP of Operations, Public Justice ★★★★★ "We have worked with ETTE for over 10 years... they help us think about long-term strategic solutions that will help us improve our efficiency and digital-first experience." Maricela Arias-Cantu · CEO, SOPHE ★★★★★ "ETTE is the Gold Standard for IT providers. If you are looking for an IT and Cyber Security provider, look no further!" Zachary Brewer · Verified Google Review Read more client testimonials → or verify our reviews on Google → Let's Talk #### Let's build a technology foundation that moves your organization forward. Talk With an Advisor Explore Services --- ## About ETTE Source: https://ettebiz.com/about About ETTE ### The ETTE team behind your technology. Real engineers who document your environment and stay with you - long-term managed IT relationships nationwide, headquartered in Washington, DC since 2002. Talk With an Advisor Call 202-345-1965 Who We Are #### Relationships over revenue. ETTE was founded in 2002 by Lawrence Guyot, a Washington, DC native, on a simple belief: technology should make serious organizational work easier, safer, and more resilient. The work has changed since then. In 2002 that meant server closets and tape backups you had to test by hand. Now it means cloud identity, ransomware, and auditors who want evidence rather than assurances. What hasn't changed is who the work is for: organizations in and around Washington that carry obligations to the people they serve and cannot afford to treat IT as an experiment. ##### Your systems, not a script Many providers run outsourced tiers and call-center models, where support starts from scratch every time you call. You explain your environment again, to someone who has never seen it. At ETTE, our Americas-based engineers document your systems and build working knowledge of your environment that stays with us. The engineer who picks up your ticket has already read the record of the last one. ##### Under-promising is a scoping decision, not a slogan The phrase gets used loosely, so here is what we mean by it. We quote timelines we can hold instead of timelines that win the meeting. If a migration realistically takes six weeks, we say six weeks, even when someone else in the room is saying three. We scope projects with the failure modes included, because the failure modes are the part that costs you money. When we don't know something, we say we don't know, and then we go find out. What follows is unglamorous. Delivery dates arrive early more often than late. Invoices match estimates. Neither is a marketing claim; both are what happens when you stop selling optimism. ##### Why clients stay Most of our clients have been with us for years. Many for a decade or more. They choose us for our capabilities. They stay because the relationship compounds: every ticket, migration, and audit adds to what we know about your environment, which makes the next problem faster to solve than the last one. That is hard to replicate and impossible to outsource. The People Behind ETTE #### Meet the ETTE team. ##### Lawrence Founder Washington, DC native; founded ETTE in 2002. ##### Taylor Chief Technology Officer ##### Brigida Consultant ##### Julie Senior Consultant ##### Camila Consultant ##### Valeria Consultant ##### Renatto Operations Manager ##### Victor Microsoft 365 Engineer (Tier II) ##### Jamie Wireless Infrastructure ##### Chris IT Support Technician I ##### Joel IT Technician II ##### Javier IT Technician I ##### Bria IT Support Technician I ##### Oni IT Support Technician III ##### Alejandro IT Engineer III ##### Catherine IT Support Technician III ##### Patricia IT Support Technician II ##### Gianpiero IT Support Technician I ##### Gary IT Support Technician I ##### Fabian Software Developer ##### Renzo IT Support Technician II How We Work #### How ETTE earns trust. ##### Documented environments Systems, accounts, vendors, and configurations are documented before we make changes. ##### Smooth Start onboarding A structured discovery and transition process reduces surprises from day one. ##### Board-ready reporting Plain-language visibility into system health, security posture, tickets, and projects. ##### Security-minded delivery Access, devices, backups, and monitoring managed as one operating picture. ##### Accessibility experience Practical accessibility awareness for nonprofits, associations, and businesses. ##### Local continuity Washington, DC roots and long-term relationships with the organizations we serve. Get Started #### Ready to meet your IT partner? Let's talk about how ETTE can support your organization. Talk With an Advisor Call 202-345-1965 --- ## Services overview Source: https://ettebiz.com/services Services ### Managed IT, security, and advisory as one operating model. A documented support relationship for businesses, with day-one security, cloud systems managed properly, and senior guidance when the stakes call for it. Talk With an Advisor See Pricing In Plain Terms #### What we actually do. ETTE is the IT department for organizations that don't have one, and extra hands for those that do. When something breaks, your staff calls our help desk and a real engineer fixes it. Behind the scenes, we keep your computers updated, your email and files backed up, and your accounts protected from phishing and break-ins. When bigger decisions come up, like a move to Microsoft 365, a security questionnaire from a funder, or a budget for next year's technology, senior people who already know your systems help you make the call. You don't need to know what any of this is called. Tell us what's not working, and we'll handle the rest. ##### Where we work Support is delivered remotely to clients across the United States. On-site technician dispatch covers the Washington, DC metro area. You do not need to be in DC to be a client. ##### When you call The help desk is staffed Monday through Friday, 7 AM to 7 PM ET. Business-critical outages carry a 20-minute response target; managed threat detection runs around the clock. See the full response targets. ##### Who you get The same Americas-based engineers, working from documentation of your environment. The person who picks up your ticket has already read the record of the last one. Service Model #### Start with the relationship. Layer the right expertise. Most clients begin with a managed IT relationship: help desk support, documentation, monitoring, planning for aging equipment, and security protections managed from day one. From there, ETTE adds what your organization actually needs: co-management alongside your internal IT staff, a Virtual CIO (a part-time technology executive who owns your roadmap and budget), a Virtual CISO (the same idea, for security and risk), AI advisory, or specialized infrastructure support. Every engagement is shaped by who you are. See how this model fits nonprofits, associations, and small businesses. Managed IT core Support, documentation, endpoint care, monitoring, patching, vendor coordination, and quarterly service review. Security baseline Identity, device, email, backup, awareness, and configuration controls managed from the start. Advisory layers Virtual CIO (technology leadership), Virtual CISO (security leadership), and AI advisory, scoped when leadership needs planning, governance, risk ownership, or adoption support. Managed IT Plans #### Three plans. One question: how much do you want us to own? Remote-Only, Fully Managed, and Co-Managed are levels of ownership, not separate service categories - security, cloud, and backup are included in every plan. The Security & Risk and Cloud/Productivity/Backup sections below describe that included baseline in more depth. Strategic Advisory (Virtual CIO, Virtual CISO, AI) is the one optional layer, scoped separately when leadership needs it. Comparison of ETTE managed IT plans Remote-Only Managed IT Fully Managed IT Co-Managed Partnership Best fit Distributed, remote-only teams Teams that want IT fully handled, on-site and remote Teams with internal IT that need added capacity and expertise Who owns day-to-day IT ETTE, remotely ETTE, on-site and remotely Shared - your internal team plus ETTE On-site support Remote only, no on-site visits Included - technician dispatch As scoped Security, cloud & backup baseline ✓ included ✓ included ✓ included Works with your internal IT Optional Optional Yes - alongside your team Add Virtual CIO (technology leadership), Virtual CISO (security leadership), or AI Advisory Add-on Add-on Add-on Every plan is scoped during a proposal conversation, so the mix of services inside it fits how your team actually works. See the full plan comparison and pricing, or talk with an advisor to find the right fit. Service Areas #### Four connected areas. One accountable team. Daily support, security, cloud systems, and senior guidance: most relationships start in one area and layer others over time. Use this map to understand how ETTE scopes the relationship; the links go deeper where a buyer or technical reviewer needs more detail. Managed IT Plans ##### Daily support and operating maturity. For organizations that need responsive support, documented systems, lifecycle planning, and fewer surprises. Choose fully managed, remote-only, or co-managed depending on the internal capacity already in place. Managed IT & On-Site Support Full-service support with on-site coverage when needed. Remote-Only Managed IT Remote managed IT for distributed teams. Co-Managed IT Extra capacity and expertise for internal IT teams. Security & Risk ##### Day-one controls, then deeper risk leadership where needed. Commercial security practices are part of the managed IT baseline. GuardRail makes posture visible, and Virtual CISO is available when an organization wants ongoing security leadership - often where auditors, funders, insurers, partners, or governance obligations are involved. Cybersecurity & Compliance Device, email, identity, cloud, and user protections. ETTE GuardRail Security posture scoring and board-ready reporting - included in every managed plan. Email Security Defense against phishing, impersonation, and takeover. Cloud Identity Protection Authentication, least privilege, monitoring, and reporting. Virtual CISO (security leadership) A part-time security executive: risk ownership, governance, and evidence requests. Cloud, Productivity & Backup ##### Cloud-first operations, with server support fully covered. ETTE supports teams already operating in SaaS and cloud platforms, organizations moving in that direction, and environments that still depend on hosted, cloud, or on-premise servers. Microsoft 365 / Google Workspace Licensing, configuration, collaboration, and optimization. Backup & Recovery File, email, and system recovery planning. Proactive Monitoring Monitoring for devices, network, and cloud services. PC & Mac Management One standard of care across mixed fleets. Cloud, Productivity & Backup Right-sized cloud, identity, and migration work. Managed Servers Specialized support for server-based environments. Strategic Advisory & AI ##### Senior guidance when decisions outgrow ticket support. A Virtual CIO gives you a part-time technology executive: direction, budget, vendors, and equipment planning without a full-time hire. AI advisory is separate: Foundations, Depth, and Build support for adopting AI tools safely, training your team, and building custom workflows later if you want them. Virtual CIO (technology leadership) A part-time technology executive: roadmaps, budgets, equipment planning, and vendor decisions. Virtual CISO (security leadership) A part-time security executive: risk ownership, governance, and evidence requests. AI Strategy & Enablement Foundations, Depth, and Build guidance for governed AI adoption. AI Advisory #### Put AI to work without putting your data at risk. Most teams already have shadow AI - staff using AI tools IT hasn't reviewed or approved - and no governance model. Our AI Strategy & Enablement practice starts with your outcomes, surfaces where AI is already in use, and builds a governed pilot program your team owns. Explore AI Advisory Talk With an Advisor ★★★★★ "ETTE is the Gold Standard for IT providers. I could write an essay about all of the ways in which they've helped our organization. If you are looking for an IT and Cyber Security provider, look no further!" Zachary Brewer · Verified Google Review Always Included #### What every engagement includes. Help desk support Live Mon-Fri, 7 AM-7 PM ET from engineers working from shared documentation. Proactive monitoring Issues are watched before they become staff-facing interruptions. Patch management Operating systems and common business applications patched on schedule. Documentation The foundation for responsive support, continuity, and smoother transitions. Clarity that drives decisions #### One dashboard. Plain-language answers. Across every service, your quarterly review turns system health, support, and project progress into plain-language reporting your leadership and board can act on - with security posture reported through ETTE GuardRail. Explore ETTE GuardRail Service Level Objectives #### How urgent work gets prioritized. Urgent 20 min Business-critical outages and security incidents. High Priority 60 min Single-user outages and blocked critical functions. Normal 90 min Standard requests, software issues, access problems, and troubleshooting. Change Requests 8 hrs Planned changes and new user provisioning. Actual response time depends on how a ticket is triaged, so these are the targets we manage to rather than a single flat number - severity varies too much for one guarantee to mean much. What you can count on: every ticket is triaged and prioritized the moment it's submitted, progress is visible in your quarterly reporting, and true emergencies escalate under the terms defined in your managed service agreement. Our Process #### From clarity to confidence. ##### Discover We listen, learn, and understand your goals and constraints. 2 ##### Design We build a right-sized plan aligned to your goals and budget. 3 ##### Implement We execute with care, minimize disruption, and keep you informed. 4 ##### Improve We continuously improve as your organization grows. Let's Talk #### Not sure where to start? We'll help you map it. Talk With an Advisor See Pricing --- ## Pricing Source: https://ettebiz.com/pricing Pricing ### Simple, transparent per-user pricing. No surprise invoices. You pay one flat rate for every active user, billed monthly - it scales up or down automatically as your headcount changes. Get a Quote Explore Services Plans #### Choose the right level of support. ##### Priced for 10 to 75 people That is the size range where per-user managed IT costs less than staffing the same coverage internally. Larger teams are welcome, but we scope those as a custom quote rather than list pricing. ##### Nonprofit pricing on every plan Nonprofits pay reduced per-user rates on all three plans. Ask for it in your quote and we will also help you capture TechSoup and Microsoft 365 nonprofit licensing discounts. ##### Remote anywhere, on-site in DC Every plan is delivered remotely to clients across the US. Fully Managed adds on-site technician dispatch across the Washington, DC metro area. You do not need to be in DC to be a client. Remote-Only Managed IT $125 + / user / month Remote-only managed IT for distributed teams - the same security and support, without on-site visits. Remote help desk, Mon-Fri, 7 AM-7 PM ET Cloud security & identity protection Endpoint detection & response Cloud backups (files & email) Proactive device monitoring Consistent, long-term engineers Fixed-price projects & migrations Get a Quote Fully Managed IT $150 + / user / month Complete managed IT with on-site support - everything your organization needs, with engineers dispatched when remote isn't enough. IT help desk, Mon-Fri, 7 AM-7 PM ET On-site technician dispatch Proactive maintenance & monitoring Security tools & endpoint protection Cloud backups (files & email) Consistent, long-term engineers 30-day Smooth Start onboarding Fixed-price projects & migrations Get a Quote Co-Managed Partnership Custom Scoped to your needs - ETTE supplements your internal IT staff with extra capacity, expertise, and around-the-clock security coverage. Day-to-day operational support Strategic advisory (senior technology guidance) Endpoint detection & response Patch management 24/7 managed threat detection & response Backup & disaster recovery Coverage during staff absences Pricing scoped to your environment Contact Us ##### What does "per user" actually mean? A user is a person who signs into your email, computers, or business apps - not a device. So a 5-person team on the Fully Managed plan starts at 5 × $150 = $750 per month. A 10-person team starts at $1,500. A distributed 5-person team on Remote-Only starts at 5 × $125 = $625 per month. That one number covers the help desk, security tools, backups, and monitoring for everyone - costs you'd otherwise pay for separately - and it adjusts automatically when your headcount changes. Volume discounts are available for larger user counts, and we work out the exact figures with you on your call, before any proposal. For an estimate matched to your team, use the price calculator below. ##### How that compares to hiring The honest comparison is not against zero, it is against staffing the same coverage yourself. The median annual wage for a computer user support specialist is $60,340 (U.S. Bureau of Labor Statistics, May 2024), before benefits, payroll taxes, equipment, or training. On Fully Managed, a 10-person team runs about $18,000 a year and a 25-person team about $45,000. Both sit below one support hire's median salary, and neither takes vacation, resigns, or leaves you uncovered during a security incident. Above roughly 75 people the math shifts and an internal hire starts to make sense, which is usually where a co-managed arrangement fits better than a full plan. Nonprofit pricing available. Scoped to your headcount, support model, and service mix - you see exact per-user numbers in your proposal, before you commit. We also help nonprofits capture TechSoup and Microsoft 365 nonprofit licensing discounts alongside. Compare Plans #### Find the right fit. Scroll to compare → Comparison of ETTE managed IT plans Remote-Only Managed IT Fully Managed IT Co-Managed Partnership Best fit Distributed, remote-only teams Teams that want IT fully handled, on-site and remote Teams with internal IT that need added capacity and expertise On-site support Remote only, no on-site visits Included - technician dispatch As scoped Help desk (Mon-Fri, 7 AM-7 PM ET) ✓ ✓ Shared / overflow Monitoring & patching ✓ ✓ ✓ Managed security protection ✓ ✓ ✓ Cloud productivity & identity ✓ ✓ As scoped Backup & recovery ✓ ✓ ✓ Projects & migrations Fixed-price Fixed-price As scoped Smooth Start onboarding ✓ ✓ ✓ Virtual CIO (technology leadership) Add-on Add-on Core to the partnership Virtual CISO (security leadership) Add-on Add-on Add-on AI Strategy & Enablement Add-on Add-on Add-on Works with your internal IT Optional Optional Yes - alongside your team Virtual CIO, Virtual CISO, and AI Strategy & Enablement are scoped as separate advisory engagements - each distinct, none bundled into the others. Most funder, insurer, and partner security questionnaires are covered by the evidence your managed plan already produces - documentation, access controls, backup evidence, and GuardRail posture reporting; Virtual CISO is for ongoing questionnaire ownership, auditor coordination, and formal risk programs. Every plan is scoped during a proposal conversation. Talk with an advisor to find the right fit. ★★★★★ "The ETTE team was fast, responsive, and helpful. I had struggled for hours on something that it took half an hour with the skilled support team at ETTE to solve. Definitely recommend!" Alex Breckel · Verified Google Review Price Calculator #### Estimate your monthly investment. Use this calculator to get a quick ballpark figure. Select your support plan, enter your user count, and toggle any advisory services you're considering. IT costs shouldn't be a mystery. Most small businesses know they need reliable IT support - they just want to understand what they're paying for before they commit. ##### How many people need IT support? Count anyone who logs into your network, email, or business apps - staff, contractors, or volunteers. Exclude accounts that only receive email. users Select your support plan Remote-Only Managed IT $125 / user / mo Remote support - no on-site visits Fully Managed IT $150 / user / mo On-site + remote support ##### Advisory add-ons (optional) Virtual CIO Technology leadership, roadmap & strategic guidance $2,500 / mo Virtual CISO Security governance, risk, policy & compliance leadership $2,500 / mo Monthly Estimate $1,250 /mo This is a good starting estimate. Each organization is different - final pricing is confirmed in a formal proposal. Get a Formal Quote This calculator is a helpful estimate, not final pricing. The particulars of each organization - environment complexity, headcount, and service mix - require refinement. Most environments land within about 10-15% of the base per-user rate; servers, compliance requirements, and complex environments account for the difference. A firm, detailed quote will be provided in a formal proposal after a brief discovery conversation with our team. Volume discounts apply for larger user counts, and organizations that subscribe to multiple advisory services receive additional discounting - neither is reflected in this estimate. Advisory Scoping #### How is advisory and AI pricing scoped? We do not bundle advisory services into managed IT by default because AI implementations are unique and therefore custom priced. The point is to make the scope clear before you buy: cadence, decision rights, deliverables, and the level of ETTE involvement. Virtual CIO ##### Technology leadership Scoped around roadmap, budget, lifecycle, vendor decisions, and senior-level guidance. This is high-level technology strategy, not hands-on AI implementation. Typical shape: monthly or quarterly advisory cadence, with project support scoped separately. Virtual CISO ##### Security leadership Scoped around security governance, risk register ownership, policy, evidence requests, vendor-risk review, and board/security reporting beyond the managed security baseline. Typical shape: fractional security leadership with a defined meeting cadence and evidence responsibilities. AI Advisory ##### Foundations, Depth, Build Scoped by maturity level: path-finding and governance first, broader organizational implementation second, and agentic/custom build planning only when readiness is proven. White Glove service provided; staff training included. Typical shape: Foundations as a defined first engagement; Depth as ongoing enablement; Build as discovery-first and separately estimated. Always Included #### What does every plan include? ##### Help Desk Support Live Mon-Fri, 7 AM-7 PM ET from engineers who document your environment and know your setup. ##### Managed Security Baseline Identity, endpoint, email, backup, awareness, and monitoring controls managed from the start. ##### Proactive Monitoring Continuous monitoring of your infrastructure so issues are detected and addressed before they affect workflow. ##### Patch Management Operating systems and common business applications patched on schedule - included, not an add-on. ##### Documentation Your environment documented completely - every device, account, and configuration - as the foundation of responsive support. ##### Vendor Coordination Support across core technology vendors so your team is not left translating between providers. ##### Device & Software Deployment New-hire setup is part of managed IT: devices are enrolled in endpoint management and secured before handoff. Rolling a business application out to the whole team is handled centrally through the same platform we use for patching, not machine by machine. ##### After-Hours Coverage Outside the 7 AM-7 PM ET help desk window, managed detection and response watches for threats around the clock, and your service agreement defines the escalation path for business-critical outages. See response targets. Service Level Objectives #### How is urgent work prioritized? ##### Urgent 20 min Target response for business-critical outages, security incidents, and failures affecting multiple users. ##### High Priority 60 min Target response for single-user outages, significant degraded performance, and blocked critical functions. ##### Normal 90 min Target response for standard support requests, software issues, access problems, and troubleshooting. ##### Change Requests 8 hrs Target turnaround for planned changes, new user provisioning, and non-urgent infrastructure tasks. "Response" means a technician engaged on your ticket - not an automated reply. Actual response time depends on how a ticket is triaged, so these are the targets we manage to rather than a single flat number - severity varies too much for one guarantee to mean much. What you can count on: every ticket is triaged and prioritized the moment it's submitted, and progress is visible in your quarterly reporting. Help desk hours are 7 AM-7 PM ET, Monday through Friday; for business-critical outages and security incidents outside those hours, every managed service agreement defines an after-hours emergency escalation path. Common Questions #### Pricing FAQs. How is pricing calculated? ETTE uses a per-user monthly model based on your active user count. Your monthly cost is the per-user rate multiplied by the number of active users, and it adjusts as your headcount changes. There are no per-device fees or hidden infrastructure charges in our standard plans. Volume discounts are available for larger user counts, and we confirm the exact figures with you on your call, before any proposal. What is included in managed services? Managed services include help desk support, proactive monitoring, patch management, layered cybersecurity (managed detection and response and managed email security), cloud collaboration and backup, disaster recovery, and vendor coordination. The exact mix depends on your plan tier - contact us for a detailed scope. Are there contract minimums? ETTE typically works with one-year service agreements, and longer terms receive pricing discounts. Our agreements include transparent termination terms - we do not lock clients in with punitive exit clauses. We earn your continued business by delivering consistent value. Do you offer nonprofit pricing? Yes. Nonprofit pricing is available and scoped to your headcount, support model, and service mix - you see exact per-user numbers in your proposal, before you commit to anything. We also help nonprofits capture discounted and donated licensing through programs like TechSoup and Microsoft 365 nonprofit plans, which often offsets a meaningful share of total technology cost. What is the onboarding process? Every plan includes a structured 30-day Smooth Start at no additional cost. We begin by documenting your environment - every device, account, application, and configuration - before making changes. This discovery phase typically takes two to four weeks and becomes the foundation for responsive, informed support. Let's Talk #### Ready for predictable IT costs? Get a custom quote based on your user count, environment, and goals - no obligation. Get a Quote --- ## FAQs Source: https://ettebiz.com/faqs FAQs ### Answers, in plain language. The questions organizations ask most about managed IT, security, pricing, and working with ETTE. Talk With an Advisor Common Questions #### Frequently asked questions. What does managed IT include? ETTE managed IT includes help desk support, proactive monitoring, cybersecurity, cloud management, backup and disaster recovery, patch management, and vendor coordination, with senior advisory scoped separately. We document your environment completely and build a plan around what you actually need. How is pricing structured? ETTE uses a per-user monthly model. Your cost is your active user count times your per-user rate. Full managed plans generally start at $150 per user per month; remote-only plans start at $125 per user per month. Pricing scales with headcount - no surprise invoices or hidden fees. Volume discounts are available for larger user counts, and nonprofit pricing is available. We confirm which of those apply to you on your call, before any proposal. What are your response objectives? We work to the following response objectives: Urgent 20 minutes, High Priority 60 minutes, Normal 90 minutes, and Change Requests 8 hours. Actual response time depends on how a ticket is triaged, so we manage to these targets rather than a single flat number - severity varies too much for one guarantee to mean much. Every ticket is triaged and prioritized the moment it's submitted, and true emergencies escalate under the terms defined in your managed service agreement. The help desk is staffed Monday through Friday, 7 AM to 7 PM ET (6 AM to 6 PM CT, 5 AM to 5 PM MT, 4 AM to 4 PM PT). How do you approach cybersecurity? Our managed security program takes a layered approach - protecting your people, devices, identities, data, and cloud as one connected system. That includes managed detection and response, endpoint and email protection, identity and access protection, web filtering, security awareness training, and documented policies. ETTE GuardRail consolidates it all into a single posture dashboard. What cloud platforms do you support? ETTE manages your productivity suites, servers, backup, identity and access, and selected cloud and hybrid environments as part of the managed service suite - set up, secured, and supported by a team that knows your environment. How do you handle disaster recovery? We implement automated backup with tested recovery procedures, document what is backed up and how often, and run regular restoration tests. Backup configuration and restoration testing are included in managed plans, and we help you define and meet your recovery time and recovery point objectives. Do you support remote and hybrid teams? Yes. ETTE supports remote and hybrid workforces with secure access, endpoint management for off-site devices, cloud collaboration, and complete remote onboarding for new staff. Remote-Only Managed IT, our remote-only managed plan, is built specifically for distributed teams - without on-site visits. What is your onboarding process? ETTE uses a structured 30-day Smooth Start, included at no extra cost. We begin with a discovery phase documenting every device, account, application, vendor relationship, and configuration - typically two to four weeks - before making changes. That documentation becomes the foundation for everything we do. What reporting do you provide? Reporting comes in two parts. Your quarterly service review covers support trends, ticket themes, service objectives, technology lifecycle, and project progress, with operational recommendations and owners. ETTE GuardRail is your security posture report: identity and access, configuration and controls, and security-awareness readiness, with recommendations that can support board updates, funder questionnaires, and due-diligence requests. Do you provide strategic IT planning? Yes. ETTE is not a break-fix shop. Our strategic advisory provides technology roadmapping, budget and lifecycle planning, vendor-neutral selection guidance, and high-level AI readiness conversations. AI strategy, pilots, training, rollout, and enablement are scoped through AI Strategy & Enablement Advisory. Who is my main point of contact? ETTE uses a team-based model instead of a single account manager. Your environment is documented and shared across our Americas-based engineering team - the same engineers who onboard you handle your support. This removes single points of failure and keeps support consistent. Do you specialize in nonprofits, associations, and businesses? Yes. ETTE has focused on nonprofits, associations, and businesses, headquartered in Washington, DC and serving clients nationwide, for more than two decades. We understand the security questions, budget realities, and operational realities of organizations that commonly have 10 to 75 staff. Many clients have been with us for a decade or more. How do you help with security and evidence requests? ETTE helps with the foundational evidence most organizations need: access controls, backup evidence, documentation, and security posture reporting through ETTE GuardRail. When you need ongoing auditor coordination, vendor-risk review, questionnaire ownership, or security governance, that is handled through Virtual CISO. What happens after hours? Our staffed help desk operates Monday through Friday, 7 AM to 7 PM ET. Outside those hours, managed detection and response provides around-the-clock threat monitoring, and emergency escalation procedures for business-critical outages are defined in your service agreement. What is your service area? We provide onsite services in the Washington, DC metro area within 10 miles. We provide remote only services to clients throughout the United States of America. Do you provide on-site IT support in Washington, DC? Yes. ETTE is headquartered at 5335 Wisconsin Ave. NW in Washington, DC, and dispatches technicians across the DC metro area when an issue can't be resolved remotely. See IT support in Washington, DC for coverage and response objectives. Still Have Questions? #### Let's find the right answer together. Talk With an Advisor --- ## Contact Source: https://ettebiz.com/contact Contact ### Let's talk about your IT and your organization. Managed IT, security, and AI advisory with a practical roadmap, clear next steps, and a team that learns your environment. #### Contact information Phone 202-345-1965 Email sales@ette.biz | helpdesk@ette.biz Office 5335 Wisconsin Ave. NW, Suite 440 Washington, D.C. 20015 Hours Monday-Friday, 7:00 AM-7:00 PM ET (6 AM-6 PM CT, 5 AM-5 PM MT, 4 AM-4 PM PT) Book a 30-Minute Call Take the Readiness Check View Capabilities Brief #### Send us a message Your message goes straight to our team - expect a reply within a few hours during business hours (Mon-Fri, 7:00 AM-7:00 PM ET). Prefer to pick a time right now? Book a 30-minute call - a working review of your current setup, and you leave with a ballpark and clear next steps, no pitch. If it's urgent, call 202-345-1965. --- ## Capabilities brief Source: https://ettebiz.com/capabilities-nonprofits-associations Capabilities Brief ### Managed IT, security, advisory, and AI for established operations. A concise overview for nonprofit, association, and established-organization leaders comparing support models, security expectations, and advisory needs. Talk With an Advisor Print / Save as PDF At A Glance #### What ETTE provides as one operating partner. ##### Managed IT Plans Help desk, monitoring, patching, endpoint support, vendor coordination, and documentation. ##### Security & Risk Identity, endpoint, email, web, backup, awareness, GuardRail reporting, and Virtual CISO when needed. ##### Cloud, Productivity & Backup Productivity platforms, identity and access, backup, monitoring, and managed servers where needed. ##### Strategic Advisory & AI Virtual CIO, lifecycle planning, vendor guidance, AI Foundations, AI Depth, and later-stage Build. Best Fit #### For teams that need maturity without bloat. ETTE is built for nonprofits, associations, and businesses that need a more mature IT partner without building a large internal department. ##### Nonprofits Mission-first teams managing donor, client, program, grant, finance, and board obligations. ##### Associations Member-driven teams balancing AMS, member portals, dues, events, committees, and board reporting. ##### Businesses Private businesses ready for steadier support, stronger security, and documented operations. ##### Co-Managed Teams Organizations with internal IT leadership that need added capacity, coverage, or specialist support. First 90 Days #### What the first phase usually establishes. ##### Discover Systems, users, vendors, licenses, access, risks, and support history. 2 ##### Document Environment records, support runbooks, owners, and critical dependencies. 3 ##### Stabilize High-priority access, backup, patching, endpoint, email, and identity issues. 4 ##### Report Plain-language view of health, security posture, open actions, and priorities. 5 ##### Plan Roadmap, budget considerations, lifecycle needs, and project sequencing. Common Buyer Questions #### What leaders usually need before a proposal. ##### What is included? Managed support, documentation, monitoring, patching, security baseline, backup, reporting, and strategic guidance depending on plan. ##### How is security handled? As a managed baseline first, with Virtual CISO available when governance, auditors, evidence requests, or vendor-risk work require leadership. ##### How does AI fit? Foundations defines the path, Depth supports organization-wide implementation, and Build is reserved for later-stage agentic or custom work. ##### How is pricing scoped? Managed IT is per-user pricing that scales with headcount - no hard seat minimum. Advisory, Virtual CISO, and AI are scoped separately by cadence, deliverables, and level of involvement. Review Pricing Take Readiness Check Credentials & Past Performance #### The record behind the brief. ##### Since 2002 Founded and headquartered in Washington, DC; a minority-owned firm serving nonprofits, associations, and businesses nationwide for over 20 years. ##### Certified Engineers Senior engineers carry CISSP and CISA certifications, working from shared documentation across an Americas-based team. ##### Decade-Long Clients Named client relationships measured in decades, including a 10+ year partnership with the Society for Public Health Education (SOPHE). Read testimonials. ##### Documented Work Dated, metric-backed case studies: a 17-day managed IT transition and a 2.38 TB SharePoint migration, among others. Next Step #### Use this brief to start a sharper conversation. Talk With an Advisor Explore Services --- ## Readiness assessment Source: https://ettebiz.com/readiness-assessment Readiness Check ### A practical way to decide what to tackle first. Use this short self-check to frame a conversation about managed IT maturity, security posture, and governed AI adoption. Start the Check View Capabilities Brief Interactive Check #### Score the current state. See the next step. Answer the prompts below with the option that best matches how your organization works today. Your score updates beside the questions, and the recommendation becomes meaningful once all 16 prompts are complete. 0 /32 0 /16 answered Your Score 0 / 32 0 of 16 prompts answered Operations 0/8 Security 0/8 AI Foundations 0/8 AI Depth / Build 0/8 ##### Complete the check to see your result. As you answer, this panel will show whether the better next conversation is stabilization, maturity planning, advisory, or AI enablement. AI guidance will update once the AI prompts are answered. ###### Watch Items Complete the prompts to see the highest-priority gaps. Review This With ETTE Reset Next Step #### Bring your score. We'll help interpret it. Review Your Readiness Explore AI Advisory --- ## Managed IT & On-Site Support Source: https://ettebiz.com/service-helpdesk Managed IT & On-Site Support ### Managed IT services and support, from people who know your setup. Responsive help desk and on-site IT from engineers working from current documentation, shared context, and plain-language service reporting. Talk With an Advisor Explore Services Who It's For #### Built for teams that need IT to just work. ##### Ready for service maturity Businesses - whether you have no IT department, a lean internal team, or an incumbent provider that no longer fits - ready for documented, accountable IT. ##### Mixed environments Teams running a blend of Windows and Mac who need consistent support across both. ##### Hybrid & multi-site Staff working across offices and from home who expect the same fast, friendly support everywhere. What ETTE Manages #### What does day-to-day managed IT include? Help desk, Mon-Fri, 7 AM-7 PM ET A staffed help desk during business hours, backed by shared documentation, so support starts with context instead of rediscovery. On-site technician dispatch When an issue can't be solved remotely, a technician comes to you - for the cabling, hardware, and hands-on problems that need someone in the room. Device setup & user onboarding New hires get a configured, secured, ready-to-work computer on day one, instead of losing their first week to IT setup. Windows & Mac support Support for both Windows and Mac, so a mixed environment gets the same standard of care without finger-pointing. Staff offboarding & transitions When someone leaves, access is shut off and devices are reclaimed promptly - closing a common and serious security gap. Vendor coordination We deal with your internet, software, and equipment vendors on your behalf, so your staff aren't stuck on hold sorting out whose problem it is. Asset & environment documentation A complete, maintained record of your devices, accounts, and configurations - so support is fast and nothing depends on one person's memory. 30-day Smooth Start onboarding A structured first month that documents your whole environment before we change anything, so the relationship starts from understanding, not guesswork. Explore in Depth Remote & hybrid support Managed Mac devices Clarity that drives decisions #### Support you can see and measure. Your quarterly service review puts support in plain language - ticket trends, recurring themes, priority targets, and the health of the systems your team depends on - with clear recommendations and owners. No technical background required. Talk Through Reporting Process #### A proven process. An ongoing partnership. ##### Document We map your devices, users, and configurations before we touch anything. 2 ##### Onboard A 30-day Smooth Start gets your team and tools fully set up. 3 ##### Respond Fast, friendly help desk and on-site support when you need it. 4 ##### Resolve We fix root causes, not just symptoms, and keep you informed. 5 ##### Improve We refine your environment and report on what changed. Related Services #### Connected to the rest of ETTE. ##### Cybersecurity & Compliance Layered protection for your devices, email, cloud accounts, and people. ##### Cloud, Productivity & Backup Productivity platforms, identity, backup, and monitoring, managed. ##### ETTE GuardRail Security posture scoring and board-ready reporting. ##### AI Strategy & Enablement Vendor-neutral, governed AI adoption that starts with your work. Common Questions #### Managed IT & On-Site Support FAQs. What are your help desk hours and response objectives? The help desk is staffed Monday through Friday, 7 AM to 7 PM ET. We work to these response objectives: Urgent 20 minutes, High Priority 60 minutes, Normal 90 minutes, and Change Requests 8 hours. Every ticket is triaged the moment it's submitted. Do you provide on-site support? Yes. When an issue can't be solved remotely, a technician comes to you. On-site service is available in the Washington, DC metro area, and remote support is available nationwide. What does onboarding look like? Every plan includes a structured 30-day Smooth Start at no extra cost. We document your whole environment - every device, account, application, and configuration - before we change anything. Let's Talk #### Responsive IT. With advisory context. Let's give your staff support that is fast, documented, and connected to the bigger picture. Talk With an Advisor --- ## Remote-Only Managed IT Source: https://ettebiz.com/service-remote Remote-Only Managed IT ### Remote-only managed IT for distributed teams. The same documented service desk and engineering bench for distributed and remote-only teams - secure access, managed devices, and complete remote onboarding. Talk With an Advisor Explore Services What's Included #### Full managed IT, delivered remotely. Remote help desk Fast support delivered online and by phone, so distributed staff get help wherever they work. Secure remote access Protected ways for your team to reach the files and systems they need from anywhere, without opening the door to attackers. Off-site endpoint management Laptops at home or on the road are kept updated, secured, and monitored as if they were in the office. Remote onboarding New hires are set up, secured, and productive on day one without ever visiting an office. Device provisioning Computers are configured and shipped ready to work, so remote staff don't wait on IT to get started. Cloud collaboration support Help with the everyday tools - email, files, chat, meetings - that keep a distributed team working together. Proactive monitoring We watch systems for trouble and act before small issues become outages, even with no one on site. Documentation A maintained record of your environment, so remote support is fast and consistent no matter which engineer is assigned. How It Fits #### Managed IT for distributed teams. Remote-Only Managed IT delivers a responsive service desk and engineering bench for distributed and remote-only teams - wherever your people work, support starts from documented knowledge of your environment. Explore Services Related Services #### Part of one connected service. ##### Managed IT & On-Site Support Help desk and on-site engineers who already know your setup. ##### Cybersecurity & Compliance Layered protection for devices, email, identity, and people. ##### Cloud, Productivity & Backup Productivity platforms, identity, backup, and monitoring, managed. ##### Virtual CIO Fractional technology leadership, roadmaps, and budgets. Common Questions #### Remote-Only FAQs. Do you support teams outside Washington, DC? Yes. Remote-Only Managed IT is available to organizations across the United States. Support is delivered by the same DC-based team, with help desk hours of 7 AM to 7 PM ET (6 AM to 6 PM CT, 5 AM to 5 PM MT, 4 AM to 4 PM PT), Monday through Friday. What happens if a problem cannot be fixed remotely? Most issues resolve remotely, but when hands-on work is required we coordinate it - scoped on-site dispatch in the DC metro area, or guided local support for distributed teams. How much does remote-only support cost? Plans start at $125 per user per month, with nonprofit pricing available. Every plan includes the 30-day Smooth Start onboarding at no additional cost. Let's Talk #### Support your distributed team the way they work. Let's give distributed staff support with the same context and maturity as an on-site engagement. Talk With an Advisor --- ## Co-Managed IT Source: https://ettebiz.com/service-comanaged Co-Managed IT ### Your team, extended. Extend your internal IT team with ETTE's capacity, expertise, and around-the-clock security coverage - without replacing your staff. Talk With an Advisor Explore Services What's Included #### Capacity and expertise, added to your team. Day-to-day operational support We handle the routine tickets and maintenance, freeing your internal staff for the projects only they can do. Overflow & project capacity Extra hands when your team is stretched or a big project lands, without hiring for a temporary peak. Specialized expertise on demand Access to security, cloud, and infrastructure specialists you can't justify employing full time. 24/7 managed threat detection Around-the-clock monitoring and response, covering the nights and weekends your internal team can't. Patch management Updates applied consistently across your systems, closing the security holes attackers count on you to ignore. Backup & disaster recovery Tested backups and a recovery plan, so a failure or attack doesn't become a permanent loss. Coverage during staff absences Continuity when your IT lead is on vacation, out sick, or between roles - the lights stay on. Shared documentation & tooling We work inside shared records and tools, so your team and ours stay in sync instead of duplicating effort. How It Fits #### Alongside your internal team. Co-Managed IT extends your internal team with ETTE's capacity, expertise, and coverage - we fill the gaps, share tooling and documentation, and step up when you need us, without replacing your staff. Explore Services Related Services #### Part of one connected service. ##### Managed IT & On-Site Support Help desk and on-site engineers who already know your setup. ##### Cybersecurity & Compliance Layered protection for devices, email, identity, and people. ##### Cloud, Productivity & Backup Productivity platforms, identity, backup, and monitoring, managed. ##### Virtual CIO Fractional technology leadership, roadmaps, and budgets. Common Questions #### Co-Managed FAQs. Who is co-managed IT for? Organizations with internal IT staff who need added capacity, specialized expertise, or coverage - without replacing the team they have. Does our internal IT team stay in control? Yes. We work alongside your staff under a clearly scoped division of responsibilities: you decide what stays in-house and what ETTE owns. How is co-managed IT priced? Pricing is scoped to your environment during a proposal conversation, based on the responsibilities ETTE takes on and your user count. Let's Talk #### Add capacity and expertise, not headcount. Let's design coverage that fits your team. Talk With an Advisor --- ## Cybersecurity & Compliance Source: https://ettebiz.com/service-cybersecurity Cybersecurity & Compliance ### Layered protection, managed by ETTE. Managed cybersecurity that reduces risk, strengthens everyday controls, and keeps your organization moving - without adding work for your team. Schedule a Consultation Explore Services Security your board can understand. Clear reporting, practical controls, steady guidance. Who It's For #### Built for organizations that need practical security maturity. ##### Sensitive data You hold sensitive data and serve people, members, clients, or donors who count on you. ##### Security evidence You need clear evidence for funders, insurers, partners, or board questions. ##### Cloud operations You depend on reliable systems across teams, locations, and the cloud. What ETTE Manages #### Which security controls does ETTE manage? These protective controls are the managed security baseline - included in our managed IT and security service, not sold as a separate program. Managed detection & response Around-the-clock watching for signs of an attack, with a team ready to step in and contain it - so a threat at 2 a.m. doesn't wait until morning. Endpoint protection Modern protection on every laptop and desktop that catches and isolates threats on the device itself, where most attacks actually land. Email protection Filtering that stops phishing, impersonation, and malicious attachments before they reach the inbox - the entry point for most breaches. Identity & access protection Making sure the right people - and only the right people - can reach your systems, with multi-factor sign-in and access that matches each role. Web filtering Blocking known-malicious and risky websites before they load, so a mistaken click is far less likely to turn into an infection. Managed firewall Where your environment includes one, we configure and maintain the network firewall so the boundary between your network and the internet stays controlled. Provided where applicable. Security awareness training Short, regular training and simulated phishing that helps staff recognize the scams aimed at them - turning your team into a line of defense instead of the weak point. Policies & documentation Written, current records of how your environment is configured and protected - the proof you reach for when an insurer, funder, or auditor asks how security is handled. Explore in Depth Email security Identity & access protection Control Families #### Organized for board and evidence conversations. The managed security baseline is organized around familiar control families so leaders can understand what is covered and where work remains. This is a practical mapping approach, not a certification, audit opinion, or compliance attestation. ##### Identity & Access Multi-factor sign-in, role-based access, account reviews, and joiner/mover/leaver workflows. ##### Device Protection Endpoint security, patching, configuration standards, monitoring, and response actions. ##### Email & Web Defense Controls that reduce phishing, impersonation, malicious links, risky websites, and staff exposure. ##### Backup & Recovery Documented backup coverage, restoration testing, and recovery expectations for key systems. ##### Awareness & Training Short, recurring education and phishing readiness work so staff understand common risks. ##### Monitoring & Response Ongoing threat monitoring, escalation, containment, and incident coordination where needed. ##### Documentation Current records of systems, vendors, access, configurations, controls, and security decisions. ##### Governance Handoff Clear recommendations, owners, and next steps for board, insurer, funder, or vendor questions. Where useful, ETTE can discuss how these areas relate to common security frameworks such as CIS Controls or NIST-style control categories. We do not present that mapping as a certification or as proof of compliance with a regulated standard. Layered Approach #### Security is a system, not a product. No single tool keeps an organization safe. Cybersecurity & Compliance protects your people, devices, identities, data, and cloud as one connected system - designed, managed, and continuously improved by our team. Users & devices Identity Protection Data & applications Cloud & network Board-Ready Reporting #### Security your board can understand. Clear, plain-language reports that connect security to organizational risk - delivered on a cadence that works for you. Explore GuardRail Process #### A proven process. An ongoing partnership. ##### Assess We evaluate your environment, risks, and current controls. 2 ##### Design We build a tailored security plan and roadmap. 3 ##### Protect We implement and manage your controls. 4 ##### Monitor We continuously monitor, detect, and respond. 5 ##### Improve We refine controls and report on progress. Related Services #### Connected to the rest of ETTE. ##### ETTE GuardRail Security posture scoring and the guidance to act on it. ##### Cloud, Productivity & Backup Productivity platforms, identity, backup, and monitoring, managed. ##### AI Strategy & Enablement Vendor-neutral, governed AI adoption that starts with your work. ##### Managed IT & On-Site Support Responsive support from people who know your environment. When You Need More #### From managed security to security leadership. The controls above cover most organizations. But when you face third-party auditors, vendor-risk reviews, insurer or funder questionnaires, ongoing evidence requests, or a need for someone to own security governance, that's a leadership role - not another tool. A Virtual CISO adds fractional security leadership on top of your managed security: a risk register, policy ownership, evidence and questionnaire support, vendor-risk review, audit coordination, a remediation roadmap, and board-level reporting. Explore Virtual CISO Common Questions #### Cybersecurity & Compliance FAQs. What does managed cybersecurity include? Managed detection and response, endpoint protection, email protection, identity and access protection, web filtering, security awareness training, and documented policies - included in our managed IT and security service, not sold as a separate program. Is this a compliance certification? No. We map the managed security baseline to familiar control families (such as CIS Controls or NIST-style categories) so leaders can see what is covered, but we do not present that as a certification, audit opinion, or compliance attestation. Who watches for threats after hours? Managed detection and response provides around-the-clock threat monitoring, with a team ready to step in and contain an attack - so a threat at 2 a.m. doesn't wait until morning. Emergency escalation is defined in your service agreement. Let's Talk #### Stronger security. Steady guidance. Let's build a security program that protects your organization and earns your board's confidence. Schedule a Consultation --- ## ETTE GuardRail Source: https://ettebiz.com/service-guardrail ETTE GuardRail ### Your security posture, in plain language. A board-ready security report that brings your security posture, configuration, identity and access controls, and security-awareness readiness into one plain-language view - with clear recommendations and owners. Included in every managed plan, at no separate charge. Talk With an Advisor Explore Services Who It's For #### For leaders who want one source of truth. ##### Boards & leadership Decision-makers who need assurance without wading through technical detail. ##### Security due diligence Organizations answering funder, member, partner, or board security questions. ##### Risk owners Leaders who want posture, gaps, and progress tracked in one place. On The Agenda #### What does your security review cover? ##### Security posture score A single, plain-language score with its trend over time, so leadership can see at a glance whether your security is getting stronger quarter over quarter. 02 ##### Identity & access posture The state of multi-factor sign-in, conditional-access rules, and privileged or admin accounts - the controls that decide whether a stolen password becomes a breach. 03 ##### Configuration & controls A review of how email, endpoint, web protection, cloud and SaaS, and backup are configured - each checked against good practice and scored, so misconfigurations surface before attackers find them. 04 ##### Security-awareness readiness Training completion across your team and how staff perform on phishing simulations, so you can see human readiness improving over time. 05 ##### Remediation roadmap & owners Prioritized security next steps with named owners and target dates, so every review ends with a clear plan - not just a status update. GuardRail focuses on security posture. Support trends, ticket themes, service objectives, technology lifecycle, and project progress are covered in your broader quarterly service review. Clarity that drives decisions #### A security report your board can actually use. GuardRail turns your security posture into a plain-language report - posture score, identity and access, configuration and controls, and security-awareness readiness - and ends with prioritized recommendations, named owners, and next steps. It plugs into your broader service review and is built for board packs, funder questionnaires, and due-diligence requests. Book a Review Process #### A proven process. An ongoing partnership. ##### Baseline We assess your current posture and controls. 2 ##### Map We map findings to your security questions, evidence requests, and board concerns. 3 ##### Prioritize We build a clear, right-sized remediation roadmap. 4 ##### Report We deliver plain-language reporting on a steady cadence. 5 ##### Improve We track progress and raise your score over time. Related Services #### Connected to the rest of ETTE. ##### Cybersecurity & Compliance The controls GuardRail measures and improves. ##### Cloud, Productivity & Backup Productivity platforms, identity, backup, and monitoring, managed. ##### AI Strategy & Enablement AI Foundations, AI Depth, and AI Build for governed adoption. ##### Managed IT & On-Site Support Responsive support from a team that knows you. Common Questions #### ETTE GuardRail FAQs. What is ETTE GuardRail? A board-ready security report that brings your security posture score, identity and access controls, configuration and controls, and security-awareness readiness into one plain-language view - ending with prioritized recommendations, named owners, and target dates. How often is GuardRail reported? On a steady cadence that plugs into your quarterly service review, with your posture score tracked over time so leadership can see security getting stronger quarter over quarter. What is GuardRail used for? Board packs, funder and partner questionnaires, insurer questions, and due-diligence requests - anywhere leadership needs a clear, plain-language answer on security posture. Let's Talk #### Clarity your board can act on. Let's turn your security posture into a story leadership understands. Talk With an Advisor --- ## Email Security Source: https://ettebiz.com/service-email-security Email Security ### Stop attacks at the front door. Managed protection against phishing, impersonation, and malicious attachments - the channel most attacks come through. Designed to catch advanced email attacks that standard filters often miss, with reporting your team can understand. Talk With an Advisor Explore Services What's Included #### Layered defense for every inbox. Threat filtering Filtering tuned for phishing, impersonation, and malicious attachments before they reach the inbox. Phishing & impersonation defense Catches the fake "urgent" messages and look-alike senders designed to trick staff into paying or sharing. Attachment & link scanning Files and links are checked before anyone clicks, so a single attachment can't quietly install malware. Spoofing & domain protection Stops outsiders from sending mail that looks like it's from your organization, protecting your name and your partners. Account-takeover monitoring Watches for sign-ins and behavior that suggest a mailbox has been hijacked, and flags it before it's used against you. Encryption options Sensitive messages can be sent securely, so confidential information stays private in transit. User awareness training Short, regular training that helps staff spot the email scams aimed at them. Reporting & alerts Clear visibility into what was blocked and why, plus alerts when something needs attention. How It Fits #### One layer of your security program. Email security is one layer of your managed security program, defending the channel most attacks come through and connecting to the rest of your controls so threats are caught in context. Explore Services Related Services #### Part of one connected service. ##### Cybersecurity & Compliance Layered protection for devices, email, identity, and people. ##### ETTE GuardRail Security posture scoring and board-ready reporting. ##### Managed IT & On-Site Support Help desk and on-site engineers who already know your setup. ##### Cloud, Productivity & Backup Productivity platforms, identity, backup, and monitoring, managed. Common Questions #### Email Security FAQs. What threats does managed email security protect against? Phishing, business email compromise, impersonation of executives and vendors, malicious attachments, and account takeover. Does it work with Microsoft 365 and Google Workspace? Yes. We layer protection onto both platforms and tune it to your organization rather than leaving default settings in place. Is email security included in ETTE managed IT plans? Layered email protection is part of the ETTE managed security baseline; advanced add-ons are scoped based on your risk profile. Let's Talk #### Protect the channel attacks love most. Let's harden your busiest attack surface. Talk With an Advisor --- ## Cloud Identity Protection Source: https://ettebiz.com/service-cloud-identity Cloud Identity Protection ### Protect the accounts that protect everything. Secure the accounts and access that underpin every other control - strong authentication, least-privilege access, and continuous monitoring. Talk With an Advisor Explore Services What's Included #### Control over who gets in. Multi-factor authentication (MFA) A second proof of identity beyond the password, so a stolen password alone can't get someone in. Single sign-on (SSO) One secure login to your approved apps - fewer passwords for staff, and one place to cut off access fast when someone leaves. Least-privilege access People get only the access their role needs, which limits what an attacker - or an honest mistake - can ever reach. Conditional access Rules that decide when a login is allowed, challenged, or blocked based on device, location, risk, and user role - so a stolen password alone is not enough. Account-takeover monitoring Watches for sign-ins and behavior that don't fit - impossible travel, sudden mass downloads - and flags or blocks them before damage spreads. Privileged access controls Extra protection and oversight for the admin accounts that can change everything, so they're harder to abuse and easier to audit. Joiner / mover / leaver workflows Documented workflows for onboarding, role changes, and departures so access changes happen consistently and can be verified. Access reporting A recurring view of privileged users, external access, stale accounts, and risky sign-ins, so leaders can see whether access is getting cleaner over time. How It Fits #### Identity inside your security program. Cloud identity protection secures the accounts and access that underpin every other control in your environment - managed alongside the rest of your security program. Explore Services Related Services #### Part of one connected service. ##### Cybersecurity & Compliance Layered protection for devices, email, identity, and people. ##### ETTE GuardRail Security posture scoring and board-ready reporting. ##### Managed IT & On-Site Support Help desk and on-site engineers who already know your setup. ##### Cloud, Productivity & Backup Productivity platforms, identity, backup, and monitoring, managed. Common Questions #### Cloud Identity FAQs. What is cloud identity protection? Securing the accounts your staff use to sign in to email, files, and cloud apps - strong authentication, least-privilege access, and monitoring for suspicious sign-ins. Do you enforce multi-factor authentication? Yes. MFA rollout and enforcement is one of the first controls we put in place, implemented in a way that minimizes disruption to staff. Which platforms do you cover? Microsoft 365 and Google Workspace identities, plus the cloud applications connected to them. Let's Talk #### Lock down identity and access. Let's secure the keys to your environment. Talk With an Advisor --- ## Cloud, Productivity & Backup Source: https://ettebiz.com/service-cloud-solutions Cloud, Productivity & Backup Operations ### Cloud and daily systems, managed and backed up. ETTE runs the productivity platforms, identity, backup, and monitoring your team depends on every day - built for organizations that operate in SaaS and the cloud, with managed servers available where you still need them. Talk With an Advisor Explore Services Who It's For #### Built for teams that run in the cloud. ##### SaaS-first teams Organizations already running on Microsoft 365 or Google Workspace, or moving that way. ##### Data you can't lose Teams that need verified backup and a tested, documented path to recovery. ##### Cloud & hybrid Teams mid-migration, or running a mix of cloud and remaining on-premise systems. What's Included #### Your cloud, productivity, and backup, run for you. Microsoft 365 / Google Workspace Your productivity suite set up, secured, and supported - the daily tools your whole team depends on. Email, files & calendars Mail, shared documents, and calendars configured to stay reliable and protected. Identity & access management Sign-in and permissions managed so the right people reach the right resources, and access is easy to revoke. Backup & recovery Cloud and device data backed up with a tested path to restore it after deletion, failure, or attack. Restoration testing We don't just back up - we regularly prove the backups can actually be restored. Endpoint & device sync Files and settings stay consistent across the devices your staff use, wherever they work. Proactive monitoring Systems watched for trouble so issues are addressed before they interrupt the workday. Documentation & runbooks Maintained records of how your cloud is configured, so support is fast and changes are safe. Productivity Platforms #### Microsoft 365 & Google Workspace, managed. We handle licensing, tenant configuration, collaboration, and day-to-day support for your productivity platform - so it stays secure, current, and easy for your team to use. Microsoft 365 / Google Workspace Backup & Recovery #### Backups you can actually restore. File and email backup, backup configuration, and documented restore procedures - with regular restoration testing and clear recovery-time and recovery-point targets, so you know exactly what "recovered" means before you ever need it. Identity & Access #### Protect the accounts that protect everything. Identity and cloud-account protection: secure setup, multi-factor authentication, least-privilege access, ongoing monitoring, and clean joiner/mover/leaver offboarding hygiene. Cloud Identity Protection Cloud & Hybrid Environments #### Right-sized cloud, migrated with care. Right-sized cloud and hybrid planning, migration coordination, documentation, and cost and performance tuning - so your environment fits how your team actually works. Clarity that drives decisions #### Plain-language operational reporting. Your service review gives leadership a plain-language view of system health, backup status, and the cloud services your team depends on - statuses, not jargon. Security posture is reported separately through ETTE GuardRail. See a Sample Review Specialized Capability #### Managed servers, where you still need them. Most of our clients run cloud- and SaaS-first. For those who still operate on-premise, hosted, or - where appropriate - cloud server environments, we provide monitoring, patching, maintenance, backup coordination, and documentation as long as those systems remain part of the business. When the time is right, we also help plan the path off them. Server monitoring Continuous watching of the servers you still run, so problems are caught early. Patching & maintenance Updates and upkeep applied on schedule to keep servers secure and stable. Backup coordination Server backups configured and verified alongside the rest of your environment. Migration planning A measured plan for moving server workloads to the cloud when and where it makes sense. Related Services #### Part of one connected service. ##### Cybersecurity & Compliance Layered protection for devices, email, identity, and people. ##### Managed IT & On-Site Support Responsive help desk and on-site support for your team. ##### ETTE GuardRail Posture scoring and board-ready reporting. ##### AI Strategy & Enablement Vendor-neutral, governed AI adoption that starts with your work. Common Questions #### Cloud, Productivity & Backup FAQs. What does Cloud, Productivity & Backup Operations include? Microsoft 365 / Google Workspace management, email and file collaboration, identity and access management, backup and recovery with restoration testing, proactive monitoring, and maintained documentation and runbooks. Do you test that backups can actually be restored? Yes. We run regular restoration testing with documented restore procedures and clear recovery-time and recovery-point targets - so you know exactly what 'recovered' means before you ever need it. Do you still support on-premise servers? Yes. For teams that still run on-premise or hosted servers, we provide monitoring, patching, backup coordination, and documentation - and when the time is right, we help plan the path off them. Let's Talk #### Run in the cloud with confidence. Let's make your cloud, productivity, and backup dependable - and lose nothing. Talk With an Advisor --- ## Microsoft 365 / Google Workspace Management Source: https://ettebiz.com/service-m365 Microsoft 365 / Google Workspace Management ### Microsoft 365 & Google Workspace, managed for you. Microsoft 365 and Google Workspace - licensing, configuration, security, and support, so your team can collaborate from anywhere. Talk With an Advisor Explore Services What's Included #### Your productivity suite, managed end to end. User & license management We add, remove, and right-size accounts and licenses, so you pay for what you use and access stays current. Email, files & calendars The everyday backbone - mail, shared files, and calendars - configured, secured, and kept running. Secure file sharing Staff can share documents inside and outside the organization without accidentally exposing sensitive data. Collaboration & chat Teams, chat, and meeting tools set up to work reliably for the way your people actually collaborate. Identity & access setup Sign-in and permissions configured so the right people reach the right things - and only those things. Data backup & retention Your cloud data is backed up and retained, because the platform alone won't save you from deletion or attack. Onboarding & offboarding Joiners get access fast and leavers lose it promptly, handled consistently every time. Documentation & runbooks Written records of how your tenant is configured, so changes are safe and support is fast. How It Fits #### Included in your managed plan. Microsoft 365 and Google Workspace management is included in ETTE's managed service suite - your productivity platform set up, secured, and kept current, with responsive support from engineers who know your environment. Explore Services Related Services #### Part of one connected service. ##### Managed IT & On-Site Support Help desk and on-site engineers who already know your setup. ##### Cybersecurity & Compliance Layered protection for devices, email, identity, and people. ##### Cloud, Productivity & Backup Productivity platforms, identity, backup, and monitoring, managed. ##### AI Strategy & Enablement Vendor-neutral, governed AI adoption that starts with your work. Common Questions #### Microsoft 365 & Google Workspace FAQs. Do you support Google Workspace as well as Microsoft 365? Yes. ETTE manages both platforms - licensing, configuration, security, and day-to-day support. Can you handle a migration to Microsoft 365 or SharePoint? Yes. Migrations are delivered as fixed-price projects, planned to avoid disruption to your staff. Can you reduce what we spend on licenses? Often. We review license assignments against actual usage and right-size plans - a common source of quiet overspend. Let's Talk #### Collaborate securely, from anywhere. Let's make your productivity platform dependable. Talk With an Advisor --- ## Proactive Monitoring Source: https://ettebiz.com/service-monitoring Proactive Monitoring ### Catch issues before your team does. Continuous monitoring of your devices, network, and cloud services, so problems are detected and handled before they become outages. Talk With an Advisor Explore Services What's Included #### Problems caught before you feel them. Infrastructure monitoring Continuous watching of servers, networks, and key systems, so trouble is seen the moment it starts. Automated alerting The right people are notified the instant something crosses a threshold - no waiting for a user to report it. Patch & update management Updates applied on a managed schedule, closing security gaps without disrupting the workday. Performance tuning We keep systems running smoothly as load grows, so slowdowns don't quietly drag down productivity. Capacity planning Watching usage trends so you expand storage and capacity ahead of need, not in a crisis. Backup verification Confirming backups actually ran and can be restored - a backup you can't restore isn't a backup. Health reporting Plain-language summaries of how your systems are doing and what's trending the wrong way. Documented runbooks Written procedures for handling issues consistently, so response doesn't depend on one person. How It Fits #### Operational monitoring inside managed IT. Proactive monitoring runs continuously inside your managed service plan - we watch the systems your team depends on around the clock and act before small issues become outages. Explore Services Related Services #### Part of one connected service. ##### Managed IT & On-Site Support Help desk and on-site engineers who already know your setup. ##### Cloud, Productivity & Backup Productivity platforms, identity, backup, and monitoring, managed. ##### Cybersecurity & Compliance Layered protection for devices, email, identity, and people. ##### ETTE GuardRail Security posture scoring and board-ready reporting. Common Questions #### Monitoring FAQs. What do you monitor? Devices, servers, cloud services, backup jobs, and security signals across your environment - with patching handled proactively. What happens when an issue is detected? Our team is alerted and resolves it, in most cases before your staff notices. Recurring patterns feed into quarterly review recommendations. Is monitoring included in every plan? Yes. Monitoring and patching are included in Remote-Only, Fully Managed, and Co-Managed plans. Let's Talk #### Fewer surprises, less downtime. Let's keep your systems healthy and resilient. Talk With an Advisor --- ## PC & Mac Management Source: https://ettebiz.com/service-mac PC & Mac Management ### PC and Mac, managed as one. Every device - Windows and Mac - provisioned, secured, patched, and supported to a single standard of care. Talk With an Advisor Explore Services What's Included #### Every device, consistently cared for. Device provisioning & setup New computers arrive configured, secured, and ready to work, the same way every time. Windows & Mac support One standard of care across both platforms, so a mixed fleet is no harder to support than one. Device security & encryption Encryption and protection on every device, so a lost or stolen laptop isn't a data breach. Update & patch management Operating system and software updates applied consistently, keeping the known holes closed. Mobile device management Central control of the laptops and phones touching your data, including remote lock or wipe if one goes missing. App deployment The software people need is installed and updated centrally, not left to each user to chase down. Backup & recovery Device data is protected and recoverable, so a hardware failure doesn't cost someone their work. Onboarding & offboarding Devices are issued and reclaimed cleanly as staff join and leave, with access handled in step. How It Fits #### Endpoint care inside managed IT. PC and Mac management is part of how we run your day-to-day IT - every device set up, secured, and maintained to one standard, so your team stays productive and your environment stays clean. Explore Services Related Services #### Part of one connected service. ##### Managed IT & On-Site Support Help desk and on-site engineers who already know your setup. ##### Cybersecurity & Compliance Layered protection for devices, email, identity, and people. ##### Cloud, Productivity & Backup Productivity platforms, identity, backup, and monitoring, managed. ##### Virtual CIO Fractional technology leadership, roadmaps, and budgets. Common Questions #### PC & Mac FAQs. Do you really support Macs, not just Windows? Yes. PCs and Macs are set up, secured, patched, and maintained to the same standard - one team, one baseline. What does device management include? Standardized setup for new hires, security controls and encryption, patching, and lifecycle tracking so replacements are planned, not emergencies. Can you manage a mixed fleet across remote staff? Yes. Devices are managed remotely wherever staff work, including shipping-ready onboarding for new remote hires. Let's Talk #### One standard of care, every device. Let's bring your whole fleet under one team. Talk With an Advisor --- ## Virtual CIO Source: https://ettebiz.com/service-vcio Virtual CIO ### Senior technology leadership, sized to you. A Virtual CIO (Chief Information Officer) gives you roadmaps, budgets, and technology decisions guided by a senior, vendor-neutral advisor - scaled to your team, alongside internal IT when you have it. Talk With an Advisor Explore Services Who It's For #### Leadership that needs IT to answer to them. ##### No internal IT leadership Organizations with a capable IT team or provider for daily support, but no senior person to set direction, manage vendors, plan budgets, or brief the board. ##### Boards asking hard questions Leadership teams fielding questions about cyber risk, AI, cloud costs, or compliance who need someone to translate the answers into plain language and clear next steps. ##### Approaching a technology transition Organizations facing a system migration, software change, office move, or growth phase who need independent guidance on what to do · and in what order. What a Virtual CIO Does #### Technology turned into decisions. Technology roadmapping A clear, multi-year plan for where your technology is headed - what to do now, next, and later - so investments line up with where the organization is going. Budget & lifecycle planning Knowing what each system costs to run and when it needs replacing, so renewals and refreshes are planned line items, not year-end surprises. Vendor-neutral selection guidance Independent help choosing tools and vendors based on what fits you - not what anyone is paid to sell - with the trade-offs explained in plain terms. Risk & resilience strategy A leadership-level view of where technology risk sits and how prepared you are to recover, so the big exposures get attention before they become incidents. Board & leadership briefings Technology explained in the terms leadership and boards decide in - cost, risk, and outcomes - so non-technical decision-makers can act with confidence. Policy & governance Practical rules for how technology is used and decisions get made, sized to your organization instead of copied from a much larger one. Quarterly business reviews A recurring leadership conversation covering support trends, projects, lifecycle, service objectives, and the recommendations that come next - with clear owners. AI readiness conversations Short, leadership-level discussions to frame the right AI questions - where it might help, the risks, and the budget implications - and decide whether to engage AI Strategy & Enablement for the actual work. A Virtual CIO frames AI at the leadership level only. Hands-on AI work - strategy, pilots, governed rollout, data and governance setup, training, and enablement - is delivered through AI Strategy & Enablement Advisory. Deliverables #### Concrete outputs, not just advice. ##### Technology roadmap A written, prioritized plan covering what to invest in, upgrade, or replace over 12·36 months, with rationale your leadership team can act on. ##### Annual IT budget A line-item technology budget built around your actual environment and renewal schedule · so there are no surprises at budget season. ##### Quarterly business reviews A recurring leadership meeting with a written agenda: support trends, open projects, lifecycle items, security posture, and documented next steps with owners. ##### Board briefing package Plain-language materials covering risk posture, project status, and technology recommendations · written for decision-makers, not engineers. ##### Vendor evaluation support Written comparisons of competing tools or vendors with a clear recommendation and the reasoning behind it, sized to the decision at hand. ##### Policy & governance documentation Practical, right-sized policies for acceptable use, access controls, and incident response · documented and ready to share with auditors or funders. How It Fits #### Guidance on your side of the table. A Virtual CIO works alongside your existing IT support · whether that's ETTE's managed IT team, an internal staff member, or another provider. The role is purely advisory: setting direction, translating risk, and making sure technology decisions serve your organization's goals rather than the other way around. It is not a replacement for daily IT support. It is the senior voice your leadership team needs when the questions get bigger than a help desk ticket. See Pricing Talk With an Advisor How It Works #### From first conversation to ongoing partnership. ##### Discovery We learn your environment, goals, and constraints · what you have, what's working, and what leadership is worried about. 2 ##### Assessment We document your current technology posture, identify gaps, and prioritize what needs attention first. 3 ##### Roadmap We deliver a written technology roadmap and budget aligned to your organization's direction and fiscal reality. 4 ##### Advise Ongoing engagement through QBRs, board briefings, vendor reviews, and leadership conversations as needs arise. 5 ##### Evolve We update the roadmap and budget as your organization grows, priorities shift, and new risks emerge. Related Services #### Part of one connected service. ##### Virtual CISO Security leadership for audits, questionnaires, and risk decisions. ##### Cloud, Productivity & Backup Productivity platforms, identity, backup, and monitoring, managed. ##### Managed IT & On-Site Support Help desk and on-site engineers who already know your setup. ##### AI Strategy & Enablement Vendor-neutral, governed AI adoption that starts with your work. Common Questions #### Virtual CIO FAQs. What does a Virtual CIO do? A Virtual CIO gives you senior, vendor-neutral technology leadership: a written technology roadmap, an annual IT budget, vendor evaluations, board briefings, and quarterly business reviews - sized to your organization. How much does a Virtual CIO cost? Virtual CIO is an advisory add-on to a managed plan, listed at $2,500 per month, with the scope tailored to your organization. See our pricing page for how advisory pricing gets scoped. Does a Virtual CIO replace our IT support? No. The role is purely advisory and works alongside your existing support - whether that's ETTE's managed IT team, an internal staff member, or another provider. Let's Talk #### Plan your technology with confidence. Get senior, vendor-neutral technology leadership and a clear roadmap without a full-time hire. Talk With an Advisor --- ## Virtual CISO Source: https://ettebiz.com/service-vciso Virtual CISO ### Senior security leadership, without a full-time hire. A Virtual CISO (Chief Information Security Officer) gives you fractional security leadership for organizations that have to answer to auditors, funders, insurers, or partners - someone who owns the risk picture, the policies, and the evidence, and translates it for your board. Talk With an Advisor Managed Security When You Need One #### When managed security needs an owner. Most organizations are well served by foundational managed security - the protective controls built into our managed IT, Cybersecurity & Compliance, Email Security, and ETTE GuardRail reporting. A Virtual CISO is the next step up: senior accountability for security decisions when outside parties are asking harder questions. Consider a Virtual CISO when you face third-party auditors, vendor-risk requirements, insurer, funder, or partner questionnaires, ongoing evidence requests, or a need for someone to own security governance - not just operate the tools. What a Virtual CISO Does #### Security ownership, explained in plain terms. Fractional security leadership A senior security lead who carries the decisions - for a fraction of a full-time hire - and is accountable for where your security program is headed. Risk register & risk management A living, prioritized list of your real risks - what could go wrong, how likely, how bad - so leadership spends money and attention where it actually reduces exposure. Security policy ownership Written policies that match how your organization actually works, kept current as you change - not a template that sits in a drawer until an auditor asks. Evidence & questionnaire support When an insurer, funder, or partner sends a security questionnaire, you have someone who answers it accurately and assembles the supporting evidence behind each answer. Vendor & third-party risk review A clear-eyed look at the outside tools and partners that touch your data, so a weak link in someone else's environment doesn't become your incident. Audit & assessor coordination A single point of contact who works with your auditors and assessors, organizes the requests, and keeps the process moving without pulling your whole team off their jobs. Remediation roadmap A sequenced, budgeted plan for closing the gaps that matter most first - so progress is visible and defensible, not a scramble before each deadline. Executive & board reporting Security translated into the language leadership and boards make decisions in - risk, cost, and trend - instead of raw alerts and tool dashboards. Foundational protective controls - endpoint protection, identity protection, email security, web filtering, patching, monitoring, backup evidence, and security awareness - are delivered through managed IT, Cybersecurity & Compliance, and ETTE GuardRail. A Virtual CISO adds leadership and ownership on top of that foundation. ETTE does not claim certification or formal compliance with any named framework; we work to your organization's specific requirements and the requests you receive. How It Fits #### Leadership on your side of the table. A Virtual CISO complements your managed security instead of replacing it - and works alongside a Virtual CIO when you need both technology and security leadership. For technology strategy, budgets, and roadmaps, see our Virtual CIO; for governed AI adoption, see AI Strategy & Enablement. Explore Virtual CIO Related Services #### Part of one connected service. ##### Cybersecurity & Compliance The foundational protective controls a Virtual CISO governs. ##### ETTE GuardRail Plain-language posture and evidence reporting for leadership. ##### Virtual CIO Senior, vendor-neutral technology leadership, roadmaps, and budgets. ##### AI Strategy & Enablement Vendor-neutral, governed AI adoption that starts with your work. Common Questions #### Virtual CISO FAQs. What does a Virtual CISO do? A Virtual CISO owns your security program: the risk register, security policies, insurer and funder questionnaires, vendor and third-party risk review, audit coordination, a remediation roadmap, and board-level security reporting - for a fraction of a full-time hire. When do we need a Virtual CISO instead of managed security alone? Most organizations are well served by foundational managed security. A Virtual CISO is the next step up - when auditors, insurers, funders, or partners are asking harder questions and someone needs to own security governance, not just operate the tools. Can you certify us as compliant with a framework? No. ETTE does not claim certification or formal compliance with any named framework. We work to your organization's specific requirements and the requests you receive, and assemble the evidence behind each answer. Let's Talk #### Answer hard questions with confidence. When the questionnaires and audits start arriving, let's make sure someone owns the answer. Talk With an Advisor --- ## AI Strategy & Enablement Source: https://ettebiz.com/service-ai AI Advisory ### AI strategy and enablement for businesses ready to govern the work. Outcomes-first, vendor-neutral, and security-aware - grounded in the same governance and audit discipline we bring to your IT. Start With an Advice Session Take the Readiness Check No hype, no lock-in. We start with your work, not a product. The practice now has a dedicated home: ettebiz.ai - the AI Champions case study, an AI readiness check, and free governance resources. Find The Right Starting Point #### Most teams should not start with agentic AI. For most nonprofits, associations, and established private businesses, the right first question is not "what can we build?" It is "what path is safe, useful, and realistic for our work?" ETTE uses three engagement levels so your organization can move at the right level of maturity. Level 1 ##### AI Foundations For teams that need to understand what the AI path should look like before they make commitments. Current use and risk discovery Leadership goals and practical use cases Data boundaries and governance basics A first pilot design and 90-day review path Best fit: leadership wants a credible plan and guardrails before broader rollout. Level 2 ##### AI Depth For organizations ready to move from planning into full organizational implementation and adoption. AI Champions cohorts and staff skill-building Governed use-case intake and prioritization Workflow redesign and adoption support Quarterly governance and operating reviews Best fit: teams have leadership buy-in and need the operating model to make adoption stick. Level 3 ##### AI Build For later-stage teams considering agentic or custom AI workflows after readiness is proven. Agentic workflow discovery Security, data, and integration review Build-vs-buy recommendation Partner-routed implementation when appropriate Best fit: later-stage teams with governance, clean data paths, and a proven use case. Who It's For #### If AI is already in your org without a plan, start here. Shadow AI already happening Staff are using tools you have not vetted, and no one owns the risk. Leadership pressure Your board or executive team is asking what the AI plan is, and you need a real answer. Data-risk uncertainty You are unsure what is safe to put into AI, and which data should never go near it. Opportunity, no governance You see clear use cases but do not yet have rules, approvals, or guardrails. Beyond Basic Enablement #### Policy and training are only the start. The value lives in the operating model. Acceptable-use policies, staff awareness, and tool rollout are useful foundations. Businesses now need to decide which work AI should touch, what data is safe, who approves use cases, how pilots are measured, and what happens when a workflow is ready to scale. Starting point ##### Basic enablement Acceptable-use policy Staff awareness & training Tool rollout ETTE AI Advisory ##### A working operating model Process discovery Use-case portfolio & prioritization Data readiness Governance operating model Workflow redesign Pilot design Adoption measurement Operating roadmap How The Work Flows #### From outcomes to evidence. ##### Discover work Outcomes and where AI is already in use. 2 ##### Prioritize use cases Ranked by value and risk tier. 3 ##### Prepare data & governance Readiness scored; owners and rules set. 4 ##### Pilot A small, designed pilot with go/no-go criteria. 5 ##### Measure Adoption signals and outcome movement. 6 ##### Scale or hold A written recommendation, on the evidence. Deliverables #### An operating dossier you keep and run. Every engagement leaves your team with the artifacts to run the program without us in the room - not a slide deck, a working operating model. Your AI operating dossier Use Case Register Candidates by risk tier Approved Tools Register What's cleared, and for what Governance Operating Model Owners, approvals, exceptions Data Readiness Report Ready / Address / Block, by domain Pilot Design Playbook Scope, users, go/no-go criteria 90-Day Adoption Review Evidence and a recommendation Acceptable Use Policy One component, in plain language Operating roadmap What to do next, and when How To Engage #### Three levels. One maturity path. Foundations A fixed-scope first engagement to discover the right path, set governance basics, design a practical pilot, and define the 90-day review. Depth Organization-wide implementation: Champions cohorts, staff skills, governed use cases, workflow redesign, and adoption reviews. Build Later-stage agentic AI discovery and partner-routed build planning for teams with proven readiness and a specific workflow. Every engagement starts with an advice session and a scoped recommendation. Foundations and Depth are where most organizations should begin; Build is intentionally gated until the use case, data, and governance model are ready. Why ETTE for AI #### Security discipline, applied to AI. We bring the same security discipline and practical governance we use across managed IT - built for nonprofits, associations, and established private businesses. Our guidance is grounded in our own internal AI Champions work and a structured fluency framework, so your team learns to run the loop without us in the room. Common Questions #### AI Strategy & Enablement FAQs. What does AI Strategy & Enablement include? Three engagement levels: AI Foundations (discovery, governance basics, and a first pilot design), AI Depth (AI Champions cohorts, governed use-case intake, and adoption support), and AI Build (agentic workflow discovery and build-vs-buy guidance). All vendor-neutral and security-aware. Where should our organization start with AI? Most teams should not start with agentic AI. Most organizations begin with AI Foundations - a credible plan, data boundaries, and guardrails - before broader rollout. The free readiness check is a good first step. What if staff are already using AI tools we haven't approved? That's shadow AI, and it's one of the most common reasons organizations engage us. Discovery covers current use and risk, which data is safe to put into AI, and the governance basics that give leadership ownership of the risk. Let's Talk #### Start with one good outcome. We'll handle the guardrails. Start With an Advice Session Take the Readiness Check --- ## Static Website Migration Source: https://ettebiz.com/service-website-migration Website Migration ### Move off WordPress and onto a website your own team can edit. ETTE rebuilds your site as plain HTML published through GitHub and Cloudflare, then hands your staff a guided Claude Code workflow for making changes themselves. One week, one flat fee of $750. Built for sites of roughly ten to forty pages whose content changes now and then. The accounts, the code, and the domain all stay in your name. At a glance: $750 flat fee for the full scope, agreed before work starts. 5 business days from account setup to the closing handoff meeting. 3 contributors included, each with their own branch and preview link. 0 plugins, databases, or admin panels left to patch after go-live. #### Lower cost, fewer things to break, and no developer in the loop for routine edits. A content management system earns its keep on large sites that publish constantly. On a small site it mostly adds hosting fees, plugin renewals, and a reason to call a developer every time a phone number changes. A static site removes all three. Lower ongoing cost: no monthly fee for managed WordPress hosting (Cloudflare serves static files on its Free plan), no paid plugin or theme renewals, no developer retainer for routine text and image changes. Security and reliability: no server-side code, database, or admin login for an attacker to target; no plugin updates or PHP upgrades; Cloudflare's global CDN and DDoS protection built in. Performance: static files served from Cloudflare's edge load faster than pages a CMS renders on demand, which helps Core Web Vitals, search ranking, and conversion. Your staff edit the site: nontechnical staff make changes through a guided, AI-assisted Claude Code workflow, review the result on a preview link, and publish in minutes. Version control and portability: every change is tracked in GitHub and can be rolled back; clone the repository and host it anywhere. Fixed fee, fixed scope, one week: $750, five business days, and a closing meeting where your team publishes a change themselves. #### WordPress on managed hosting compared with a static site you own. Hosting bill: WordPress carries a monthly managed-hosting fee plus plugin and theme renewals; on Cloudflare, static asset requests are free with no request cap on the Free plan, and domain registration stays with your registrar. Changing a paragraph or photo: a developer edit billed per change or on retainer, often after a wait of days, versus a named staff member describing the edit in Claude Code, checking the preview, and publishing. What an attacker can reach: PHP, a database, an admin login, and every plugin, versus plain files behind Cloudflare with nothing running on a server. Updates: plugin, theme, and PHP upgrades that can take a site down, versus no runtime to upgrade and every change a tracked, reversible commit. Page speed: pages assembled by the server per request, versus files served from Cloudflare's edge. Ownership: content in a database tied to the host and theme, versus a GitHub repository in your account. Best site size: WordPress fits any size; the static approach fits roughly 10 to 40 pages, and larger sites or sites that restructure navigation often need a scope conversation first. #### From account setup to handoff in five business days. Before day one, a scoping call reviews the current site, confirms the page count fits, and names contributors. Day 1: GitHub and Cloudflare accounts in your name, the repository and publishing pipeline, contributor onboarding begins. Days 2 to 3: content moves over page by page and is checked against the original; every image is rehosted on the new site. Day 4: every DNS record is captured and verified, then the domain moves to Cloudflare (registrar access is needed by this point). Day 5: a live working session on edit, preview, and publish, then a closing meeting confirming the site is live. Domain changes can take up to 48 hours to propagate, so the cutover starts on day four and the handoff is verified against the live origin. If registrar access arrives after day four, the cutover and the timeline slip by the same amount at no added cost. #### Seven pieces, each built so you keep control. Accounts in your name: you create and own the GitHub and Cloudflare accounts; ETTE configures both and retains ownership of neither. Repository and pipeline: a GitHub repository connected to Cloudflare Workers, publishing on every commit, with configuration committed from the first commit to prevent failed preview builds and to keep repository internals from being published. Branches and access: the production branch publishes the live site; each named contributor gets a branch and a Cloudflare preview link; three contributors are included. Claude Code connection: each contributor is connected to their own branch through Claude Code's cloud environment with network access limited to the domains their work needs, about 20 to 30 minutes per person. Content migration: existing pages transcribed with a structured prompt that preserves content, hosts every image locally, follows WCAG 2.1 Level AA practice, and stops to ask on ambiguous decisions such as form handling. Domain cutover: every DNS record captured live before any nameserver change, especially MX, TXT, and DKIM records; the registrar confirmed by live registry lookup; records reproduced in Cloudflare and re-verified after the move. Go-live and handoff: one live working session and a closing meeting that hands day-to-day editing to your team. #### Right for small sites that change occasionally. Not a CMS replacement. A good fit: roughly ten to forty pages; content that changes occasionally; a team comfortable with a guided, AI-assisted editing workflow; contact or consultation forms and perhaps a few individual products or services to sell. Talk to us first: hundreds or thousands of pages or frequent navigation restructuring; a full shopping cart, multi-product storefront, or member login; any feature needing a database or custom backend; more than 40 pages or more than 3 contributors, which need a scope adjustment before the fixed fee applies. #### Pricing: one week, one price, $750. Static Website Migration, $750 flat, one-week delivery: GitHub and Cloudflare accounts in your name, repository and automatic publishing pipeline, up to 3 contributors each with a branch and preview link, Claude Code connected for each contributor, full content migration with images rehosted, domain cutover with every DNS record verified, live training session and closing handoff. Add-ons: additional contributors $50 each; contact and consultation form handling (typically Formspree); simple payment links for individual products or services (typically Stripe Payment Links); ongoing hands-on support after handoff as a separate monthly arrangement. Outside the fee: Claude Code (Anthropic) subscription and usage fees, billed to you during the migration and afterward; domain registration and renewal; content writing, design, or photography; maintenance, monitoring, or support after handoff unless added; a full shopping cart, storefront, or member login. Sites larger than 40 pages or with more than 3 contributors are quoted after a scope adjustment. #### Client testimonial: "From WordPress to a faster, more flexible website. I love it as a small business!" Kim Greenfield Alfonso, MBA, Co-Founder and CEO of Results One LLC: "ETTE transformed our website by moving it from WordPress to a modern solution developed with Claude, managed through GitHub, and deployed through Cloudflare. The difference was immediate. We can now make real-time changes to our website without paying a developer for every update or waiting days, or even weeks, for the work to be completed. This gives our team greater control, flexibility, and the ability to keep our content current. The new website has also improved our search engine optimization and online visibility. Most impressively, we received a new business inquiry on the second day after the website went live, a clear sign that the new site was already working for us. The ETTE team was extremely knowledgeable, responsive, and wonderful to work with throughout the entire process. They took the time to understand our business, explained the technology clearly, and created a solution that supports our growth. We were so pleased with the experience and results that we selected ETTE to become our ongoing IT partner. I highly recommend ETTE to any organization seeking a knowledgeable technology team and a website that is easier to manage, more visible online, and designed to generate business." The engagement behind the quote: Results One LLC, August 2026. 37 pages transcribed with every image hosted locally, 3 contributors editing on their own branches, 0 email interruptions during the domain move. Full case study: https://ettebiz.com/wordpress-to-static-site-case-study #### Static Website Migration FAQs How much does the migration cost? $750, fixed, for a site of up to 40 pages with up to 3 contributors, delivered in one week. Additional contributors are $50 each. Claude Code subscription fees, domain fees, and any ongoing support after handoff are separate. What will hosting cost after the move? Cloudflare's Workers Free plan serves static assets at no charge with no request cap, per Cloudflare's published pricing as of September 2026; most small sites never need the $5 per month paid plan. Domain registration stays with your registrar. Form or payment vendors bill you directly. Will our email break when the domain moves? No. Every existing DNS record is captured live, reproduced in your Cloudflare account, and re-verified after the move; on the Results One migration, Google Workspace mail and third-party DKIM signing carried over with no interruption. Does our staff need to know how to code? No. Contributors describe a change in plain language in Claude Code, check the preview link, and publish; the handoff session walks each person through that loop, and the prompts include an accessibility check and a branch-safety check. What does Claude Code cost, and who pays? Each contributor works under your organization's Claude Code (Anthropic) account; its fees are billed to you directly by Anthropic and are not part of ETTE's $750 fee. Is our site too big? The fixed fee covers up to 40 pages; sites with hundreds of pages, frequent navigation changes, a storefront, or a member login are usually better served another way. What happens after handoff? Hands-on support is available as a separate monthly arrangement; everything lives in your own accounts, so you can also bring in any other developer or host elsewhere. Related services: AI Strategy & Enablement, Managed IT & On-Site Support, Cybersecurity & Compliance, Virtual CIO. Start a scoping conversation: https://ettebiz.com/contact --- ## Nonprofits Source: https://ettebiz.com/industry-nonprofits Nonprofits ### IT support for nonprofits that protects your mission and your data. IT support for nonprofits in Washington, DC and nationwide that need secure, reliable, budget-aware IT, board-ready reporting, and a partner who understands mission work - with on-site support available in the DC area. Talk With an Advisor Explore Services ★★★★★ ETTE consistently delivers professional, intuitive, and personal IT services, making them a standout partner for over a decade. I have had a very good working relationship with ETTE for over a decade. Throughout this time, they have consistently demonstrated professionalism and an intuitive approach to providing quality customer service. Their commitment to staying ahead in the IT space has been impressive, and their ability to deliver high-quality services has exceeded my expectations. What stands out the most about ETTE is their ability to maintain strong working relationships. Lawrence and Taylor, along with their knowledgeable and personable team, go above and beyond to ensure client satisfaction. Their dedication to these values has been a key reason for my long-standing partnership with them. Over the years, I have recommended ETTE to numerous organizations in the Washington, D.C. area, and they have successfully maintained those relationships due to the exceptional quality of their services. The combination of their expertise and their genuine care for clients sets them apart from many businesses today, which often prioritize profit over relationship-building. Leroy Hughes · Vice President of Operations, Public Justice Nonprofit Work #### What this looks like for a nonprofit. ##### A file server retired in phases A law nonprofit moved off a legacy file server to SharePoint one phase at a time, rather than betting the organization on a single weekend cutover. Read the case study → ##### Modernization on a nonprofit budget A national memorial organization modernized aging systems within the constraints nonprofit funding actually allows. Read the case study → ##### Twelve years, one team "ETTE consistently delivers professional, intuitive, and personal IT services, making them a standout partner for over a decade." Leroy Hughes, VP of Operations, Public Justice Pressures Nonprofits Shouldn't Have to Carry #### You have a mission to advance. We take IT risk off your plate. ##### Grant & Funder Evidence Answer documentation and security requests without scrambling at deadline. ##### Board-Ready Reporting Plain-language insight into IT health, risk, and budget for every meeting. ##### Staff Transitions Keep access, devices, and documentation under control as roles change. ##### Sensitive Data Protect donor, client, program, and financial data with layered security. Nonprofit Reality #### Built for the work behind the mission. ##### Board & Finance Reporting Clear status on IT health, risk, lifecycle, and budget so leadership can make decisions without technical translation. ##### Grant & Data Obligations Documentation, access control, backup evidence, and security posture reporting that support funder, insurer, and partner questions. ##### Daily Cloud Operations Support for the collaboration, file, identity, accounting, CRM, and program systems your staff already rely on. ##### Onboarding & Offboarding Repeatable joiner, mover, and leaver workflows for full-time staff, temporary staff, fellows, volunteers, and contractors. Our Approach #### Complete IT, built around your mission. ##### Managed IT & On-Site Support Responsive help desk and on-site support that keeps your team running. ##### Cybersecurity & Compliance Layered protection for your people, data, and systems. ##### ETTE GuardRail Board-ready security posture scoring and reporting - included in every managed plan. ##### AI Strategy & Enablement AI Foundations, AI Depth, and AI Build for governed adoption. Reporting #### Clear reporting. Confident decisions. We turn IT data into insight your board and program leaders can act on - system health, risk, and budget, in plain language. Explore ETTE GuardRail Why Nonprofits Choose ETTE #### Relationships over transactions. Stewardship first. ETTE has served nonprofits nationwide since 2002, headquartered in Washington, DC. We bring documented environments, accessibility-aware delivery, and a team-based service model to organizations that need reliable IT without enterprise overhead. 2002 documented partnership since launch 20+ years serving clients nationwide 10 to 75 common staff range for managed IT relationships Case Studies #### Nonprofit work you can read for yourself. Cloud Migration ##### SharePoint & OneDrive Migration A legal nonprofit moved 2.38 TB and roughly one million files from a legacy file server to SharePoint, OneDrive, and Entra ID - without disrupting an active audit. IT Modernization ##### Nonprofit IT Modernization The nonprofit behind the Women's Memorial modernized in phases: telecom savings first, then workstations, Microsoft 365, and Wi-Fi. Compliance ##### Compliance Infrastructure Buildout A nonprofit with a DoD contract needed a DFARS-aligned environment. ETTE migrated it off aging servers to Microsoft 365, then built the compliant infrastructure. Common Questions #### Nonprofit IT FAQs. Do you offer nonprofit pricing? Yes. Nonprofit pricing is available and scoped to your headcount, support model, and service mix - you see exact per-user numbers in your proposal, before you commit to anything. Pricing follows the same transparent per-user model published on our pricing page, so there are no surprise invoices. Can you help us use TechSoup and nonprofit licensing discounts? Yes. We help nonprofits navigate TechSoup and nonprofit licensing programs - including Microsoft 365 nonprofit plans - identifying the discounts and donations you're eligible for and folding those savings into your technology budget planning. Can you help us answer grant and funder security questionnaires? Yes. Managed plans include the documentation, access controls, backup evidence, and ETTE GuardRail posture reporting most funder requests draw on - including questionnaires built on frameworks like NIST CSF, SOC 2, and CIS Controls. Most routine questionnaires are covered by your managed plan; ongoing questionnaire ownership and auditor coordination are handled through Virtual CISO. Do you work with nonprofits outside Washington, DC? Yes. ETTE serves nonprofits nationwide with remote support, with on-site service available in the Washington, DC metro area. What does IT support cost for a nonprofit? ETTE publishes its pricing: fully managed plans start at $150 per user per month, with nonprofit rates and a remote-only option. See the pricing page for what each plan includes. Let's Talk #### Focus on your mission. We'll handle the IT. Talk With an Advisor Explore Services --- ## Associations Source: https://ettebiz.com/industry-associations Associations ### Member trust starts with reliable systems. For associations nationwide balancing member engagement and lean operations - secure member data, dependable collaboration, and reporting your board can act on, with on-site support available in the DC area. Talk With an Advisor Explore Services ★★★★★ ETTE provides excellent customer service and support for the Society for Public Health Education (SOPHE). We have worked with ETTE for over 10 years, from May 2016. We appreciate their partnership with SOPHE. They offer quick solutions when we encounter technical difficulties. In addition, they help us think about long-term strategic solutions that will help us improve our efficiency and digital-first experience. Staff are knowledgeable and approachable with positive attitudes. We appreciate our partnership with ETTE, so we can deliver an engaging experience for our members. Maricela Arias-Cantu, MS, MHA, CAE · Chief Executive Officer, SOPHE Association Work #### What this looks like for an association. ##### Ten years of member-facing uptime "We have worked with ETTE for over 10 years... they help us think about long-term strategic solutions that will help us improve our efficiency and digital-first experience." Maricela Arias-Cantu, CEO, Society for Public Health Education ##### Support that scales to your calendar Conferences, renewals, and peak seasons get more support, not the same flat coverage. Outside help desk hours, your agreement defines an after-hours escalation path, conference weekends included. See response targets → ##### Reporting your board can use Quarterly service reviews and GuardRail security posture reporting are written for boards and member committees, not for engineers. See GuardRail reporting → Pressures Associations Shouldn't Have to Carry #### Serve your members. We'll carry the IT risk. ##### Member Data Security Protect member records and payment data with layered controls. ##### Event & Cyclical Demand Scale support around conferences, renewals, and peak seasons. ##### Board Reporting Give your board plain-language visibility into IT and risk. ##### Member Experience Keep staff workflows, member portals, and collaboration systems dependable. Association Reality #### Built for member-driven operations. ##### Member Systems Support around association management systems, member portals, dues, events, and the integrations that keep staff moving. ##### Board & Committee Cadence Plain-language reporting that helps boards and committees understand IT health, risk, budget, and priorities. ##### Peak-Season Support Planning and escalation around conferences, renewals, campaigns, and other periods where technology disruption is highly visible. ##### Access & Turnover Repeatable access controls for staff, consultants, volunteers, committee leaders, and temporary event support. Our Approach #### Complete IT, built around your member work. ##### Managed IT & On-Site Support Responsive help desk and on-site support that keeps your team running. ##### Cybersecurity & Compliance Layered protection for your people, data, and systems. ##### ETTE GuardRail Board-ready security posture scoring and reporting - included in every managed plan. ##### AI Strategy & Enablement AI Foundations, AI Depth, and AI Build for governed adoption. Reporting #### Clear reporting. Confident decisions. We translate IT health, risk, and budget into reporting your board and committees can act on - no jargon, no surprises. Explore ETTE GuardRail Why Associations Choose ETTE #### Relationships over transactions. Members first. ETTE has supported associations nationwide since 2002, headquartered in Washington, DC. We bring real accessibility awareness, documented environments, and a team-based approach to member-driven organizations that need service maturity. 2002 documented partnership since launch 20+ years serving clients nationwide 10 to 75 common staff range for managed IT relationships Case Studies #### Work you can judge for yourself. Provider Switch ##### Managed IT Transition A remote Washington, DC advocacy organization moved off its outgoing IT provider in 17 days - every device onboarded, security hardened, no disruption to staff. Accessibility ##### Website Accessibility & Section 508 A pre-launch accessibility review of the Military Women's Memorial website caught a harmful flashing element and made 3 million veterans' stories accessible. AI Adoption ##### AI Champions Program How ETTE ran its own AI Champions program across real tickets, reporting, and client communication before adapting the model for client organizations. Common Questions #### Association IT FAQs. Do you support association management systems and member portals? Yes. We support the systems member work runs on - your association management system, member portal, dues and events platforms, and the integrations that keep staff moving. We don't need to be the vendor of record to own a problem: vendor coordination is part of every managed plan, so your staff have one place to call and we work the issue with your AMS provider. Can you handle peak seasons like conferences and renewals? Yes. We plan support and escalation around conferences, renewals, campaigns, and other periods where technology disruption is highly visible to members. In the Washington, DC area, that can include scheduling on-site coverage around your event calendar. And outside help desk hours (7 AM-7 PM ET, weekdays), every managed service agreement defines an after-hours emergency escalation path for business-critical issues - conference weekends included. What reporting does our board get? Plain-language reporting on IT health, risk, budget, and priorities for boards and committees, plus ETTE GuardRail security posture reporting built for board packs and due-diligence requests. Let's Talk #### Serve your members. We'll handle the IT. Talk With an Advisor Explore Services --- ## Established businesses Source: https://ettebiz.com/industry-businesses Small Businesses ### IT support for small business, without building an internal department. IT services for small businesses that need steadier support, stronger security, and leadership-ready reporting, whether you're formalizing IT for the first time or replacing a provider that no longer fits. Talk With an Advisor Explore Services ★★★★★ ETTE is professional, responsive, and consistently delivers exceptional service. Our experience with ETTE has been outstanding. As a company deeply dependent on effective communication channels, we cannot afford any downtime or disruptions. ETTE understands this critical need and has proven to be an invaluable partner. Their professionalism and responsiveness have been evident from the start, addressing any IT issues swiftly and efficiently. What truly sets them apart is their reliability. When an IT problem arises, it can be a significant hurdle, cutting us off from our operations and clients. ETTE excels in these moments, providing the necessary support promptly and effectively, ensuring that our communication lines remain intact. Pedro Alfonso · President, Dynamic Concepts, Inc Small Business Work #### What this looks like for a small business. ##### A provider switch in 17 days A fully remote Washington, DC advocacy firm moved off its outgoing IT provider in 17 days: every device onboarded, security hardened, no disruption to the work. Read the case study → ##### When downtime costs you clients "As a company deeply dependent on effective communication channels, we cannot afford any downtime or disruptions. ETTE understands this critical need and has proven to be an invaluable partner." Pedro Alfonso, President, Dynamic Concepts, Inc. ##### Room to add internal IT later Businesses that grow past roughly 75 staff often hire internally. Co-managed keeps ETTE alongside that hire instead of forcing a rip-and-replace. See co-managed IT → Pressures Small Businesses Shouldn't Have to Carry #### Ready for IT that operates like the rest of your business. ##### Outgrown reactive IT Moving on from informal, provider-dependent, or break-fix support that no longer fits how you operate. ##### Ready for service maturity Documented environments, defined processes, and reporting leadership can actually use. ##### Co-managed capacity Extend an existing internal IT team with senior guidance, project capacity, and documented execution. ##### Predictable roadmap & reporting A planned technology roadmap and budget you can forecast - no surprises. Our Approach #### Complete IT, built around your operations. ##### Managed IT & On-Site Support Responsive help desk and on-site support that keeps your team running. ##### Cybersecurity & Compliance Layered protection for your people, data, and systems. ##### ETTE GuardRail Board-ready security posture scoring and reporting - included in every managed plan. ##### AI Strategy & Enablement AI Foundations, AI Depth, and AI Build for governed adoption. Reporting #### Clear reporting. Confident decisions. We turn system health, risk, and roadmap into clear reporting your leadership team can plan and budget around. Explore ETTE GuardRail Why Small Businesses Choose ETTE #### Relationships over transactions. Maturity first. ETTE has served organizations nationwide since 2002, headquartered in Washington, DC. We're known for documented environments, security-aware delivery, and steady advisory relationships that improve over time. 2002 documented partnership since launch 20+ years serving clients nationwide 10 to 75 common staff range for managed IT relationships Case Studies #### Work you can judge for yourself. Provider Switch ##### Managed IT Transition A remote Washington, DC advocacy organization moved off its outgoing IT provider in 17 days - every device onboarded, security hardened, no disruption to staff. Compliance ##### Compliance Infrastructure Buildout An organization with a DoD contract needed a DFARS-aligned environment. ETTE migrated it off aging servers to Microsoft 365, then built the compliant infrastructure. AI Adoption ##### AI Champions Program How ETTE ran its own AI Champions program across real tickets, reporting, and client communication before adapting the model for client organizations. Common Questions #### Small Business FAQs. We have no IT staff at all - is that a problem? No, it is the most common case. ETTE acts as your complete IT department: help desk, security, and senior guidance when bigger decisions come up. What does managed IT cost for a small business? Per-user monthly pricing starting at $125 (remote-only) or $150 (fully managed), so costs scale with headcount - no surprise invoices. How fast do you respond when something breaks? Response targets are tiered by business impact: 20 minutes for business-critical outages and security incidents, 60 minutes for single-user outages, and 90 minutes for standard requests. Every ticket is triaged the moment it's submitted, and progress is visible in your quarterly reporting. Outside help desk hours (7 AM-7 PM ET, Monday-Friday), every managed service agreement defines an after-hours emergency escalation path for business-critical outages and security incidents. Full targets are on our pricing page. Can you help with cyber insurance applications and compliance requirements? Yes. Managed plans produce the documentation and control evidence that cyber insurance applications and client security questionnaires ask for, and ETTE GuardRail reporting relates your posture to familiar control families like CIS Controls and NIST-style categories - as visibility, not a certification. For contract-driven requirements, we've built DFARS / NIST 800-171-aligned environments; see the Compliance Infrastructure case study. Do you only serve Washington, DC? On-site support covers the DC metro area; remote-only support is available to small businesses nationwide. Let's Talk #### Bring IT up to the maturity your business needs. Talk With an Advisor Explore Services --- ## Managed IT services in Washington, DC Source: https://ettebiz.com/managed-it-services-washington-dc/ Washington, DC ### Managed IT Services in Washington, DC One accountable team for help desk, security, cloud, and IT strategy - headquartered in DC and priced per user. Updated: August 7, 2026 #### What our managed IT service includes ETTE runs your whole environment as one plan: help desk and on-site support, cybersecurity and compliance, cloud, Microsoft 365, and backup, proactive monitoring, and virtual CIO advisory. The help desk is staffed Monday through Friday, 7 AM to 7 PM ET, and works to published response objectives: urgent issues in 20 minutes, high priority in 60, normal in 90. #### Why Washington, DC organizations choose ETTE We have supported DC organizations since 2002 from our Friendship Heights office, and most of our clients are the nonprofits, associations, and small businesses that make up this city's economy. When an issue can't be fixed remotely, a technician comes to you. Client feedback is published on our testimonials page, and our work is documented in public case studies rather than slogans: an entirely new DFARS-aligned infrastructure for a DC nonprofit, a 17-day provider switch for a DC advocacy firm, and a five-site Wi-Fi program in DC public housing. #### What managed IT services cost in Washington, DC Our pricing is published, per user, and flat: plans start at $150 per user per month, with nonprofit rates and a remote-only option. See the full breakdown on the pricing page - no quote-request wall. #### Switching providers without disruption Every engagement starts with a structured 30-day Smooth Start: we document every device, account, application, and configuration before we change anything. When a DC advocacy firm needed to leave its outgoing provider, we completed the entire transition in 17 days without losing a day of their work. ETTE is headquartered at 5335 Wisconsin Ave. NW, Suite 440, Washington, DC 20015 - in Friendship Heights, with on-site coverage across the DC metro area and remote support nationwide. Call 202-345-1965 or send a message. #### Common questions What do managed IT services cost in Washington, DC? ETTE publishes its pricing: fully managed plans start at $150 per user per month, with nonprofit rates and a remote-only plan available. The pricing page lists what each plan includes. Do you provide on-site support in Washington, DC? Yes. ETTE is headquartered at 5335 Wisconsin Ave. NW in Washington, DC, and dispatches technicians across the DC metro area when an issue can't be resolved remotely. Remote support covers clients nationwide. How long does it take to switch to ETTE from another provider? Onboarding follows a structured 30-day Smooth Start that documents your full environment before anything changes. One DC advocacy firm was fully transitioned from its outgoing provider in 17 days. #### Washington, DC office 5335 Wisconsin Ave. NW, Suite 440 Washington, DC 20015 202-345-1965 Mon-Fri, 7:00 AM-7:00 PM ET Talk With an Advisor See Per-User Pricing #### Proof from local work Switching IT providers in 17 days DFARS infrastructure for a DC nonprofit Wi-Fi across DC public housing --- ## IT support in Washington, DC Source: https://ettebiz.com/it-support-washington-dc/ Washington, DC ### IT Support in Washington, DC A staffed help desk with published response objectives, and a technician at your door when remote isn't enough. Updated: August 7, 2026 #### Help desk hours and response objectives The ETTE help desk is staffed Monday through Friday, 7 AM to 7 PM ET, by engineers who know your environment - every client's setup is documented during onboarding, so you never re-explain your systems to a stranger. We work to published response objectives: urgent issues in 20 minutes, high priority in 60 minutes, normal requests in 90 minutes, and change requests within 8 hours. #### On-site support across the DC metro area When hands-on work is needed - a failed switch, a conference-room buildout, new-staff setup days - a technician comes to you from our Friendship Heights office. On-site coverage spans Washington, DC, and the close-in Maryland and Virginia suburbs; everything else is handled remotely, usually faster. #### Who we support Most ETTE clients are nonprofits, associations, and small businesses in the 10-150 staff range - organizations that need dependable support without building an internal IT department. IT support is one part of a complete managed IT plan that also covers security and cloud. #### What it costs Support is included in flat per-user plans starting at $150 per user per month - published in full on the pricing page, with nonprofit rates. ETTE is headquartered at 5335 Wisconsin Ave. NW, Suite 440, Washington, DC 20015 - in Friendship Heights, with on-site coverage across the DC metro area and remote support nationwide. Call 202-345-1965 or send a message. #### Common questions How fast does ETTE respond to IT support requests? Published response objectives: urgent issues in 20 minutes, high priority in 60 minutes, normal requests in 90 minutes, change requests within 8 hours. Every ticket is triaged the moment it's submitted. Do you come on-site in Washington, DC? Yes. Technicians dispatch from ETTE's office at 5335 Wisconsin Ave. NW across the DC metro area whenever an issue can't be solved remotely. Is IT support a separate service or part of a plan? Help desk and on-site support are included in every ETTE managed IT plan, alongside security, cloud management, and monitoring. Plans are priced per user, starting at $150 per user per month. #### Washington, DC office 5335 Wisconsin Ave. NW, Suite 440 Washington, DC 20015 202-345-1965 Mon-Fri, 7:00 AM-7:00 PM ET Talk With an Advisor See Per-User Pricing #### Proof from local work Switching IT providers in 17 days Wi-Fi across DC public housing Modernizing a memorial's IT --- ## IT security solutions in DC Source: https://ettebiz.com/it-security-solutions-dc/ Washington, DC ### IT Security Solutions for Washington, DC Organizations Layered, managed protection for the people, devices, identities, and data your mission depends on. Updated: August 7, 2026 #### Layered security, managed for you ETTE's managed cybersecurity protects each layer an attacker actually targets: email security against phishing and impersonation, cloud identity protection with strong authentication and least-privilege access, endpoint protection across PCs and Macs, and continuous monitoring that catches issues before your team does. #### Security your board can read DC nonprofits and associations answer to boards, funders, and members. ETTE GuardRail scores your security posture in plain language and produces board-ready reporting, so security questionnaires and funder due-diligence stop being fire drills. #### Compliance-grade when you need it For organizations with regulatory obligations, ETTE pairs security operations with virtual CISO leadership - policy ownership, risk registers, audit evidence. When a DC nonprofit signed a Department of Defense contract, we built its DFARS-aligned environment end to end. #### Part of one accountable plan Security works best when the same team runs your support and your cloud. These solutions are included in ETTE managed IT plans with published per-user pricing - not sold as bolt-on licenses. ETTE is headquartered at 5335 Wisconsin Ave. NW, Suite 440, Washington, DC 20015 - in Friendship Heights, with on-site coverage across the DC metro area and remote support nationwide. Call 202-345-1965 or send a message. #### Common questions What IT security services does ETTE provide in Washington, DC? Managed cybersecurity covering email security, cloud identity and access protection, endpoint protection for PCs and Macs, continuous monitoring, security awareness, and board-ready posture reporting through ETTE GuardRail. Can you help us answer security questionnaires from funders or partners? Yes. ETTE GuardRail scores your security posture and produces plain-language, board-ready reports designed to answer questionnaires and due-diligence requests quickly. Do you support compliance frameworks like NIST 800-171 or DFARS? Yes. ETTE built a DFARS-aligned environment for a Washington, DC nonprofit with a DoD contract, and virtual CISO engagements cover policy, risk, and audit evidence for NIST-based frameworks. #### Washington, DC office 5335 Wisconsin Ave. NW, Suite 440 Washington, DC 20015 202-345-1965 Mon-Fri, 7:00 AM-7:00 PM ET Talk With an Advisor See Per-User Pricing #### Proof from local work DFARS infrastructure for a DC nonprofit Security hardened during a 17-day switch Pre-launch Section 508 audit --- ## Co-managed IT in Washington, DC Source: https://ettebiz.com/co-managed-it-services-washington-dc/ Washington, DC ### Co-Managed IT Services in Washington, DC Your internal IT team, extended with depth, coverage, and specialized expertise - not replaced. Updated: August 7, 2026 #### Built for organizations that already have IT staff An internal IT manager or small team knows your organization better than any vendor will - and is also one person deep, on call every vacation, and expected to be expert in everything. Co-managed IT keeps your people in charge while ETTE adds what a team of one can't: help desk depth, after-hours and absence coverage, and specialists in security, cloud, and Microsoft 365. #### How the split typically works Your team keeps the work that benefits from institutional knowledge - vendor relationships, line-of-business applications, strategic projects. ETTE takes the interrupt-driven load: tickets, patching, monitoring, backup verification, security operations. The boundary is written down during onboarding, not discovered during an outage. #### DC-local when it matters Escalations aren't a phone queue in another time zone. ETTE engineers dispatch on-site across the DC metro area from Friendship Heights, and your staff can walk an issue over to a named engineer who already has your environment documented. #### What it costs Co-managed plans are priced per user like everything else we sell - see the pricing page. Many DC organizations start co-managed and later move to fully managed IT as staff turn over; the documentation carries across. ETTE is headquartered at 5335 Wisconsin Ave. NW, Suite 440, Washington, DC 20015 - in Friendship Heights, with on-site coverage across the DC metro area and remote support nationwide. Call 202-345-1965 or send a message. #### Common questions What is co-managed IT? A shared model: your internal IT staff stays in charge of strategy and institutional knowledge while ETTE adds help desk capacity, security operations, cloud expertise, and coverage for nights, spikes, and absences. Will ETTE replace our internal IT person? No. Co-managed engagements are designed around your existing staff. The division of responsibilities is documented during onboarding so both teams know exactly who owns what. Can we switch from co-managed to fully managed later? Yes. Because ETTE documents the full environment from day one, moving between co-managed and fully managed plans doesn't require starting over. #### Washington, DC office 5335 Wisconsin Ave. NW, Suite 440 Washington, DC 20015 202-345-1965 Mon-Fri, 7:00 AM-7:00 PM ET Talk With an Advisor See Per-User Pricing #### Proof from local work Switching IT providers in 17 days DFARS infrastructure for a DC nonprofit AI adoption tested on ourselves first --- ## IT consulting for DC organizations Source: https://ettebiz.com/it-consulting-washington-dc-organizations-need/ Washington, DC ### IT Consulting for Washington, DC Organizations Senior, vendor-neutral technology leadership - roadmaps, budgets, security strategy, and governed AI adoption. Updated: August 7, 2026 #### Advisory sized to your organization Most DC nonprofits and small businesses can't justify a full-time CIO, but every one of them makes CIO-level decisions: what to budget, what to retire, how to answer a board's security questions. ETTE fills that gap with virtual CIO and virtual CISO engagements - senior people who own your roadmap, budget, and risk posture, not a rotating bench of consultants. #### What consulting engagements cover Technology roadmaps and multi-year budgets; vendor and contract reviews; security policy and risk ownership; audit and questionnaire evidence; and governed AI strategy for organizations that want the benefit without the exposure. When a DC nonprofit took on a Department of Defense contract, ETTE advisory work led the buildout of a DFARS-aligned environment from scratch. #### Consulting that can execute Advice that ends at a slide deck doesn't change anything. Because ETTE also runs managed IT for DC organizations, the same team that writes the roadmap can implement it - and is accountable when it's measured against reality. #### Where we work Consulting clients meet us at our Friendship Heights office, at their offices across the DC metro area, or remotely nationwide. Engagements are scoped in plain language with published per-user pricing for ongoing service. ETTE is headquartered at 5335 Wisconsin Ave. NW, Suite 440, Washington, DC 20015 - in Friendship Heights, with on-site coverage across the DC metro area and remote support nationwide. Call 202-345-1965 or send a message. #### Common questions What kind of IT consulting does ETTE provide in Washington, DC? Virtual CIO and virtual CISO advisory: technology roadmaps, budgets, vendor reviews, security policy and risk ownership, compliance evidence, and governed AI adoption planning. Do you work with organizations that have government or compliance requirements? Yes. ETTE built a DFARS-aligned environment for a Washington, DC nonprofit holding a Department of Defense contract, and supports NIST 800-171-driven requirements as part of virtual CISO work. Can ETTE implement what it recommends? Yes. ETTE is also a managed IT provider, so the roadmap, budget, and security plan can be executed and operated by the same accountable team. #### Washington, DC office 5335 Wisconsin Ave. NW, Suite 440 Washington, DC 20015 202-345-1965 Mon-Fri, 7:00 AM-7:00 PM ET Talk With an Advisor See Per-User Pricing #### Proof from local work DFARS infrastructure for a DC nonprofit AI adoption tested on ourselves first Retiring a legacy file server --- ## Cloud services in Washington, DC Source: https://ettebiz.com/cloud-services-washington/ Washington, DC ### Cloud Services for Washington, DC Organizations Microsoft 365, Google Workspace, migrations, backup, and identity - managed as one dependable system. Updated: August 7, 2026 #### Your cloud platform, managed end to end Most DC nonprofits and small businesses run on Microsoft 365 or Google Workspace. ETTE manages the platform itself - licensing, configuration, security baselines, and support - along with identity and access protection and backup and recovery that gets verified, not assumed. #### Migrations without the lost week Moving off aging servers is where cloud projects earn or lose trust. ETTE moved a law nonprofit's 2.38 TB and roughly one million files from a legacy file server to SharePoint, OneDrive, and Entra ID in phases, without disrupting an active audit - and rebuilt a DC nonprofit's entire infrastructure in the cloud when its DoD contract demanded a DFARS-aligned environment. #### Sized and priced for real budgets Cloud management is part of ETTE's per-user plans - published on the pricing page with nonprofit rates - so the monthly number is predictable and there's no project-fee surprise every time something needs configuring. #### Local help when cloud meets hardware Printers, conference rooms, network gear, and Wi-Fi still live in the building. Because ETTE provides on-site support across the DC metro area, the cloud plan doesn't end at the browser tab. ETTE is headquartered at 5335 Wisconsin Ave. NW, Suite 440, Washington, DC 20015 - in Friendship Heights, with on-site coverage across the DC metro area and remote support nationwide. Call 202-345-1965 or send a message. #### Common questions What cloud services does ETTE manage? Microsoft 365 and Google Workspace administration, cloud migrations, backup and recovery, managed servers, and cloud identity and access protection - delivered as part of a per-user managed IT plan. Can you migrate us off an on-premises file server? Yes. ETTE performed a phased migration of 2.38 TB and about one million files from a legacy file server to SharePoint, OneDrive, and Entra ID for a law nonprofit - without disrupting an active audit. Do you back up Microsoft 365 data? Yes. Backup and recovery is part of ETTE cloud operations, with restores tested rather than assumed. Details are on the Cloud & Backup Services page. #### Washington, DC office 5335 Wisconsin Ave. NW, Suite 440 Washington, DC 20015 202-345-1965 Mon-Fri, 7:00 AM-7:00 PM ET Talk With an Advisor See Per-User Pricing #### Proof from local work SharePoint migration: 2.38 TB, ~1M files Cloud infrastructure for a DoD contract Modernizing a memorial's IT --- ## Case study: AI Champions Source: https://ettebiz.com/ai-champions-case-study ETTE AI Champions Program: a case study covering program approach, real-world examples, outcomes, and the team behind a 4-month internal AI adoption initiative. ETTE · Case Study ### AI Champions: the adoption model ETTE tested on itself first Between March and June 2026, fifteen ETTE team members ran the AI Champions Program across ticket work, reporting, security analysis, and client communication, entirely in ETTE-governed tools. This page documents how it ran, what changed, and what the model looks like for clients now. March - June 2026 Governed rollout · ETTE-managed tools and policy 15 Team members enrolled 4 Months from pilot to closeout 6 Documented working sessions 6+ Organizational skills deployed #### The AI Champions operating model ETTE tested the model on its own service work first, then converted the lessons into a client-ready adoption path. 1 ETTE's own workflows Tickets, QBRs, security analysis, compliance docs 2 AI Champions cohort Pilot first, full-team rollout, mentor pairing 3 Shared skills library Reusable prompts, documentation flows, review habits 4 Governance lessons Tool access, AI usage policy, data boundaries, quality control 5 Client adoption program The same model adapted to client workflows #### A phased rollout built on everyday service work The program ran on the team's day-to-day service work, anchored by regular all-team sessions. Team members brought back what worked and what didn't, demonstrated their own work products, and shared learning resources like curated videos and live demonstrations. A small pilot group went first, and the full team joined once the pilot proved out. Useful discoveries became shared skills the whole team now runs by default. ##### Mentor pairing Everyone who joined at the full-team kickoff was paired with a peer from the pilot group rather than a manager. Questions about a skill or an odd tool behavior went to someone who had hit the same wall a month earlier. ##### Skills as shared IP When someone built a useful pattern, like a QBR template or a ticket documentation flow, it was reviewed and promoted to an organizational skill in the shared library. Everyone on the team gets these skills by default. ##### Session timeline Mar 2026 Pilot group · Sessions 1 & 2 Small pilot group: Operations Manager, two Tier 3 engineers, two Tier 2 technicians, one Tier 1 technician Apr 3 Pilot group · Session 3: wins & feedback Client security report showcase; decision to expand cohort Apr 17 Pilot group · Session 4: integrations & mentors HelpSpot MCP planning; mentor assignments confirmed Apr 24 Full team · Kickoff: Claude walkthrough 15 participants; tool access granted; AI policy introduced May 4 Full team · Session 2: skills deep dive HelpSpot connector live; skill-building workshop May 27 Full team · Session 3: looping & Claude Code Recursive goal loops; Claude Code context window demo Jun 30 Closeout session Individual callouts; usage guidance; client proposals announced #### What the work actually looked like Every example below comes from session notes or was described directly by the person who did the work. All of it ran inside ETTE's organizational accounts, in tools ETTE manages and governs, under the AI usage policy introduced at kickoff. The focus was ETTE's own servicing and the deliverables clients receive. Client reporting QBRs: screenshot deck to polished report Our Operations Manager redesigned ETTE's quarterly business review format from scratch. The old format relied on screenshots pasted into slides. Using Claude's Cowork mode and a refined skill, he rebuilt the QBR workflow so that raw system data goes in and a formatted, professional client report comes out. The same approach was applied to a client's board-level security presentation, co-produced with a Tier 3 security engineer. A two-week deliverable produced in minutes Data analysis Government client 5-year wireless analysis ETTE manages wireless infrastructure at five government agency sites under a multi-year contract. Our Program Co-Lead needed a comprehensive five-year analysis to support a contract renewal, a task spanning roughly 300 monthly reports. Claude's SharePoint connector ingested the documents and the contract, and the team produced a draft that would have required thousands of dollars of manual analysis time. 300 reports analyzed; draft produced in one session Security Client security data → board-ready presentation A client's board needed a security briefing on very short notice, and the underlying material was dense: screenshots from email security tools, Microsoft Secure Score exports, and reports from other security platforms. A Tier 3 security engineer consolidated all of it, worked it through Claude to surface the risks a non-technical audience needed to see, and iterated the result into a board-ready presentation. It identified achievable Secure Score improvements and gave the board a clear read on where they stood, on a deadline manual work couldn't have met. Board-ready security briefing, turned around same day Automation Monthly invoicing script, manual to fully automated A Tier 3 systems engineer ran a monthly invoicing script that required entering credentials and completing two-factor authentication manually for each Microsoft-only client. The new Graph API authentication wasn't working as expected. Claude walked through creating an app registration with the right permissions and a stored secret. The script now runs without any manual intervention. Recurring monthly manual task eliminated entirely Infrastructure AWS LightSail deployment and code audit A Tier 2 infrastructure engineer's first LightSail deployment took two days of manual SSL configuration, PHP setup, and Amazon-specific quirks. The next one, with Claude reading the documentation live and walking through each step, was done in a couple of hours. He also started a Claude Code audit of a long-running legacy codebase that no one on the team fully understood. 2-day deployment compressed to a few hours Multiple customers have now commented: 'Wow, you guys really know about this stuff - that's really impressive what you're doing.' That's a differentiator for us. We want to make sure we're pulling away from the pack of other MSPs. - Program Lead, Closeout Session · June 30, 2026 #### What changed by the time it closed Ticket and note quality Program leadership observed a clear improvement in ticket documentation across the team. Notes became more descriptive and more useful to colleagues, and client communications got more professional. Client satisfaction Client survey results improved during the program period. In direct client conversations, feedback had been "very, very happy." Multiple clients specifically commented on ETTE's AI knowledge as a differentiator. Organizational skills library Six or more organizational skills were deployed to all team members by closeout, covering client communication, ticket documentation, QBR generation, onboarding, and performance reporting. Each skill is version-controlled and available by default. Mentorship structure Everyone who joined at the full-team kickoff was paired with a mentor from the pilot group. Pairings were skill-matched where possible: the Tier 2 infrastructure engineer mentored a colleague who shares development responsibilities, and the Tier 2 technician mentored a Tier 3 systems engineer. Continued learning Training continued past closeout. Team members, including program leadership and several engineers, are pursuing further structured AI learning and skill development as part of how ETTE keeps its practice current. #### AI Champions across roles Descriptions reflect documented contributions from session notes and program closeout observations. Program Lead Management · Operations Program lead Designed and ran the program. Built the organizational skills library in GitHub, set up the mentorship pairings, and led all six sessions. Used Claude to compress recurring compliance documentation work that would normally take months into a matter of weeks. His patch-failure troubleshooting and log-aggregation workflows are now standard practice. We're already proposing engagements like this to potential customers - taking the lessons, good and bad, into future client programs. Program Co-Lead Management · Client Services Program co-lead Co-led the program and handled client-facing AI strategy. Used Claude to analyze 300 monthly wireless reports across five government agency sites for a five-year analysis that would otherwise have cost thousands of dollars in manual consulting hours. Connected financial and payroll systems through Claude connectors. Trained three team members on Claude basics outside the scheduled sessions. Let's utilize it while we have it - the subsidy era is probably coming to an end. Operations Manager Operations One of the program's most prolific contributors. Rebuilt ETTE's QBR format, replacing screenshot-heavy slide decks with data-rich client reports. Worked with a Tier 3 engineer on a client security presentation that would have taken two weeks to produce manually. Uses Claude daily for research, threat analysis, and report generation, after starting the program as a regular ChatGPT user. I cannot be more grateful about it. I was using a lot of ChatGPT but Claude is way better. Tier 3 Security Engineer Security Turns dense technical data into client-friendly deliverables. Fed a client's security data (screenshots, email security logs, Microsoft Secure Score exports) into Claude to pull out the risks a non-technical reader needed to see, and identified an 8-10% Secure Score improvement achievable without disrupting users. Introduced the team to the Claude Office add-in for consistent PowerPoint formatting. Reviews every AI-assisted deliverable before it goes to a client. Always review everything - your work has to look consistent and professional, not just copy-pasted from AI. Tier 2 Infrastructure Engineer Development / Infrastructure Went deepest on the technical side. Cut an AWS LightSail deployment from two frustrating days to a few hours. Started a Claude Code audit of a long-running legacy client codebase. Built a shared Claude project with a colleague to track a 10-page website update; brief status notes went in, and progress documents, an Excel tracking sheet, and a client-ready email draft came out. Also wired up HelpSpot's API for private ticket documentation. I'm using it to document tickets more than anything lately - and it can respond directly to the ticket privately via the API. That's great. Tier 2 Technician Support Cut user guide creation from hours to roughly five minutes. Used the HelpSpot connector to find historical tickets from a vague memory cue instead of a manual search. Drafted sensitive client emails in several tone variations and picked the best fit. Worked on reusable PowerShell scripts for calendar permission assignments. Mentored a Tier 3 engineer who joined at the full-team kickoff. It was more of five minutes for me - what it would take way longer than that. I saved a lot of time with that. Tier 3 Systems Engineer Systems Administration Used Claude to set up Microsoft Graph API app registration for ETTE's monthly invoicing scripts, which used to require manual credential entry and a two-factor prompt on every run. The scripts now run without any manual step. Recognized at closeout for standout documentation quality during the program. I am loving it right now. I don't need to do that manually anymore. Tier 1 Technician Security Support Runs suspect email headers and URLs through Claude for a rapid first-pass phishing assessment. Also uses it to draft clearer responses to non-technical users, particularly on security tickets where plain language matters. I copy the headers and ask Claude to do some research - also some URLs, suspected web pages, just to be sure they're safe or not. Tier 1 Technician Infrastructure Joined at the April 24 kickoff. Planned and executed a migration in a single day that would previously have taken several days. Leans heavily on screenshot uploads for visual troubleshooting. It just became my second best friend - I love the part that I can upload a lot of pictures to troubleshoot. #### What ETTE now offers ##### AI Champions cohort engagements for client organizations ETTE now runs the same phased-cohort approach inside client organizations: tool selection and access, an AI usage policy, mentor pairing, structured sessions, and an organizational skills library built around the client's actual workflows. These engagements are part of ETTE's AI Strategy & Enablement practice, which covers the full range of advisory levels and ongoing support. The program fits knowledge-worker teams that want practical AI fluency and want to keep the capability in-house after the engagement ends. Clients in legal, government contracting, financial services, and nonprofit work have already expressed interest. ETTE ran the program on its own team before offering it to anyone else, and its sessions, usage policy, and skills library came out of that experience. Talk With an Advisor Explore AI Advisory Services --- ## Case study: compliance infrastructure Source: https://ettebiz.com/compliance-infrastructure-case-study Compliance infrastructure buildout: a case study covering the Microsoft 365 migration, DFARS compliance documentation, and the dedicated server environment ETTE built for a Washington, DC nonprofit's Department of Defense contract. ETTE · Case Study ### An entirely new infrastructure for a Washington, DC nonprofit The client is a Washington, DC-based nonprofit that holds a document management contract with a Department of Defense component. That work involves Controlled Unclassified Information, and the DoD is moving contractors from self-assessment to third-party CMMC audits. Between August 2025 and June 2026, ETTE moved the organization off its aging file server into Microsoft 365, then designed and built a dedicated, DFARS-aligned server environment across its headquarters and a satellite site. This page documents what was built and how. The client's name is withheld; every date and count comes from the project record. August 2025 - June 2026 Two sites · DC headquarters & satellite office 41 DFARS compliance documents prepared 2 Sites built out, headquarters and satellite 88 Minimum score third-party CMMC assessors require 5 Weeks from hardware delivery to tested remote access #### From aging file server to compliant environment ETTE modernized the client's day-to-day systems first, then built a separate, tightly scoped environment for the defense contract work. 1 Move to the cloud Personal drives to OneDrive, shared files to SharePoint and Teams; the old file server retired 2 Scope the obligation CMMC requirements mapped; scope kept tight to control cost 3 Document everything A System Security Plan plus 41 DFARS compliance documents 4 Build the environment A dedicated server and government-certified firewalls at two sites 5 Secure the people Certificate-backed VPN for hybrid workers; incident reporting readiness; ongoing governance #### Two phases: modernize first, then build for compliance The first phase retired the legacy file server. ETTE analyzed every share, reorganized a decade of files into four functional areas (Accounting, HR, Programs & Services, and Government Contracts), and moved the organization into Microsoft 365, with the migration timed around the nonprofit's annual financial audit so accounting never lost access. The second phase answered a harder problem: the Department of Defense is replacing contractor self-assessment with third-party CMMC audits that require a minimum score of 88, and the client's self-assessed score sat in the 40s. ETTE scoped, documented, and built a dedicated compliant environment in roughly six weeks. ##### Scope kept deliberately small Only the defense contract work runs inside the compliant environment. Keeping that boundary tight limits which systems an assessor has to examine, which keeps both the build cost and the ongoing compliance burden down. ##### Documentation as change control A buildout runbook served as the authoritative record of the environment; ticket notes tracked execution only. Credentials and configuration details went into ETTE's documentation system rather than email threads, so the record an assessor sees matches what is actually deployed. ##### Project timeline Aug 2025 File server analysis Share-by-share review; four-folder restructure planned; migration mapped around the annual audit Dec 2025 Migration to Microsoft 365 Shared drives to SharePoint and Teams, personal drives to OneDrive; staff onboarded the following Monday Jan 2026 Device resets Workstations rebuilt for cloud-first logins; legacy server wound down Apr 28 CMMC engagement scoped Third-party assessment requirement confirmed; build agreement finalized May 1 Documentation review 41 DFARS compliance documents complete; System Security Plan data collection underway May 7 Hardware lands Server delivered; FortiWiFi 60F firewalls on hand for both sites May 15 On-site network build Firewall install and office network setup at the client's DC office Jun 7 Server build complete On-site server portion done and recorded in the buildout runbook Jun 9 Remote access tested Certificate-backed VPN for hybrid workers set up and verified #### What the build actually involved Every item below comes from the project record: working meetings with the client's leadership, the buildout ticket history, and the compliance documentation review. Dates and counts are taken directly from those sources. Compliance documentation From no library to 41 documents Third-party assessors work from paper, so the documentation came before the hardware. ETTE prepared 41 DFARS compliance documents and a System Security Plan covering both sites, down to details like monthly scanned-document volumes, physical security controls at each location, and video surveillance retention at the DC building. Staff acknowledgment of an acceptable use policy became part of the standard onboarding for anyone touching the contract work. A compliance library the client can hand to an assessor Hardware A dedicated server environment at two sites ETTE specified the server and firewall hardware, coordinated the orders with the client, and tracked delivery. Two FortiWiFi 60F firewalls went in, one for each site, configured off-site to keep the on-site window short. The server was installed with out-of-band management set up, so ETTE can administer it remotely without opening new holes in the network boundary. Environment running five weeks after hardware delivery Remote access Hybrid workers, without weakening the boundary Client staff on the contract split their time between home and office, so remote access had to be part of the design rather than an exception to it. ETTE set up VPN access with RADIUS password authentication plus a certificate installed on each machine as a second factor. A password alone gets no one in; the device itself has to be known. Setup complete and tested June 9, 2026 Incident readiness The 72-hour reporting obligation, covered DFARS requires contractors to report cyber incidents to the Department of Defense within 72 hours. ETTE walked the client through obtaining the digital certificate needed to file reports through DIBNet and named the internal contacts responsible for reporting, so the process exists before it is ever needed rather than being improvised during an incident. Reporting path in place before go-live Server is scheduled to be delivered tomorrow by 1:30 pm and the firewalls have already arrived. We should be good to go with everything by tomorrow! Thanks Team! - Chief Operating Officer, client organization · May 6, 2026 #### Where the client stands now A separate, defensible environment The defense contract work now runs in its own environment behind government-certified firewalls at both sites, apart from the organization's day-to-day systems. What an assessor has to examine is small and well defined. Cloud-first daily operations Staff work from OneDrive, SharePoint, and Teams. The legacy file server that once held everything, including a decade of stale files, is retired, and workstations were rebuilt for cloud logins. A path to the required score The organization entered the engagement with a self-assessed compliance score in the 40s against a third-party requirement of 88. The controls built into the new environment are designed to lift that score into the 80s ahead of the contract's assessment deadline. Documentation an assessor can follow The System Security Plan, 41 DFARS documents, and buildout runbook describe the environment as it actually exists, with change control keeping the record and the deployment in step. Governance that continues Compliance is not a one-time build. ETTE supports the client with quarterly business reviews and annual tabletop exercises so the posture holds between now and the third-party assessment, and staff acknowledge an acceptable use policy as part of working in the environment. #### The team on the build Descriptions and quoted remarks come from the project's ticket record and working meetings. Chief Technology Officer ETTE · Architecture & Compliance Project lead Designed the environment and led the compliance work: the System Security Plan, the 41 DFARS documents, and the buildout runbook that served as the authoritative build record. Configured the firewalls, set up the certificate infrastructure behind remote access, and ran the documentation reviews with the client's leadership. Authoritative build documentation remains the Buildout Runbook per the ticket's change-control rule; this note tracks execution only. Field Technician ETTE · On-Site Build Ran the on-site work: received and verified the hardware, collected the vendor documentation, built out the office network at the client's DC office, and installed the server. Coordinated directly with the client's building contact for site access and kept their COO updated at each step. Our next step is to finish installing and configuring the firewall, which will allow us to set up the on-site server after that. We'll keep you updated on our progress! Client Leadership Client · Operations & Finance The client's Chief Operating Officer and finance leadership drove the project from their side: hardware approvals and purchasing, site logistics at both locations, and the organizational details the System Security Plan needed. They also took on the compliance roles the environment requires, including the named contacts for DoD incident reporting. #### If you hold a government contract ##### Compliance-driven infrastructure for organizations like this one Nonprofits and small businesses that hold federal contracts face the same shift this client did: self-attestation is giving way to third-party assessment, and the documentation and infrastructure have to exist before an assessor arrives. ETTE scopes the environment, prepares the compliance library, builds the hardware and access controls, and stays on for the governance side through its Cybersecurity & Compliance and Virtual CISO practices. The pattern that worked here, keeping the compliant environment small and separate while daily operations run in the cloud, keeps both the build cost and the audit surface manageable for organizations without a large IT budget. Talk With an Advisor Explore Cybersecurity & Compliance --- ## Case study: managed IT transition Source: https://ettebiz.com/managed-it-transition-case-study Managed IT transition: a case study covering the 17-day provider handover, remote-workforce device onboarding, security cleanup, and quarterly governance ETTE delivered for a Washington, DC advocacy firm. ETTE · Case Study ### Switching IT providers without missing a day of advocacy work The client is a Washington, DC-based public affairs and advocacy firm whose staff work 90-95% remotely. After selecting ETTE through a competitive RFP in December 2025, the firm needed to leave its outgoing IT provider without a gap in coverage, get every laptop and Mac under management, and clean up years of accumulated sharing and security debt - all while its consultants stayed heads-down on client campaigns. ETTE ran the kickoff on January 5, 2026 and took over support in full seventeen days later. This page documents how the transition worked. The client's name is withheld; every date and count comes from the project record. December 2025 - June 2026 One DC office · a workforce that is 90-95% remote 17 Days from kickoff to full support cutover, with no overlap gap 94% Support tickets resolved by the first quarterly review (81 of 86) 100% Satisfaction on post-ticket feedback in the first five months 688 Public sharing links remaining after cleanup, down from over 2,000 #### From outgoing provider to steady state ETTE ran the transition as a sequence: take over cleanly, meet every user and device, fix what the handover exposed, then settle into a governance rhythm. 1 Kick off & plan Transition schedule, staff communication templates, and support channels set in one meeting 2 Coordinated handover Credentials, admin roles, and management tooling transferred jointly with the outgoing provider 3 Onboard every device Scheduled one-on-one sessions for a remote workforce, PCs and Macs, with written SOPs 4 Harden & clean up Public sharing links cut, tenant defaults tightened, firewall and email filtering replaced 5 Move to a rhythm Weekly checkpoints during transition, then quarterly business reviews with the firm's leadership #### A handover run jointly, then onboarding built around the client's calendar Provider switches usually fail at one of two points: the handover, where credentials and admin access fall through the cracks, or the months after, when the new provider discovers what the old one left behind. ETTE addressed the first with a joint transition call that put both providers at the same table - working through admin accounts, the endpoint management tenant, communication platform roles, network controller configuration, and security tool access item by item - and set the outgoing contract to end the same week ETTE's management tooling went live, so the firm never paid for overlapping coverage or sat uncovered. The second it addressed with patience: device onboarding for a 90-95% remote workforce ran as scheduled one-on-one sessions over roughly eight weeks, batched on Fridays at the client's request so consultants lost as little billable time as possible. ##### Onboarding as a feedback loop The firm's operations lead collected written feedback from the first wave of staff sessions and ETTE adjusted the next waves around it - including investigating a permission-prompt setting for remote access software after early adopters said they wanted more visibility into when a technician could see their screen. Mac onboarding time dropped noticeably once the first sessions were turned into a written standard operating procedure. ##### Security debt handled in the open The handover exposed years of accumulated exposure: thousands of publicly accessible sharing links, tenant defaults that let documents leave the organization silently, an email filter mid-decommission, and aging network hardware. Each item went onto the weekly checkpoint agenda with the client's operations lead, was prioritized together, and was reported on until closed - not fixed silently in the background. ##### Transition timeline Dec 2025 Selection ETTE chosen through a competitive RFP; managed services agreement signed Jan 5 Account kickoff Transition schedule, staff communication plan, upgraded 24/7 endpoint monitoring, and QBR cadence agreed Jan 16 Joint handover call Credentials, admin roles, endpoint tenant, and network config worked through with the outgoing provider Jan 22 Full cutover Outgoing provider's contract ends; ETTE's management tooling goes live the same week Feb-Mar Device onboarding waves One-on-one sessions for a remote workforce; public sharing-link cleanup runs in parallel Mar 13 Office network refresh Firewall replaced on site, timed for a Friday afternoon to avoid disruption Mar 20 Leadership briefing All-staff Q&A with the firm's senior leadership on the new setup and security direction Jun 11 First quarterly review 81 of 86 tickets resolved, 100% satisfaction scores, hardware lifecycle and security roadmap presented Jun 2026 Self-service onboarding forms Custom web forms for new-hire and departure requests go live, tuned to the firm's licensing and channels #### What the transition actually involved Every item below comes from the project record: the kickoff and weekly checkpoint meetings, the joint handover call with the outgoing provider, the ticket history, and the first quarterly business review. Dates and counts are taken directly from those sources. Provider handover Both providers at the same table Rather than chase the outgoing provider by email for months, ETTE convened a joint call eleven days after kickoff and worked the transfer item by item: tenant admin accounts, the endpoint management platform, communication tool admin roles, the network controller configuration, domain registrar access, and security training accounts. Gaps - like an undocumented network controller whose config lived on one laptop - were found on the call, not six months later. Credentials went into ETTE's documentation system, and the outgoing contract ended the same week ETTE's tooling went live. Full cutover 17 days after kickoff, no coverage gap Remote onboarding Every device managed, one session at a time With staff 90-95% remote, there was no office day when everyone could be onboarded at once. ETTE technicians ran scheduled one-on-one sessions - PCs and Macs both - batched on Fridays at the client's request, with the firm's operations lead nudging stragglers over the firm's own channels. Early Mac sessions were distilled into written SOPs that cut per-device time for the rest of the fleet, and staff feedback from the first wave reshaped how later sessions were communicated and run. Fleet onboarded in roughly eight weeks without pulling consultants off client work Security cleanup Years of sharing debt, retired deliberately The tenant audit found thousands of publicly accessible sharing links accumulated over years, with defaults that let documents leave the organization silently. ETTE ran a phased reset that cut public links from over 2,000 to 688, changed the tenant's default sharing scope to people inside the firm, and moved critical shared files toward role-based SharePoint access - sequenced carefully because the firm's external contractors still needed legitimate access to keep working. Default posture changed from open-by-habit to internal-by-default Lifecycle tooling Onboarding and offboarding as a form, not an email thread New-hire setup requests had arrived as free-form emails, each missing something different. ETTE built the firm custom web forms for onboarding and offboarding that capture everything in one submission - including the firm's specific license choices and standard channel assignments - and create a tracked ticket automatically. The client's operations lead test-drove the forms, requested changes, and had them live before the firm's next new hire started. First new hire processed through the form the following week Thank you for checking in and providing the update. I appreciate the transparency and guidance. - Senior Director of Operations, client firm · June 2026 #### Where the client stands now Support that measures itself By the first quarterly review, 81 of 86 support tickets were resolved with 100% satisfaction on post-ticket feedback, and the firm's leadership receives ticket metrics it can present to its own senior leadership team on request. A measurably stronger security posture The firm's security posture score climbed from the mid-40s at handover to the mid-60s by the March leadership briefing, with a stated target of 75-80% - deliberately balanced against the flexibility a fast-moving advocacy practice needs. Every device known and managed The full fleet - PCs, Macs, and mobile devices - is enrolled in endpoint management with 24/7 monitoring, upgraded security tooling at no added cost over the prior arrangement, and a hardware lifecycle report that flags aging equipment before it fails. Sharing under governance Public sharing links are down from over 2,000 to 688 and shrinking, tenant defaults keep new shares internal, and shared files are moving to role-based SharePoint structures instead of person-to-person links. A rhythm instead of a scramble Weekly transition checkpoints have given way to quarterly business reviews with the firm's leadership, self-service onboarding and offboarding forms handle staff changes, and recommendations from each review become tracked tickets rather than good intentions. #### The team on the transition Descriptions and quoted remarks come from the project's meeting record and ticket history. Chief Technology Officer ETTE · Transition Lead Project lead Ran the kickoff and the joint handover with the outgoing provider, led the tenant audit and sharing cleanup, replaced the office firewall, and presented the security posture and roadmap at the all-staff leadership briefing and the quarterly review. Documented credentials and configuration in ETTE's systems as they transferred, so nothing lived in one person's inbox. The goal is reaching 75-80% without compromising the flexibility your team needs to do its work. Operations Manager & Onboarding Technicians ETTE · Scheduling & Device Onboarding Coordinated the weekly checkpoint agenda, scheduled and ran the one-on-one device sessions across the remote workforce, turned the early Mac sessions into written SOPs, and handled the follow-through on quarterly review recommendations - each one logged as a tracked ticket with an owner. Senior Director of Operations Client · Transition Owner Owned the transition from the firm's side: authorized the handover with the outgoing provider, gathered staff feedback after each onboarding wave, chased down the last unonboarded devices over the firm's own channels, and test-drove the new onboarding forms before they went live. The weekly checkpoint - and later the quarterly review - ran through this desk. #### If you're stuck with an IT provider that isn't working ##### Provider transitions for organizations like this one Most organizations stay with an underperforming IT provider because the switch feels riskier than the status quo - lost credentials, uncovered weeks, staff disruption. This transition shows the alternative: a joint handover that transfers everything on the record, a cutover date both providers work toward, and onboarding paced around your calendar rather than the provider's. ETTE runs this as a practiced process through its Managed IT and Remote-Only Managed IT plans, with Microsoft 365 management and quarterly business reviews built in. The pattern that worked here - weekly checkpoints during the transition, honest reporting on what the handover uncovered, and a security posture raised in negotiated steps rather than imposed all at once - is how a fully remote organization changes providers without losing a day of work. Talk With an Advisor Explore Managed IT & On-Site Support --- ## Case study: nonprofit IT modernization Source: https://ettebiz.com/nonprofit-it-modernization-case-study Nonprofit IT modernization: a case study covering the phased VoIP consolidation, Mac-to-Windows workstation migration, Microsoft 365 rollout, Wi-Fi deployment, vendor management, and managed security ETTE delivered for the Women in Military Service for America Memorial Foundation. ETTE · Case Study ### Modernizing a national memorial's IT on a nonprofit budget The Women in Military Service for America Foundation (WIMSA) raises the private contributions that operate and maintain the Women's Memorial at Arlington National Cemetery. A staff of about forty, working alongside volunteers, hosts nearly 100 events and 100,000 visitors a year. By early 2017 the Foundation's systems had gone years without an upgrade, and the aging equipment was interfering with the mission itself. WIMSA chose ETTE over several competing proposals, then hit a wall: the quote to modernize everything at once exceeded what the budget could carry. ETTE re-planned the work in phases, putting the cost-saving projects first so that early savings helped fund what came next. This page retells the engagement as ETTE documented it in 2020; every figure and quote comes from that record. February 2017 onward · documented through 2020 Arlington National Cemetery · ~40 staff plus volunteers $2,000 Monthly telecom savings, with three phone contracts consolidated into one VoIP system 2/3 Cost of the entire engagement, measured against one Washington, DC system administrator 100,000 Visitors the Memorial hosts each year, now with public Wi-Fi on site 0 Increases to the monthly rate as the scope grew, with equipment passed through at cost #### A modernization sequenced so savings paid for progress The full upgrade did not fit the budget, so ETTE re-ordered it until it did: savings first, then the projects those savings helped carry. 1 Phase to the budget Cost-saving projects moved to the front, and the work spread over months to fit the operating budget 2 Consolidate & save Three phone contracts renegotiated into one VoIP system, freeing nearly $2,000 a month 3 Pilot, then roll out Right-sized Windows laptops trialed in a small batch before the fleet migrated, with training throughout 4 Open the infrastructure Microsoft 365, shared drives on hosted virtual infrastructure, and Wi-Fi at headquarters and the Memorial 5 Extend the team Vendor management, contract oversight, managed security, and an unlimited helpdesk at a flat rate #### A plan phased to the budget, delivered inside the culture Two things could have sunk this project: money and culture. Money came first. Rather than shrink the scope, ETTE re-sequenced it, starting with the telecom consolidation that returned nearly $2,000 a month to the operating budget and spreading the remaining phases over months so costs never outran contributions. Culture was the longer campaign. WIMSA's staff was loyal to its Macs and had deep habits of keeping information to themselves, and no laptop rollout or shared drive succeeds by decree. ETTE spent time learning how the organization actually worked before asking anyone to change. ##### Resistance met with time, not pressure ETTE priced both Mac and PC replacements for the first-generation Mac minis; the Windows option cost substantially less. Some staff objected hard to the switch. Instead of forcing it, ETTE ran training sessions on the new interfaces and, for the most resistant staffers, sat down in individual meetings with the staffer, WIMSA management, and fellow end users to work through each concern before their machine changed. ##### A helpdesk that shows up in person Staff habits of self-reliance meant problems went unreported and lingered. ETTE's answer was a proactive helpdesk: technicians visited the WIMSA offices and the Memorial, asked staff about their systems, and fixed things on the spot, explaining the work in plain language rather than trade jargon. A remote desk backed this up, letting staff get help confidentially and have systems reset or updated without waiting for a visit. ##### How the engagement unfolded Early 2017 Decision and selection WIMSA leadership commits to upgrading its infrastructure and picks ETTE from several proposals Feb 2017 Engagement begins The upgrade is re-planned in phases sized to the Foundation's operating budget Phase 1 Telecom consolidation Three phone providers become one; legacy phones migrate to VoIP and monthly savings start Phase 2 Workstation pilot A small batch of right-sized Dell Windows 10 laptops proves the migration before a full rollout Rollout Migration and training First-generation Mac minis retire; group training and one-on-one sessions bring every user across Cloud Shared infrastructure Microsoft Office 365 and shared drives on hosted Windows Server 2016 virtual infrastructure go live Wi-Fi Wireless everywhere Managed Wi-Fi is deployed at WIMSA headquarters and at the Memorial itself Ongoing Trusted extension Vendor management, audio-visual contract oversight, managed security, and daily dark web scans #### What the engagement actually involved Every item below comes from ETTE's 2020 account of the engagement, written while the work was still in progress. Telecom consolidation Three phone bills became one WIMSA held contracts with three different phone providers, each billing separately for a system that was aging out. ETTE consolidated the contracts, negotiated better terms on WIMSA's behalf, and migrated the legacy phones to a Voice-over-IP system. The project went first on purpose: its savings made the rest of the modernization affordable. Nearly $2,000 a month returned to the operating budget Workstation migration A Mac office moved to Windows without losing anyone The staff worked on first-generation Mac minis and many wanted to stay on Macs. ETTE priced both platforms, specified a Windows laptop sized to the actual work rather than an overpowered one, and piloted a small batch before committing. Training sessions and individual meetings with the most reluctant staffers carried the change the spec sheet could not. Full fleet on Windows 10 laptops, at a substantially lower cost than the Mac option Information sharing Data silos opened deliberately Long traditions of information-keeping meant knowledge lived on individual machines and work got duplicated. ETTE stood up shared drives on hosted Windows Server 2016 virtual infrastructure and implemented Microsoft Office 365, giving the Foundation open connectivity between staff who had never had a common file system. The organization's first centralized file system, with proper backups behind it Vendor management One front door for every IT request As trust grew, WIMSA brought ETTE into procurements for its database provider, internet service, cabling company, and printer vendor, and gave ETTE contract oversight of the Memorial's audio-visual update. Even the volunteer who redesigned the Memorial's website was routed through ETTE's ticket system, which added a level of formality to the volunteer's work and kept every request in one place. Vendors, volunteers, and staff requests all managed through a single ticket system Security A phishing attack caught and contained ETTE provided managed firewall and endpoint security alongside its onsite and remote support. When a phishing attack hit WIMSA's systems, ETTE caught it, identified the point of entry, and sealed the system. Daily dark web scans watch for compromised WIMSA credentials. Attack point identified and sealed; daily credential monitoring since Wi-Fi & events Bandwidth that changed what the Memorial could charge ETTE deployed and manages wireless at both WIMSA headquarters and the Memorial, putting Wi-Fi in reach of the thousands of visitors who walk through. High bandwidth and the audio-visual upgrades let presenters at the Memorial stream events live, which strengthened the Memorial's pricing position for event rentals. Live streaming from the Memorial floor, and stronger rental pricing with it I would not hesitate to say ETTE did a great job for us at WIMSA. Their flexibility, ability to stay within our tight budget without nickel and diming every small adjustment, and willingness to work in support of our tough culture were mission critical to our IT modernization project. In short, ETTE provided and continues to provide outstanding value for the price. - Marilyn Quagliotti, Major General, US Army (Ret.) · WIMSA modernization administrator and former Vice Director, Defense Information Systems Agency #### Where the engagement left WIMSA Money back every month The telecom consolidation saves nearly $2,000 per month, savings that helped fund the phases behind it and that continue for as long as the contracts run. Wi-Fi for staff and visitors alike Organization-wide wireless covers the WIMSA offices and the Memorial, where thousands of visitors can now get online during the roughly 100 events and 100,000 visits the Foundation hosts each year. Events that earn more With high bandwidth and updated audio-visual systems, presenters at the Memorial can stream live, and the Memorial commands stronger pricing for event rentals because of it. One file system, finally For the first time the organization has a centralized file system with shared drives and proper backups. The culture is shifting toward openness, and productivity is rising as staff stop duplicating each other's work. Support and security as standing services WIMSA has timely ongoing tech support, security at both the network and endpoint level, and personalized organization-branded email for every staff member. A flat rate that stayed flat The scope grew from helpdesk support to database migration management, yet ETTE never raised the monthly rate and never marked up equipment. The whole arrangement costs about two-thirds of what a single system administrator runs in Washington, DC. #### Everything the flat rate grew to cover Since February 2017, ETTE's work for WIMSA has included all of the following, with no change to the monthly billing rate. Migrating the legacy phone system to VoIP Migrating from PowerPC Mac minis to Windows 10 laptops Implementing Microsoft Office 365 Implementing server and client infrastructure, including shared drives Deploying and managing wireless at WIMSA headquarters and the Memorial Hosting virtual infrastructure on Windows Server 2016 Unlimited proactive in-person and remote helpdesk service Vendor management across database, internet, phone, cabling, and printers Contract oversight authority for the audio-visual revamp project Serving on the tech committee for a major database overhaul Managed firewall and endpoint security with onsite and remote support Catching a phishing attack, identifying the entry point, and sealing the system Daily dark web scans for compromised credentials #### If your nonprofit is running on systems no one has touched in years ##### Modernization for organizations like WIMSA Most nonprofits in this position assume they face a choice between a modernization they cannot afford and the status quo that is slowly failing them. This engagement shows a third path: sequence the work so the savings come first, let those savings carry the later phases, and treat the staff's culture as part of the project rather than an obstacle to it. ETTE runs this model for nonprofits through its Managed IT & On-Site Support plans, with cloud, productivity, and backup and cybersecurity built in. The pattern that worked here, phasing to the budget, piloting before rolling out, and showing up in person until the helpdesk earned the staff's trust, is how a small organization with tight finances modernizes without a special appeal to its donors. Talk With an Advisor Explore IT for Nonprofits --- ## Case study: SharePoint migration Source: https://ettebiz.com/sharepoint-migration-case-study SharePoint and OneDrive migration: a case study covering the phased file-server retirement, Entra ID identity migration, and adoption work ETTE delivered for a national public-interest law nonprofit. ETTE · Case Study ### Retiring a legacy file server, one phase at a time The client is a national public-interest law nonprofit with attorneys and staff on both coasts. Its files lived on an aging on-premises file server - roughly 2.38 TB across a million-plus files - with years of ad hoc permissions layered on top. Between August 2025 and June 2026, ETTE moved the organization to SharePoint, OneDrive, and Entra ID in two planned phases, timed so a live financial audit was never interrupted and attorneys never had to change how they work mid-case. The client's name is withheld; every date and count comes from the project record. August 2025 - June 2026 46 user accounts · 2.38 TB · ~1M files 2.38 TB Assessed on the legacy file server - roughly one million files mapped for migration or archive 46 User migrations to Entra ID with MFA - staff, consultants, and email-only accounts 2 Migration phases - admin and operations first, then legal and legislative 0 Weekday disruptions to the client's concurrent financial audit #### From aging file server to a cloud-first workplace ETTE assessed and cleaned up first, mapped every folder to an owner and a destination, then migrated in two phases so the most permission-sensitive data moved only after the process had been proven once. 1 Assess and clean up 2.38 TB reviewed; oversized archives, stale email files, and media flagged for cleanup or Azure archive before anything moved 2 Map the data Every folder assigned a destination SharePoint library, an owner, and members - approved by the client before cutover 3 Migrate in phases Admin and operations data first, legal and legislative second, each over a planned weekend window 4 Move identities and devices 46 user accounts to Entra ID with MFA confirmed; PC profiles migrated in place, Macs enrolled via Company Portal 5 Train and retire Attorney pilot, staff training, and the on-premises file and remote-desktop infrastructure wound down #### Two phases, sequenced around who could least afford disruption Rather than a single cutover, ETTE split the migration in two: administrative and operational data first, legal and legislative data second, so the more complex, permission-sensitive work came after the process had already been proven once. Before anything moved, ETTE's assessment flagged oversized ZIP archives, redundant email archives, and media files for cleanup or Azure archive - shrinking what actually needed to migrate - and years of ad hoc file-server permissions were reviewed and re-mapped to a SharePoint model instead of being carried over and untangled later. ##### Phase 1 - Admin & Operations Communications, Finance, HR, Operations, Admin, and Benefits Administration folders migrated over a single weekend, with a defined cutoff and return-to-access window so staff knew exactly what to expect. Permissions were cleaned up and re-mapped before the cutover, not after. ##### Phase 2 - Legal & Legislative The legal team's data was more complex and more sensitive, so ETTE ran a small pilot with three attorneys chosen for a mix of easy adoption and high influence, trained them with a slide-based walkthrough, and used their feedback to shape training for the rest of the legal and legislative staff before the full cutover. ##### Project timeline Aug 2025 Adoption roadmap signed 2.38 TB / ~1M-file assessment complete; fixed scope covering data migration, Entra ID, Intune, and datacenter retirement Dec 2025 Phased strategy set Phase 1 (admin/ops) and Phase 2 (legal/legislative) scoped; ad hoc file-server permissions flagged for cleanup Jan 12 Phase 1 plan review Folder list, permissions, and go-live window confirmed with client stakeholders Jan 19-22 Phase 1 cutover Admin, Finance, HR, Operations, and Benefits data moved to SharePoint over the weekend Jan 27 Phase 2 pilot planning Three attorneys selected as pilot users; training format and debrief schedule agreed May 11 Phase 2 final prep Data mapping finalized, staff communication drafted, weekend cutover scheduled around the live financial audit May 15-18 Phase 2 cutover Legal and legislative data moved to SharePoint and OneDrive; legacy folder structure retired May 29 Wrap-up report 40 of 46 user migrations closed on Entra ID with MFA confirmed; remaining six tied to staff leave and scheduling Jun 2026 Adoption deepens Client requests instructor-led training on co-authoring, version history, sharing, and guest access #### Details that mattered more than the technology Every item below comes from the project record: planning meetings with the client's leadership, the migration ticket history, and the wrap-up correspondence. Dates and counts are taken directly from those sources. Permissions cleanup before, not after Ad hoc file-server access rebuilt as a SharePoint model Years of one-off permission grants on the old file server were reviewed and re-mapped to defined SharePoint groups before the Phase 1 cutover, rather than carried over and untangled later. Every library got a named owner and a confirmed member list, approved by the client before the data moved. No inherited permission sprawl in the new environment Zero audit disruption Financial systems migrated around a live audit The client's accounting and time-tracking systems were migrated with weekend-only downtime windows, backups taken before each cutover, and access re-confirmed with the finance team before Monday morning - all while the organization's annual financial audit was underway. Auditors never lost weekday access Pilot before full rollout Three attorneys tested the training first Rather than training the full legal team cold, ETTE piloted a slide-based walkthrough with a small, deliberately chosen group of attorneys - picked for a mix of receptiveness and influence - and adjusted the material based on their questions before the wider rollout. Legal-team training shaped by attorney feedback Leadership-voiced communication Migration emails came from the client's leadership, not IT ETTE drafted every staff communication about upcoming cutovers, but the client's leadership sent them - a small choice that kept the message trusted internally and made each migration window feel like an organizational decision rather than an IT event. Staff heard about changes from their own leadership The ultimate goal is that we equip staff with guidance on how to best leverage our new SharePoint/OneDrive configuration. - Vice President of Finance, client organization · June 2026, requesting follow-on staff training #### Where the client stands now Both phases delivered in their planned windows Phase 1 went live in the planned January window; Phase 2 followed the planned mid-May window, each preceded by a confirmed data-mapping and permissions review. 40 of 46 user migrations closed by wrap-up week By the May 29 status report, 87% of user migrations were fully complete and closed on Entra ID with MFA confirmed. The six still open were tied to staff leave and scheduling, not technical issues. Cloud-first daily operations Staff work from SharePoint, OneDrive, and Teams. The legacy folder structure that had driven access confusion was formally retired as part of the Phase 2 cutover. No audit interruption reported Financial system access was preserved through the concurrent audit period with only planned weekend downtime, as required by the client's leadership. Legal team trained ahead of go-live The pilot-then-rollout training approach meant attorneys had hands-on exposure to SharePoint sync, co-editing, and offline access before their data moved, not after. Adoption still deepening In June 2026 the client's leadership asked ETTE for instructor-led training on co-authoring, version history, permission hygiene, and secure guest access for outside counsel - the "teach us to use it better" request a migration is supposed to produce. #### The team on the migration The same core group ran both phases, which meant fewer handoffs and a shared memory of what had already been decided. Descriptions and quoted remarks come from the project's meeting and correspondence record. Chief Technology Officer ETTE · Migration Architecture & Cutovers Project lead Owned the data mapping, permissions cleanup, and both weekend cutovers. Coordinated the accounting and time-tracking system moves around the client's live financial audit so weekday operations were never interrupted, and drafted the leadership-voiced staff communications ahead of each window. Operations & Service Desk ETTE · Go-Live Support Ran a per-user migration ticket for each of the 46 accounts, confirming Entra ID sign-in and MFA one by one, enrolling Mac users through Company Portal, and tracking follow-ups for staff on leave until every session closed. Reported progress to the client's leadership through go-live week. Big credit to the client's staff for being so available during the go-live week - it made a real difference. Client Leadership Client · Finance & Operations The client's finance and operations leadership drove the project from their side: reviewing and approving every data-mapping revision, sending the staff communications ahead of each cutover, flagging the audit and licensing constraints ETTE needed to design around, and requesting the follow-on training that kicked off the adoption phase. Pilot Attorneys Client · Legal Team Three attorneys - chosen for a mix of receptiveness and influence within the legal team - piloted the SharePoint training before the wider rollout. Their questions and feedback shaped how the rest of the legal and legislative staff were trained ahead of the Phase 2 cutover. #### If your files still live on a server down the hall ##### File-server retirements for organizations like this one Nonprofits and professional organizations running on aging file servers face the same tradeoffs this client did: years of accumulated permissions, staff who can't afford downtime, and specialty applications that don't move cleanly. ETTE assesses and cleans up the data first, maps every folder to an owner, migrates in phases sequenced around the business calendar, and stays on for training and adoption through its Microsoft 365 and Cloud, Productivity & Backup practices. The pattern that worked here - prove the process on operational data first, pilot with the most demanding users before their data moves, and let leadership carry the communication - keeps a migration this size from ever becoming the emergency it's often assumed to be. Talk With an Advisor Explore Microsoft 365 Services --- ## Case study: public housing Wi-Fi Source: https://ettebiz.com/public-housing-wifi-case-study Public housing Wi-Fi case study: how ETTE led the Team Wi-Fi coalition from a self-funded 90-day pilot at Potomac Gardens to a city-funded, five-site residential Wi-Fi program for DCHA and DHS properties in Washington, DC. ETTE · Case Study ### The 90-day Wi-Fi pilot that became essential infrastructure In the spring of 2020, distance learning exposed how many DC public housing residents had no usable internet at home. ETTE organized a coalition of five DC-area small businesses, funded a 90-day proof of concept at Potomac Gardens with no cost to the city, and used the results to win public funding. Five years on, the program delivers near-gigabit Wi-Fi to 883 devices across five DC Housing Authority and Department of Human Services properties, free to residents. Every figure on this page comes from the program's five-year performance analysis and the site reports behind it. October 2020 - present 5 properties · 883 devices · 383 TB/year 883 Active devices on the managed network, up from roughly 50 during the pilot 383 TB Bandwidth delivered April 2025 through March 2026, roughly 83 times the estimated pilot-year baseline 51% Of household units reached across the three DCHA properties: 297 of 581 75%+ Year-over-year bandwidth growth every year since the portfolio stabilized at five sites in late 2022 #### From self-funded pilot to city-funded program ETTE led as system integrator: design the network, prove demand with the coalition's own money, hand the city hard data, then build and operate the expanded portfolio. 1 Form the coalition Five DC-area small businesses covering ISP backbone, installation, scheduling, and community engagement, with ETTE as system integrator and lead 2 Fund the proof A 90-day pilot at Potomac Gardens under a signed agreement with DCHA, delivered at no cost to the housing authority or the District 3 Measure demand By November 2020: 383.8 GB transferred and 40 active users, up 57% and 29% respectively in a single month, on outdoor coverage alone 4 Win public funding DC's Office of the Chief Technology Officer funded a five-site expansion in April 2021, covering installation, monitoring, and ongoing support 5 Operate and report Round-the-clock monitoring on Ubiquiti UniFi infrastructure, with anonymized site-level performance reporting to program supervisors #### Built for residents the broadband market had left behind When DC Public Schools moved online in 2020, upwards of 30% of children in the District lacked the connectivity virtual classrooms required. The subsidized option, 25/3 Mbps over shared cable, could lose a third to two-thirds of its capacity to a single Microsoft Teams classroom session. A household with two students had no workable choice at all. The coalition's answer was a 1 Gbps symmetric dedicated backbone with managed Wi-Fi on each property, built and run by local small businesses. ##### The Team Wi-Fi coalition ETTE served as system integrator and lead, alongside NewConnect LLC (fixed wireless ISP), Bailey Systems LLC (physical installation), Results One LLC (scheduling and reporting), and the Center for Human Capital Innovation (community engagement and workforce development). All five are DC-area small businesses. ##### A pilot designed to be judged The proof of concept ran under a formal memorandum of agreement and license with DCHA, on the coalition's own budget, with usage measured and reported monthly. When the November 2020 numbers showed demand growing by double digits month over month, ETTE put the case for expansion in writing to DCHA's Executive Director. The city's technology office was already watching, and formalized funding the following April. ##### Program timeline Mar 2020 Team Wi-Fi forms Five DC-area small businesses organize in response to COVID-19 school closures Jun 2020 Agreement with DCHA Memorandum of agreement executed for a 90-day proof of concept at Potomac Gardens; formal license follows in August Oct 2020 Pilot goes live Outdoor coverage only, per property rules in place at the time, funded entirely by the coalition Nov 2020 First performance data 383.8 GB transferred and 40 active users, up 57% and 29% month over month Dec 2020 The city takes notice ETTE requests a pilot extension in writing; OCTO's interest in funding replication is confirmed Apr 2021 Public funding formalized OCTO statement of work covers five sites: installation, cabling, configuration, testing, monitoring, and support Jan 2022 DHS sites deployed Two DHS transitional housing properties come online May 2022 Hopkins Apartments deployed Second DCHA public housing property joins the network Dec 2022 Greenleaf Senior Center deployed Full five-site portfolio operational across Wards 1, 6, and 8 Mar 2026 Five-year report 883 devices, 383 TB of annual bandwidth, near-gigabit speeds at four of five sites #### What five years of utilization data showed The program's network collects anonymized, aggregate utilization metrics only; no personally identifiable information is gathered. That aggregate record answers the question every funder asks: was the demand real? Organic demand Growth kept accelerating after the buildout stopped No sites have been added since late 2022, yet annual bandwidth rose from roughly 95 TB in 2023 to 215 TB in 2024 to 383 TB in the most recent reporting year. Growth of that kind can't be attributed to new construction. It reflects residents adopting telehealth, remote learning, streaming, and remote work on a network that could carry them. 75%+ year-over-year growth with a fixed site count Seniors online The senior center became the busiest site Greenleaf Senior Center carries 157.1 TB a year, 41% of all portfolio bandwidth, across 358 devices. That is nearly double the traffic of Potomac Gardens, the program's original pilot site, and it comes from senior housing, the demographic most often assumed to be offline. Senior residents outused every other property Performance at scale Near-gigabit service held up as usage multiplied Greenleaf's monthly traffic grew to 13.8 times its early-2023 level while routine speed tests sustained 956 Mbps download and 2 ms latency. Four of the five sites deliver near-gigabit speeds with 2-3 ms latency, meeting or exceeding typical residential broadband standards. Speed and latency held through 13.8× growth Devices already in hand The network unlocked hardware residents already owned School-issued Chromebooks, free smartphones, and tablets distributed through public programs sat underused without a connection to run on. Replacing the pilot's voucher-based onboarding with open access removed the last barrier, and connected devices grew from about 50 to 883. Existing public device programs finally paid off Providing free high-speed internet access at public housing properties is a way to ensure DC's more vulnerable residents have the same access as their more affluent neighbors, helping reduce gaps in education, employment, and everyday knowledge. - DCHA Executive Director · mayor.dc.gov, May 2022 #### Where the program stands after five years Five sites under dual-agency oversight Three DCHA public housing properties and two DHS transitional housing properties, spanning Wards 1, 6, and 8, with ETTE operating the network under city funding since 2021. Roughly 83× bandwidth growth since the pilot From an estimated 4.6 TB in the pilot year, annualized from the documented November 2020 report, to a measured 383 TB in April 2025 through March 2026. Half of DCHA households reached An estimated 297 of 581 household units across the three public housing properties, a 51% participation rate on an opt-in, free service. Every mature site grew Portfolio monthly bandwidth rose from 5.47 TB in early 2023 to 31.9 TB in the latest year, a 5.8× increase, led by the senior center at 13.8×. Residential-grade performance sustained Four of five sites deliver near-gigabit download and upload speeds with 2-3 ms latency, maintained through five years of compounding usage growth. A template other properties can follow The pilot's agreement and license frameworks, and its measure-then-fund model, now serve program supervisors as the template for evaluating expansion to additional public and transitional housing sites. #### The coalition and the agencies behind it The program works because each party held a role it was built for: small businesses that could move fast, agencies that owned the properties, and a city funder that converted proof into policy. ETTE System Integrator & Coalition Lead Program lead Designed and deployed the network at all five sites, operates it around the clock on Ubiquiti UniFi management infrastructure, and produces the site-level and multi-year performance reporting program supervisors use for funding decisions. ETTE also made the December 2020 written case to DCHA that helped turn a pilot into a funded program. Team Wi-Fi Partners Four DC-Area Small Businesses NewConnect LLC provided the fixed wireless ISP backbone, Bailey Systems LLC handled physical installation on rooftops and light poles, Results One LLC ran scheduling and reporting, and the Center for Human Capital Innovation led community engagement and workforce development with residents. DCHA & DHS Property Owners & Program Supervisors The DC Housing Authority authorized the original pilot and licensed the coalition's equipment on its property, then expanded to three public housing sites. The Department of Human Services brought two transitional housing properties into the portfolio. The two agencies jointly supervise the program today. OCTO DC Office of the Chief Technology Officer Watched the self-funded pilot's numbers, then converted the demonstration into sustained public investment in April 2021 with a statement of work covering all five sites. OCTO has verified and accepted the program's ongoing operations monthly ever since. #### If you have a connectivity gap and no obvious way to fund it ##### Special projects that start small and earn their scale This program followed a pattern ETTE applies beyond Wi-Fi: prove the idea at pilot scale, measure honestly, and let the data make the funding case. Agencies, nonprofits, and mission-driven organizations with residents, members, or communities to connect can start with a scoped pilot rather than a leap. ETTE designs, builds, and operates managed networks through its Managed IT & On-Site Support and Proactive Monitoring practices, and stays accountable to the numbers year after year. Five years in, the reporting cadence that won the original funding is still running. That is the part most infrastructure projects skip. Talk With an Advisor Explore Proactive Monitoring --- ## Case study: website accessibility Source: https://ettebiz.com/website-accessibility-case-study Website accessibility case study: how ETTE's pre-launch Section 508 and WCAG 2.1 review of the Military Women's Memorial website caught a harmful flashing element, reset the launch plan around remediation and testing with disabled veterans, and built lasting accessibility practice on both sides. ETTE · Case Study ### The pre-launch audit that made 3 million stories accessible to everyone In 2020, the Military Women's Memorial was preparing to relaunch its website, the digital home for the stories of the 3 million women who have served in America's armed forces. As the Memorial's IT service provider, ETTE offered to review the new site for Section 508 compliance before it went live. The manual audit surfaced serious issues, including a flashing element known to trigger migraines and seizures. The launch was delayed, the site was remediated, and disabled veterans helped test it before go-live. This page tells that story through the four people who lived it. 2020 website relaunch Section 508 · WCAG 2.1 AA · Manual + automated audit 1 in 4 US adults have some type of disability, over 85 million people by the Census's broad count (CDC) 23% Of Americans with a disability say they never go online; daily internet use among those without sits near 80% (Pew, 2016) 11,053 Web accessibility lawsuits filed in federal court in 2019, up 8.8% from the year before (Seyfarth Shaw) $645 B Disposable income controlled by people with disabilities in the US alone; a 2020 global analysis puts total market influence at $13 trillion #### Catch it before launch, not after ETTE's role as the Memorial's IT service provider was to look out for its best interest: raise the compliance question early, audit thoroughly, and make the case that a delayed launch beats an inaccessible one. 1 Raise the issue early Ahead of the impending relaunch, ETTE offered to review the new site for Section 508 compliance, the client's first exposure to web accessibility standards 2 Audit both ways Automated scanning plus a manual audit by ETTE's certified 508 expert, because automated tools alone cannot catch everything 3 Remediate first The launch was deliberately delayed so the issues discovered, one of them dangerous, could be fixed before any visitor met them 4 Test with real users The Memorial's state Ambassadors, many of them veterans with disabilities, provided feedback on the site before the go-live date 5 Make it durable Ongoing ETTE audits to detect non-compliance, plus a new Director of Programs with extensive ADA compliance expertise advising the organization #### Accessibility is the practice of making your website usable by as many people as possible Under the ADA's definition, accessible websites do not require people to see, hear, or use a standard mouse to reach the information and services provided. That covers far more people than most decision-makers realize: beyond visual and auditory impairments, accessibility addresses limited mobility, a wide range of cognitive disabilities from dyslexia to PTSD, and people who experience seizures: any permanent, temporary, or situational disability. For the Memorial, whose audience is generations of veterans, service-connected disability is not an edge case. It is the core constituency. ##### The Curb Cut Effect Curb cuts were carved into sidewalks for wheelchair users, and ended up helping everyone with a stroller, a delivery cart, or a rolling suitcase. Digital accessibility works the same way: designs intended for people with disabilities make websites easier for all users, who stay on the site longer. ##### How ETTE came to this work ETTE, a minority-owned small business, was first introduced to accessibility through its relationship with the Columbia Lighthouse for the Blind, then moved into leadership on client accessibility projects: defining requirements under Section 508 and WCAG 2.1 and advising on effective IT accessibility programs. Internally, ETTE adopted a policy that its software development staff attain IAAP certification. While Section 508 formally binds federal agencies, ETTE operates on the principle that everyone should be compliant. ##### The legal landscape 1973 Rehabilitation Act Section 508 (29 U.S.C. § 794d) protects equal access to electronic information; it covers technology developed or purchased by federal agencies, and can extend to organizations that contract with the US government 1990 Americans with Disabilities Act The first comprehensive federal civil rights law protecting individuals with disabilities; Title III requires equal access at every "place of public accommodation." Amended in 2008 DOJ Title III applies online The Department of Justice has explicitly asserted that ADA Title III also applies to online-only businesses, leaving no room for ambiguity 2017 Updated Section 508 standards The US Access Board's final rule refreshed accessibility requirements for information and communication technology, covering websites, software, hardware, and telecom 2020 Online Accessibility Act introduced A House bill proposing to write consumer-facing websites and apps into the ADA, with WCAG 2.1 AA as the named standard, the conformance target accessibility professionals already work to #### What the pre-launch review caught The inspection surfaced several issues requiring considerable remediation. One of them made the stakes concrete in a way no checklist could: for some visitors, the site had crossed from difficult to dangerous. Found in the manual audit A flashing element that could physically harm visitors During the initial manual audit, ETTE's lead 508 expert was affected by a flashing image element that induced a migraine on the spot. That class of visual element is known to trigger migraines and seizures in people with specific cognitive disabilities. With over 3 million people in the Memorial's potential audience, even a small percentage of affected visitors was unacceptable. Removed before a single visitor encountered it Method Automated scans alone would have missed it A quick Google search will not tell you that a site needs to be audited by both automated and manual means. Automated tools catch patterns; a trained human catches experience: what it is like to navigate the site with a screen reader, a keyboard, or a cognitive disability. The audit paired both, run by a Certified Professional in Accessibility Core Competencies. Automated + manual, as every serious audit should be Real users Disabled veterans tested the site before go-live The Memorial turned to its state Ambassadors, many of them veterans with disabilities, for feedback before the launch date. Combined with a new Director of Programs with extensive ADA compliance expertise, remediation was checked against the people it was for, not just against the standard. Feedback from the audience the site serves The decision The launch was delayed on purpose Fixing accessibility before launch protects an organization from the lawsuit wave that followed COVID-19's shift online, and it costs far less than retrofitting: inclusive design is cheapest at the first stages of planning. More importantly, it showed the Memorial's constituency that their access was worth waiting for. Pre-launch fixes cost less than post-launch lawsuits Military Women's Memorial tells the stories of the 3 million women that served, and we want everyone to have the opportunity to experience these compelling stories. Veterans know more than anyone about the challenges around combat or service-related disabilities, so we are particularly sensitive to ensuring that we have put our very best foot forward and made every effort to make our engagement with our visitors fully accessible. - Robin Johnson, Chief of Staff, Military Women's Memorial #### What the engagement left behind A harmful element never reached the public The flashing image that induced a migraine during the audit, a known seizure and migraine trigger, was caught and remediated before launch, not discovered by an affected veteran afterward. Launch delayed the right way The Memorial chose to hold its relaunch until the issues discovered in the audit were remediated, moving the site steadily toward full Section 508 and WCAG 2.1 compliance instead of shipping known barriers. An ongoing audit practice, not a one-time fix The Memorial still has ETTE run audits that detect aspects of the site that fall out of compliance, the ongoing monitoring that accessibility experts identify as the real solution. In-house expertise on the client side The Memorial hired a Director of Programs with extensive ADA compliance expertise to advise it through the process, and built its state Ambassadors into a standing feedback channel. A higher bar inside ETTE The engagement reinforced ETTE's internal policy of having software development staff attain IAAP certification, and its practice of writing accessibility cheat sheets so accessible development is everyone's habit, not one expert's job. A proactive norm worth copying The Memorial's quick decision to initiate a manual audit and remediate before go-live is the stance ETTE recommends to every organization with a web presence: address accessibility before launch rather than after. #### Four perspectives on the same launch The original case study told this story through four people: a client, a service provider, a technical expert, and a policy expert. Each saw a different piece of the same obligation. Roles are given as of the 2020 engagement. Robin Johnson Chief of Staff, Military Women's Memorial The client Responsible for the successful launch of the new website, and newly retired from the Army when ETTE first raised the compliance requirement, her first exposure to web accessibility standards. She named the real obstacles plainly: limited staff, real cost, little federal help for small nonprofits. The Memorial committed anyway. We understand the value and are committed to ensuring it is done right. Lawrence Guyot President, ETTE The service provider Made the call that started everything: when ETTE became aware of the impending launch date, it offered to review the site so the Memorial would not run into accessibility issues after go-live. His takeaway from the engagement is the thesis of this page: address accessibility before launching, because it protects the organization and honors the audience. As a decision-maker, you can do well by doing good. Citlali Rioja Certified Professional in Accessibility Core Competencies, ETTE The technical expert ETTE's lead 508 and WCAG 2.1 subject matter expert, who ran the manual audit. Her migraine, induced by the site's flashing element, turned an abstract guideline into an undeniable finding. She identifies lack of knowledge as the biggest obstacle organizations face, and builds cheat sheets so accessible development outlives any single project. Knowing how to interpret the guidelines is at least half of my job; the other half is knowing how to explain them to clients. Kim Alfonso CEO, Results One The policy expert A nationally recognized Section 508 expert, twelve years COO of the Columbia Lighthouse for the Blind, and the parent of a visually impaired child. Her counsel: incorporate accessibility early in the development life cycle, test with users who have disabilities, and treat ongoing compliance monitoring, not a one-time fix, as the real solution. If you have an accessible website, you improve the experience and usability for all users. They will stay on the site longer. #### If your website has never had an accessibility audit ##### Start before your next launch, not after your first complaint The practical starting points are the same ones this engagement used: review the Web Content Accessibility Guidelines (WCAG 2.1), run an automated scan with a tool like WAVE, check that images carry descriptive alt text, review headings, buttons, and links. Then have the site audited manually, because automated tools alone will not catch what a trained auditor experiences. ETTE holds its own site to that standard (see our accessibility statement) and brings the same manual-plus-automated audit practice to clients, most valuably in the window before a launch. The obstacle is rarely unwillingness. Most organizations simply do not know the requirements exist until someone raises them. Consider this page that call. Talk With an Advisor Read Our Accessibility Statement --- ## Case study: WordPress to static site Source: https://ettebiz.com/wordpress-to-static-site-case-study WordPress to static site migration: a case study covering the GitHub and Cloudflare Workers publishing pipeline, the Claude Code editing setup for three contributors, and the domain cutover ETTE delivered for Results One LLC, a DEIA and disability services consulting firm. ETTE · Case Study ### Off WordPress and onto a site the client owns, in one month Results One LLC is a DEIA and disability services consulting firm led by its two co-founders. In late July 2026 the firm engaged ETTE to move resultsonellc.com off WordPress on WP Engine hosting and onto static HTML, CSS, and JavaScript managed through GitHub, Cloudflare Workers, and Claude Code. The engagement closed on August 31, 2026, with the new site live on the production domain and three people at the firm editing it on their own branches. Every date and count comes from the project record. 37 Pages transcribed from WordPress into the repository, every image hosted locally instead of hotlinked 3 Contributors editing through Claude Code, each on an isolated branch with its own preview URL 0 Email interruptions during the domain move; every MX, TXT, and DKIM record reproduced before the nameserver change 1 Live working session in the statement of work; later contributors needed no extra Cloudflare configuration #### From WP Engine hosting to a repository and Worker the client owns ETTE opened the accounts under the client's own name first, built a publishing pipeline that keeps production and preview apart, and only then connected editors and moved content. The domain moved last, after a full DNS snapshot. 1 Accounts in the client's name A GitHub account and a free Cloudflare account created under Results One's name. The client owns both, as the statement of work required. 2 Repository safeguards An .assetsignore file and a committed wrangler.jsonc in the first commit, before the first deploy 3 Publishing pipeline The main branch deploys to production at 100 percent traffic; every other branch uploads a version to its own preview URL at zero percent 4 Editors connected Each contributor's Claude Code cloud session bound to their own branch, with network access opened to the old site for reference content 5 Content, then domain 37 pages transcribed; DNS snapshotted; nameservers moved to Cloudflare; both hostnames verified live against the domain itself #### Three editors, one production branch, no overwritten work The statement of work named one client contact. By the end of the engagement three people were editing the site. The branch and access model was built for that kind of growth: each contributor works on a dedicated branch off main, and nothing reaches production until it has been reviewed and merged. ##### A branch and Write access per contributor Two collaborators were added over the course of the project with Write access rather than Admin, enough for content work through Claude Code without repository administration rights. On a personal GitHub account only the repository owner can send collaborator invitations, whatever anyone else's permission level, so every invitation went out from the client's own account. That is a GitHub platform constraint, not a permissions setting. ##### Claude Code bound to each branch Every contributor set up the same way in the Claude Desktop app's Code tab: a new session with the environment set to Cloud, GitHub authorized under their own login against the client's existing Claude GitHub App installation, the repository selected, and the branch set explicitly to their own, not the default main. Network access was set to Custom and opened to the client's domains, plus the WordPress CDN and Google Fonts hosts during transcription. ##### A preview URL per branch The non-production deploy command was first set to a single hardcoded alias, which would have sent every contributor's branch to the same preview URL. ETTE changed the Workers Builds command to read the branch name from Cloudflare's own injected variable: npx wrangler versions upload --preview-alias $WORKERS_CI_BRANCH. Every branch, including one added in the project's last days, gets a distinct, stable preview with no per-contributor configuration. ##### A weekend merge freeze before the review Ahead of the final meeting, both client contributors worked on their own branches over a weekend with no ETTE availability. Neither merged to main until both sets of changes had been reviewed together on August 31. One merge conflict came out of that weekend. It was resolved by reading both versions and hand-merging the intent of each edit rather than picking a side. ##### Project timeline Late Jul 2026 Engagement opens Statement of work: a client-owned GitHub repository, a Cloudflare pipeline with preview and production branches, and one live session on the edit, preview, publish loop. Content, design, photography, ongoing support, and domain fees excluded. Setup Accounts and repository GitHub and Cloudflare accounts under the client's name; .assetsignore and wrangler.jsonc committed before the first deploy; Worker-versus-Pages preview behavior confirmed before the live session Aug 2026 First Claude Code session Structured migration prompt: preserve every page, bring every image local, follow accessibility practice, stop and ask at ambiguous decisions. Result: 37 pages, all images in the repository, every form scaffolded. Aug 2026 Contributors two and three Write access, dedicated branches, Claude Code cloud sessions bound to each branch; preview aliasing switched to the branch-name variable Aug 2026 Forms and payments Formspree connected to the contact and consultation forms and tested by the client; hosted checkout links added to the eBook pages at a newly onboarded contributor's request Aug 29–30 Merge freeze Both contributors edit on their own branches through the weekend; nothing merges to main until the joint review Aug 31 Review, merge, cutover, handoff Weekend work merged into main, one conflict hand-merged; registrar located by RDAP lookup; nameservers moved to Cloudflare; resultsonellc.com live on the new site. Last day of hands-on ETTE support. #### Seven things that broke or nearly broke, and the fix for each Two of these were caught before the first deploy. The rest surfaced during onboarding and cutover and were fixed the same day. Each is recorded here because the next migration of this kind will meet the same ones. Repository hygiene The .git directory would have published as a static asset Wrangler uploads everything in the assets directory unless told otherwise, and that includes a repository's .git folder. ETTE added an .assetsignore file listing .git and .wrangler at the repository root before the first deploy, instead of catching it in review afterward. No repository internals reachable on the live site Build configuration An auto-generated, gitignored wrangler.jsonc breaks preview builds Cloudflare's Connect-to-Git flow generates wrangler.jsonc during the first interactive deploy and, in that flow, adds it to .gitignore by default. Left uncommitted, every build on a non-production branch fails with a missing entry-point error. A working wrangler.jsonc was committed from the very first commit. Non-production branches built cleanly from day one Preview URLs One hardcoded alias would have collided three contributors With the non-production command set to --preview-alias dev, each new branch would have overwritten the same preview. Reading the alias from $WORKERS_CI_BRANCH, a variable Workers Builds injects on every build, gives each branch its own address without touching Cloudflare again. Distinct preview URL per branch, zero extra configuration Claude Code network access The default Trusted network level blocked the client's own domain Fetching reference content from resultsonellc.com produced an EGRESS_BLOCKED error the first time a contributor tried. Each cloud session was set to Custom network access allowing the client's two hostnames and, during transcription, the WordPress image CDN and the Google Fonts hosts. Reference content fetched without relaxing the sandbox GitHub App confusion A 403 on push from two unrelated GitHub Apps One contributor's push failed because the Cloudflare Workers and Pages app, which manages the git-to-deploy connection, had been conflated with the Claude app, which grants Claude Code's cloud sessions read and write access to the repository. Reconnecting GitHub from the Claude.ai Settings, Connectors page cleared it. Push access restored the same day Domain registrar The domain lived in a Squarespace account nobody knew existed A live RDAP lookup against the .com registry identified the registrar as Squarespace Domains II LLC, not the GoDaddy or Wix accounts first suspected. Google sold its Google Domains business to Squarespace in 2023 and migrated every account automatically. This domain, registered in 2017, had moved with it, and the account belonged to a different contact at the firm than assumed. Registrar found by lookup, not by asking around Custom domains The dashboard would not attach www to the active zone Cloudflare's dashboard failed to recognize www.resultsonellc.com as part of the already-active zone when adding it as a Custom Domain. ETTE added it through wrangler.jsonc instead, as a routes entry with custom_domain set to true, which Workers Builds picks up on its own. The apex Custom Domain entry also disappeared partway through the cutover and was re-added once the zone was confirmed active. www answers with a Cloudflare-native 301 to the apex #### Email kept working through the nameserver change Results One runs its mail on Google Workspace, and third-party services authenticate against the domain. Before any change, ETTE took a full live DNS snapshot, reproduced every record in the client's new Cloudflare zone, and re-verified each one live after the client updated the nameservers to the pair Cloudflare assigned. DNS records preserved through the nameserver cutover Type Host Purpose MX (5 records) @ (apex) Google Workspace mail routing, priorities 10 to 50 TXT @ (apex) Google Workspace domain verification TXT @ (apex) Legacy Microsoft domain verification CNAME s1._domainkey, s2._domainkey Third-party DKIM signing (SendGrid-pattern selectors), preserved as CNAMEs exactly as Cloudflare imported them Final verification went against the live domain, not the dashboard. resultsonellc.com returned a clean HTTP 200 from the new static site. www.resultsonellc.com returned a Cloudflare-native 301 redirect to the apex. Neither response carried any trace of WP Engine. #### What shipped by August 31 A 37-page static site on both hostnames Fully migrated from WordPress and live on resultsonellc.com and www.resultsonellc.com, with every image stored in the repository instead of hotlinked from the old CDN. Three editors on isolated branches Each contributor edits through Claude Code on their own branch with their own preview URL. The prompts used for ongoing edits carry a WCAG 2.1 Level AA confirmation step before any change and a branch-safety confirmation before any commit. Working forms with no server behind them The contact and consultation forms submit through Formspree: a form endpoint pasted into the site's existing JavaScript, spam filtering included, 50 submissions a month free and a $10-a-month Personal tier at 200 a month, billed annually, if the firm outgrows it. The client tested the integration before it went live. eBook sales without a storefront A late addition for a newly onboarded contributor: hosted checkout links on the eBook pages, embeddable as a buy button, instead of a cart and inventory system for a handful of individual products. A domain cutover with zero email downtime No lost MX, DKIM, or verification records. The registrar was located by RDAP lookup and the nameservers changed by the client from an account only they control. Everything in the client's name The GitHub repository, the Cloudflare account, and the domain all belong to Results One. The statement of work excluded ongoing maintenance, and the handoff left nothing that needs ETTE to keep running. #### Who did what A small group on both sides. The client held every account and sent every invitation; ETTE built the pipeline and handled the parts that go wrong. Account Lead ETTE · Pipeline, Onboarding & Cutover Project lead Built the publishing pipeline and its safeguards, confirmed the Worker-versus-Pages preview behavior before the live session, onboarded each contributor's Claude Code session, ran the RDAP lookup and the DNS snapshot, and handled the same-day fixes during the domain cutover. Co-founder and CEO Client · Project Contact & Repository Owner Created the GitHub and Cloudflare accounts under the firm's name, owns the repository, and sent every collaborator invitation, since only the owner of a personal GitHub account can. Tested the Formspree integration before it took real submissions. Two Additional Contributors Client · Content Editors Added with Write access over the course of the project, each on a dedicated branch and a Claude Code cloud session. One joined in the project's last days and brought the eBook payment-link request. Both edited over the final weekend under the merge freeze. Domain Account Holder Client · Registrar Access A different contact at the firm than first assumed held the Squarespace account, most likely from handling renewals over the years. They updated the domain's nameservers to the pair Cloudflare assigned to the new zone. #### What ETTE will do first on the next migration like this Confirm Worker or Pages before the first session Cloudflare's Connect-to-Git flow can provision either. They differ on custom preview subdomains, and a preview link on a workers.dev address is a surprise to a client expecting one on their own domain. Commit wrangler.jsonc and .assetsignore in the first commit Before the first real deploy, not after. Together they prevent a published .git directory and a missing entry-point failure on every non-production build. Alias previews by branch name from the start Use --preview-alias $WORKERS_CI_BRANCH on any project that expects more than one contributor, even if only one is named in the statement of work. Look the registrar up; do not ask Long-registered domains are frequently sitting somewhere the client does not remember, most often a Google Domains account that became a Squarespace account in 2023. A live RDAP or WHOIS lookup settles it in a minute. Snapshot DNS, then verify live Capture every record, especially MX, TXT, and DKIM, before any nameserver change, and re-check against the live domain afterward. The dashboard alone is not proof. #### If your site is on WordPress and more than one person needs to edit it ##### Static sites for firms that want to own their web presence Consulting firms and nonprofits on WordPress pay for hosting, plugins, and updates, and still depend on whoever holds the admin login. This engagement moved a 37-page site to plain HTML in a repository the client owns, on a free Cloudflare account, with a pipeline that lets three people edit safely through Claude Code and a preview URL for every change before it goes live. ETTE scopes this work as a defined statement of work: accounts in your name, the pipeline and its safeguards, and a live session on the edit, preview, publish loop. Content, design, and domain fees stay with you, and so does everything ETTE builds. For how the same accessibility standard was applied to a nonprofit's site, see the website accessibility case study. Talk With an Advisor Explore AI Strategy & Enablement --- ## Nonprofit data security Source: https://ettebiz.com/nonprofit-data-security Nonprofit Data Security ### Nonprofit data security, run by CISSP and CISA certified engineers. ETTE protects donor, client, grant, and financial data for nonprofits in Washington, DC and nationwide. Senior engineers holding CISSP and CISA certifications design the controls, our help desk runs them every day, and your board gets a plain-language security report each quarter. Support is bilingual in English and Spanish. Talk With an Advisor Check Cyber Insurance Readiness What Is at Risk #### The data a nonprofit holds, and who wants it. A nonprofit with 30 staff typically holds donor payment records, client case files, grant reports, payroll, and board minutes spread across Microsoft 365 or Google Workspace, a CRM, and an accounting system. Attackers target that mix because it is valuable and lightly defended. Business email compromise aimed at finance staff, ransomware on shared files, and account takeover through a reused password are the three incidents we are called into most often. Funders, insurers, and state regulators now ask how that data is protected before they renew. The controls below are the ones their questionnaires ask about, and they are included in every ETTE managed plan rather than sold as a separate security program. Controls ETTE Manages #### Eight controls, named and owned. Multi-factor authentication and conditional accessMFA on every account, with Microsoft Entra ID conditional access rules that block legacy sign-ins and require a compliant device for finance and admin roles. Microsoft Defender for Business on every deviceEndpoint detection and response on every laptop and desktop, watched around the clock by managed detection, so a 2 a.m. alert is contained rather than discovered on Monday. Email protection with Defender for Office 365Filtering for phishing, impersonation, and malicious attachments, plus SPF, DKIM, and DMARC on your domain so nobody else can send as your executive director. Device management with IntuneDisk encryption, patching, screen lock, and remote wipe enforced on staff and volunteer devices, including Macs and personal phones that hold work email. Backup and recovery, testedIndependent backup of Microsoft 365 or Google Workspace, file servers, and key program systems, with documented restore tests and recovery objectives your board has seen. Incident response you can callA written incident response plan with named roles, and an engineer on the line within our 20-minute urgent response objective when something happens. Security awareness trainingShort monthly training and simulated phishing for staff, fellows, and volunteers, with completion reports ready for your insurer. Access reviews and offboardingQuarterly review of who can reach donor, client, and financial systems, and same-day account shutoff when staff or volunteers leave. Where your organization runs Microsoft 365 Business Premium, Defender for Business, Defender for Office 365 Plan 1, Intune Plan 1, and Entra ID P1 are already in the license at the $5.50 per user nonprofit price. ETTE configures and runs them; you do not buy a second security stack. Licensing options are compared in the nonprofit IT discounts guide. Who Does the Work #### Certified engineers, not a rotating call center. ETTE's senior engineers hold CISSP (Certified Information Systems Security Professional) and CISA (Certified Information Systems Auditor) certifications. That matters in two places: designing controls that hold when an attacker is creative, and answering an auditor or insurer in their own vocabulary. Support is bilingual in English and Spanish, delivered by an Americas-based team that documents every environment it manages. The engineer who takes your call has already read the record of your last one. The help desk is staffed Monday through Friday, 7 AM to 7 PM ET, with managed threat detection running 24/7, and we work to a 20-minute response objective on urgent tickets. Evidence #### Reports your board, funder, and insurer can read. Every managed plan includes ETTE GuardRail, a quarterly security posture score with the evidence behind each control: MFA coverage, device compliance, backup test results, training completion, and open risks with owners. When a cyber insurance application or a grant questionnaire arrives, the answers are already written. For organizations that need someone to own security governance, a Virtual CISO adds a risk register, policy ownership, and audit coordination on top of these controls. Explore ETTE GuardRailVirtual CISO Related Services #### Part of one connected service. ##### Cybersecurity & Compliance The full managed security baseline for every plan. ##### Email Security Phishing, impersonation, and account takeover defense. ##### Cloud Identity Protection MFA, conditional access, and least-privilege roles. ##### Backup & Recovery Independent, tested backup for cloud and servers. Common Questions #### Nonprofit data security FAQs. What does nonprofit data security from ETTE include? Multi-factor authentication and conditional access, Microsoft Defender for Business on every device with around-the-clock managed detection, Defender for Office 365 email protection with SPF, DKIM, and DMARC, Intune device management, independently tested backup and recovery, a written incident response plan, monthly security awareness training, and quarterly access reviews. All of it is included in ETTE managed IT, which starts at $125 per user per month remote-only and $150 fully managed, with nonprofit pricing on both. Who runs the security work, and are they certified? ETTE's senior engineers hold CISSP (Certified Information Systems Security Professional) and CISA (Certified Information Systems Auditor) certifications. They design the controls and review the evidence; our Americas-based help desk runs them daily and documents every environment. Support is bilingual in English and Spanish. Do we need Microsoft 365 Business Premium for this? For anyone who handles donor, client, grant, or financial data, yes. Business Premium at the $5.50 per user nonprofit price carries Defender for Business, Defender for Office 365 Plan 1, Intune Plan 1, and Entra ID P1 conditional access. The free Business Basic grant has none of those, so we recommend Basic or F3 only for roles that need email and Teams alone. Google Workspace organizations get equivalent controls from Workspace security settings plus third-party endpoint protection. Is this a compliance certification? No. We map the controls to familiar families such as CIS Controls and NIST-style categories so a board or funder can see what is covered, and we assemble the evidence behind each answer. ETTE does not claim certification or formal compliance with any named framework. What happens when there is an incident? You call the help desk and an engineer responds within the 20-minute urgent objective. Managed detection isolates the affected device or account, we restore from tested backups where data was touched, and we work the written incident response plan with your leadership, including what to tell the board, funders, and your cyber insurer and when. Let's Talk #### Find out where your data stands today. Start with the free Email Security Scorecard or Cyber Insurance Readiness Check, then talk with an advisor about closing the gaps. Talk With an AdvisorRun the Email Security Scorecard --- ## Nonprofit IT discounts: TechSoup, Microsoft 365, and Google compared Source: https://ettebiz.com/nonprofit-it-discounts Nonprofit IT Discounts ### Nonprofit IT discounts in 2026: what TechSoup, Microsoft, and Google actually give you. A 40-person nonprofit that captures every eligible offer pays about $2,640 a year for Microsoft 365 Business Premium at the $5.50 nonprofit price, a discount Microsoft puts at 60 to 75 percent, and $0 for Google Workspace for Nonprofits. This guide lists what each program offers as of September 2026, what changed on July 1, 2026, and how ETTE captures the offers for clients as part of managed IT. Talk With an Advisor See Nonprofit Pricing What Changed #### Two dates that changed nonprofit licensing. On July 1, 2025 Microsoft ended the free 10-license Business Premium grant and the Office 365 E1 grant. Organizations still on them lose the licenses at their next renewal date. The Business Basic grant of up to 300 free licenses continues. On July 1, 2026 Microsoft raised nonprofit prices in step with commercial increases. Business Standard moved from $3.00 to $3.50 per user per month, Microsoft 365 E3 from $9.00 to $9.75, E5 from $22.80 to $24.00, and F3 from $2.00 to $2.50. Business Premium stayed at $5.50. Google's nonprofit tiers did not change: Workspace for Nonprofits is still $0 per user. Side by Side #### TechSoup, Microsoft, and Google compared. Scroll sideways on small screens to see all three programs. | TechSoup | Microsoft for Nonprofits | Google for Nonprofits | What it is | A nonprofit that validates eligibility and brokers donated and discounted products from many vendors | Microsoft's own grant and discount program, claimed through the Nonprofit Hub after validation | Google's program for eligible nonprofits; Workspace is the offer that matters for IT | Cost to join | Free. An admin fee is charged per product requested | Free registration; offers unlock after validation | Free; verification through Google's validation partner | Free tier | Donated products for the admin fee only | Microsoft 365 Business Basic, up to 300 licenses: web and mobile Office, Teams, Exchange email, 1 TB OneDrive per user | Google Workspace for Nonprofits at $0 per user: Gmail, Meet, Drive, 100 TB pooled storage, up to 300 users (2,000 by request) | Paid tiers, per user per month | Varies by vendor; discounted offers are paid to the vendor after validation | Business Standard $3.50, Business Premium $5.50, Microsoft 365 E3 $9.75, E5 $24.00, F3 $2.50, all paid yearly; Copilot add-on $25.50 | Business Standard $3.50 annual ($4.20 monthly), Business Plus $6.16 annual ($7.40 monthly), Enterprise editions 70 percent or more off | Security in the paid tier | Depends on the product | Business Premium: Defender for Business, Defender for Office 365 Plan 1, Intune Plan 1, Entra ID P1 conditional access, Purview information protection | Business Plus adds Vault retention and eDiscovery and 500-participant Meet; Enterprise Plus adds DLP, S/MIME, data regions | Other technology benefits | Refurbished hardware and discounts across security, design, and accounting vendors | $2,000 in Azure credits per year; Dynamics 365 and Power Platform discounts; LinkedIn and GitHub for Nonprofits | Pooled storage scales to 5 TB per user on Enterprise editions | Validation time | Qualification averages two days per TechSoup; partners may request documents | Days to weeks; register before you need it | Days to weeks; email notice when verified | Who is excluded | Set per vendor program; TechSoup enforces each partner's rules | Set per offer on Microsoft's eligibility page | Government entities, hospitals and healthcare organizations, schools and universities | ETTE registers you during onboarding | yes: Smooth Start, first 30 days | yes: Smooth Start, first 30 days | yes: Smooth Start, first 30 days | Prices and program terms were checked against Microsoft's nonprofit offers page and its July 1, 2026 licensing update, Google's Workspace for Nonprofits comparison page, and TechSoup's qualification documentation on September 7, 2026. Vendors change these programs; confirm current terms before purchasing. Microsoft 365 #### Which Microsoft license each role should get. Business Premium at $5.50 for anyone who touches donor, client, grant, or financial data, and for anyone with admin rights, because that is where Defender for Business, Intune, and conditional access live. Business Basic (free) or F3 ($2.50) for staff who only need email, Teams, and web Office. Do not move the whole organization to free Basic to keep a zero on the invoice. The controls you give up cost more than $5.50 a month at the first incident. For a 40-person organization, 25 Premium licenses and 15 Basic licenses come to $1,650 a year. Copilot at $25.50 per user is an add-on for a few heavy writers, not a default. Google Workspace #### When the free tier is enough. Google Workspace for Nonprofits already carries Business Standard features and 100 TB of pooled storage, which covers most nonprofits under 300 staff. Pay for Business Plus at $6.16 when you need Vault for legal holds or grant record-retention rules, or 500-participant meetings. Move to an Enterprise edition only for data loss prevention, S/MIME, or data-region requirements written into a contract. Government entities, hospitals and healthcare organizations, and schools cannot use the program, so a fiscally sponsored clinic or a charter school should plan on commercial or education pricing instead. TechSoup #### What to request and what to skip. Register before you need anything. TechSoup reports that qualification averages two days, but Microsoft and Google run their own validations on top, so a request made the week a grant renews will not land in time. Create validation tokens in your TechSoup account for the partner programs that ask for them. Donated products are almost always worth the admin fee. Discounted products need a street-price check first. Order against your technology roadmap, not the catalog: licenses claimed because they were cheap and never deployed still carry fees and still complicate your tenant. What ETTE Does #### Licensing capture is part of onboarding. During the 30-day Smooth Start that opens every managed engagement, ETTE registers or verifies your organization with TechSoup, Microsoft's Nonprofit Hub, and Google for Nonprofits, reassigns licenses so each role has the right tier, and reconciles counts as staff change. The savings usually offset a meaningful share of the managed IT fee, which starts at $125 per user per month remote-only and $150 fully managed, with nonprofit pricing on both. Talk With an AdvisorNonprofit Data Security Common Questions #### Nonprofit IT discounts FAQs. Is the Microsoft 365 nonprofit grant still available in 2026? Partly. Microsoft 365 Business Basic is still granted free for up to 300 licenses. The free 10-license Business Premium grant and the Office 365 E1 grant ended on July 1, 2025, and organizations holding them lose the licenses at their next renewal. Paid nonprofit tiers continue at a 60 to 75 percent discount. How much is Microsoft 365 Business Premium for nonprofits? $5.50 per user per month, paid yearly. It was not changed in Microsoft's July 1, 2026 nonprofit price adjustment, which raised Business Standard to $3.50, Microsoft 365 E3 to $9.75, E5 to $24.00, and F3 to $2.50. Business Premium includes Defender for Business, Defender for Office 365 Plan 1, Intune Plan 1, and Entra ID P1. Is Google Workspace free for nonprofits? Yes. Google Workspace for Nonprofits is $0 per user per month with 100 TB of pooled storage and up to 300 users, expandable to 2,000 by request. Business Standard is $3.50 per user per month on an annual commitment ($4.20 monthly) and Business Plus is $6.16 ($7.40 monthly). Government entities, hospitals and healthcare organizations, and schools are not eligible. Does TechSoup cost money? Joining is free. TechSoup charges an admin fee on each product you request, which on donated products is the whole price and is small next to retail. TechSoup reports that qualification reviews are completed in two days on average. Register before you need anything, because Microsoft and Google validations run on top of it. Will ETTE handle the registrations for us? Yes. During the 30-day Smooth Start onboarding ETTE registers or verifies your organization with TechSoup, Microsoft's Nonprofit Hub, and Google for Nonprofits, assigns each role the right license tier, and reconciles license counts as staff change. Managed IT starts at $125 per user per month remote-only and $150 fully managed, with nonprofit pricing on both. Next Step #### Stop paying commercial prices for nonprofit software. Bring your current license list to a 30-minute call and we will show you what each role should be on and what it costs. Talk With an AdvisorCloud Computing for Nonprofits --- ## Nonprofit technology consulting and Virtual CIO Source: https://ettebiz.com/nonprofit-technology-consulting Nonprofit Technology Consulting ### Nonprofit technology consulting from a Virtual CIO who reports to your board. ETTE gives nonprofits a part-time chief information officer: a written technology roadmap, an annual IT budget built around restricted and unrestricted funding, vendor-neutral system selection, and a quarterly briefing your board can act on. Listed at $2,500 per month as an add-on to managed IT, or scoped as a fixed-price project. Washington, DC and nationwide since 2002. Talk With an Advisor How the Virtual CIO Works When You Need It #### The questions a help desk cannot answer. Whether to replace the donor CRM or fix how staff use it. What the three-year technology budget should be and which grants can fund it. Whether the executive director's laptop policy is a security exposure. What to tell the board about AI. These are leadership decisions, and in most nonprofits under 75 staff nobody owns them. A Virtual CIO owns them, for a fraction of the cost of the hire, and puts the answers in writing so the board, the auditor, and the next executive director can read them. What Is Included #### Nine deliverables, written for a nonprofit. Technology roadmap tied to your strategic planA written 12 to 36 month plan sequenced to program and funding cycles, so the CRM replacement lands after the campaign, not during it. IT budget by funding sourceLine items split into what a restricted grant can carry, what belongs in indirect, and what is capital, so finance can place every dollar. Nonprofit licensing captureTechSoup, Microsoft for Nonprofits, and Google for Nonprofits registered and kept current, with each role on the right tier. Cloud migration planning and fixed-price deliveryFile server to SharePoint, Google to Microsoft or the reverse, scoped with the failure modes included before anyone commits money. Vendor-neutral system selectionWritten comparisons for CRM, association management, accounting, and HR platforms with a recommendation and the reasoning, sized to the decision. Board and finance committee briefingsQuarterly, in plain language: risk, cost, and trend, with the questions a board member should ask answered before they are asked. Funder and grant technology requirementsData security clauses, evidence requests, and questionnaires handled with a Virtual CISO where the funder wants a named owner. Right-sized policy and governanceAcceptable use, access, incident response, and AI use policies written for a 30-person organization, not copied from a 3,000-person one. Staff, fellow, and volunteer lifecycleJoiner, mover, and leaver workflows designed for the way nonprofits actually staff: short fellowships, seasonal volunteers, and contractors. Proof #### Consulting that has moved real nonprofits. Cloud Migration ##### 2.38 TB and about one million files to SharePoint A legal nonprofit moved off a legacy file server to SharePoint, OneDrive, and Entra ID in phases, without disrupting an active audit. Transition ##### Off the outgoing provider in 17 days A remote Washington, DC advocacy firm had every device onboarded and security hardened in 17 days, with no disruption to staff. Modernization ##### Telecom savings first, then everything else The nonprofit behind the Women's Memorial modernized in phases: telecom savings funded workstations, Microsoft 365, and Wi-Fi. Compliance ##### A DFARS-aligned environment for a DoD contract A nonprofit migrated to Microsoft 365 off aging servers, then built the compliant infrastructure its federal contract required. Why Nonprofits Stay #### Relationships measured in years. ETTE has served nonprofits and associations from Washington, DC since 2002. Most clients have stayed for years, and one association relationship has passed the ten-year mark. Consulting compounds the same way: every roadmap, budget, and board briefing builds on the documented record of the last one, so the second year of advice is sharper than the first. Senior engineers carry CISSP and CISA certifications, support is bilingual in English and Spanish, and the team is Americas-based and documents every environment it touches. How It Fits #### Advisory on your side of the table. The Virtual CIO is purely advisory. It works alongside your existing support, sets direction, and holds vendors, including ETTE, to the roadmap. Security governance for auditors and funders is the Virtual CISO's job; hands-on AI work belongs to AI Strategy and Enablement. Most nonprofits start with a roadmap and budget engagement and decide on the recurring cadence after the first quarter. See PricingNonprofit IT Discounts Guide Related Services #### Part of one connected service. ##### Virtual CIO The full advisory service, for any organization. ##### Virtual CISO Security leadership for audits, questionnaires, and risk. ##### Nonprofit Data Security The controls behind the roadmap, named and owned. ##### AI Strategy & Enablement Governed AI adoption that starts with your work. Common Questions #### Nonprofit technology consulting FAQs. What does nonprofit technology consulting from ETTE cost? The Virtual CIO is listed at $2,500 per month as an add-on to a managed IT plan, with scope tailored to your organization. Migrations and system selections can also be scoped as fixed-price projects. Nonprofit pricing applies to managed IT, which starts at $125 per user per month remote-only and $150 fully managed. Do we need ETTE managed IT to hire the Virtual CIO? No. The role is advisory and works alongside your existing IT support, whether that is ETTE's team, an internal staff member, or another provider. It sets direction, plans budgets, and briefs the board; it does not replace the help desk. Can you help with grant-funded technology purchases? Yes. We build the IT budget by funding source so finance can see which items a restricted grant can carry, write the technology sections of proposals and reports in plain language, capture TechSoup, Microsoft, and Google nonprofit offers so grant dollars go further, and assemble the security evidence funders ask for. Do you consult on AI for nonprofits? At the leadership level, yes: where AI might help, the risks, the policy your staff need, and the budget implications. Hands-on strategy, pilots, and governed rollout are delivered through ETTE's AI Strategy and Enablement service. Let's Talk #### Bring the board a plan instead of a problem. Start with a roadmap and budget conversation. You will leave with a written picture of where your technology stands and what the next twelve months should cost. Talk With an AdvisorTake the Readiness Check --- ## Backup and disaster recovery for nonprofits and associations Source: https://ettebiz.com/backup-and-disaster-recovery/ ETTE Insight ### Backup and disaster recovery for nonprofits and associations Microsoft 365 retention is not a backup. What that distinction means for your recovery objectives, what to test, and what ETTE managed plans include. Updated: 2026-08-18 If your files live in Microsoft 365 or Google Workspace, you probably do not have a backup. You have retention, which is a different thing, and the difference only becomes visible on the day you need to undo something. This is the question we get asked most often by nonprofit and association leaders in Washington, DC, usually a week after somebody deleted a shared folder or a finance mailbox got compromised. What follows is the short version of what we tell them: what backup actually means once your data is in the cloud, what your provider does and does not do for you, and how to decide what to pay for. #### Is Microsoft 365 backing up your data? No, and Microsoft says so directly. Its shared responsibility model puts customer data, configurations, identities, and user accounts on the customer in every deployment model, software-as-a-service included. Microsoft runs the platform. What lives inside it is yours to protect. What Microsoft 365 gives you by default is retention: version history, recycle bins, single-item recovery, and optional legal holds. Those are useful and they solve the everyday problem of one person deleting one file. They are not a backup, and Microsoft's own documentation explains why in plain terms: Disaster recovery copies hold the current state of your content, not historical versions from earlier points in time. If the current state is encrypted, so is the copy. Version history lets individual users roll back individual files, but it does not scale to the case where an administrator needs to orchestrate recovery across thousands of items. Versions can also be exhausted, depending on the version limit an admin has set. Legal holds retain data, but they are built for export through eDiscovery, not for mass restore. There is also a clock most organizations do not know about. When data is actively deleted from a tenant with a live subscription, Microsoft's data handling standard retains it for at most 30 days. If the subscription itself ends, Microsoft keeps customer data in a limited-function account for 90 days so you can extract it, and deletes everything no later than 180 days after termination. A lapsed invoice is a data-loss event on a timer. #### What is the 3-2-1 rule, and does it still apply in the cloud? The rule is three copies of your data, on two different kinds of media, with one copy off site. It was written for tape and it still holds, but the words mean something different now. Off site used to mean a different building. When your production data already lives in a Microsoft or Google datacenter, off site means a different failure domain and, more importantly, a different administrative boundary. A backup that a compromised global admin account can delete is not a third copy. It is the same copy with extra steps. The practical translation for a cloud-first organization: production in Microsoft 365 or Google Workspace, a backup in a system with separate credentials and its own retention policy that your tenant admins cannot purge, and immutability on that backup so a ransomware operator with your password cannot shorten its life. #### How often should backups run? Work backwards from how much work you can afford to lose. That number is your recovery point objective, and it sets backup frequency rather than the other way around. For most nonprofits and associations we work with, the answer for email and shared files is under an hour, because a morning of lost donor correspondence or grant edits is recoverable and a week is not. For a finance or membership database mid-audit, it is minutes. As a reference point, Microsoft 365 Backup, Microsoft's own paid add-on, publishes a recovery point objective of 10 minutes for OneDrive, SharePoint, and Exchange Online across the trailing two weeks. Beyond two weeks you get weekly restore points out to 52 weeks. That is a reasonable bar to measure any alternative against. Two limits to check before you buy it: retention is a fixed one year and your tenant retention policies do not flow through to it, and data sitting only in those backups is not discoverable through eDiscovery. #### How long should recovery take? Recovery time objective is the other half, and it is the number organizations almost never test. How long can you be down before the consequence stops being inconvenience and starts being a missed payroll, a blown grant deadline, or a board conversation? Write the number down per system, because it differs. Email might be four hours. The membership database might be one. An archive of old program photos might be a week, and that is fine. Once the numbers exist, they tell you where to spend money and where not to, which is the entire point of the exercise. #### What does an untested backup actually cost you? Everything, on the one day it matters. A backup job that reports success every night for two years and cannot produce a working mailbox is worse than no backup, because you planned around it. Restore testing is the part of this discipline that gets skipped, and it is the only part that proves the rest works. Test by restoring something real to a scratch location and having the person who owns that data confirm it is intact. Not the IT team, the owner. Do it on a schedule you would be comfortable describing to your auditor. Three failures we see repeatedly, all of which a single restore test would have caught: the backup covered mailboxes but not the SharePoint sites where the actual work lived; the backup covered files but not the permissions, so the restore arrived as an unusable flat pile; and the backup covered everything except the one system somebody stood up outside IT's knowledge. #### What should a nonprofit actually back up? Start from what would stop the mission rather than from a list of servers. Email and calendars, including shared and departmental mailboxes, which are routinely missed because nobody owns them. SharePoint, Teams, and OneDrive content, with permissions, because collaboration structure is data too. Your CRM or donor and membership database, which is often the single most expensive thing to reconstruct and often the only system still on someone's laptop. Financial systems and their supporting documentation, on a retention schedule that matches your audit and grant obligations rather than a default. Identity configuration. Rebuilding groups, conditional access rules, and app registrations from memory after a tenant compromise is its own outage. Any line-of-business system a program team adopted directly. Ask; do not assume. #### How does ETTE handle backup and recovery? Cloud backups for files and email are included in every ETTE managed plan, which start at $125 per user per month for remote-only support and $150 per user per month fully managed, with nonprofit rates available on both. Backup and disaster recovery are also part of co-managed engagements, which we scope to the responsibilities your internal team wants to keep. What we think matters more than the tooling is the order of operations. Every ETTE engagement opens with a 30-day Smooth Start at no additional cost, and the first thing it produces is documentation of your actual environment: every device, account, application, and configuration. You cannot write a defensible recovery plan for systems nobody has inventoried, and in our experience the discovery phase is where the gaps surface. It is usually the departmental mailbox, the database on a program director's machine, or the file share that was supposed to be decommissioned two years ago. From there the work is unglamorous and mostly consists of doing the things above on a schedule: recovery objectives written down per system, backups scoped to match them, restore tests that a data owner signs off on, and a recovery plan short enough that somebody could follow it during a bad week. Our help desk is staffed Monday through Friday, 7 AM to 7 PM ET, and works to published response objectives of 20 minutes for urgent issues and 60 minutes for high priority. #### Where to start if you are not sure what you have Ask three questions and see whether anyone can answer them without checking. If your email and files were encrypted this afternoon, what is the most recent point you could restore to? Who has the standing ability to delete your backups? When did somebody last restore something and confirm it worked? If those answers are not immediate, that is the finding, and it is a more useful place to start than a product comparison. The readiness assessment walks through the same ground in a few minutes, and the cloud, productivity, and backup operations page covers what we run day to day. Vendor details in this article were verified against Microsoft's shared responsibility documentation, the Microsoft 365 Backup FAQ, and Microsoft's data retention and deletion standard in August 2026. Microsoft changes these terms periodically; confirm current specifics before making a licensing decision. #### Related ETTE Guidance ETTE includes tested cloud backups for files and email in every managed plan, with restoration testing. Cloud & Backup Operations Talk With an Advisor Also see backup and disaster recovery guide and published pricing. --- ## Cloud computing for nonprofits after Microsoft's grant changes Source: https://ettebiz.com/cloud-computing-for-nonprofits/ ETTE Insight ### Cloud computing for nonprofits after Microsoft's grant changes Microsoft ended the free 10-user Business Premium nonprofit grant on 1 July 2025. Current licensing, the security duties that stay yours, and migration costs. Updated: 2026-08-20 Microsoft ended the free 10-user Business Premium grant for nonprofits on 1 July 2025. If your organization was running on it, that is the single most important cloud fact of the last two years, and a lot of DC nonprofits still have not been told. Most cloud writing aimed at nonprofits explains what IaaS, PaaS, and SaaS stand for and stops there. That is not the decision anyone is actually facing. The real questions are which licences to buy now that the grant is gone, what belongs in the cloud and what does not, and which security responsibilities remain yours after you sign. This page covers those. #### What changed with Microsoft's nonprofit licensing? As of 1 July 2025, Microsoft no longer grants free Microsoft 365 Business Premium or Office 365 E1 licences to nonprofits. Organizations holding those grants lose them at their next renewal date. What Microsoft offers eligible nonprofits now, from its own offers page: Microsoft 365 Business Basic free for up to 300 users, which covers web and mobile apps, Teams, 1 TB of storage per user, and baseline security. No desktop Office apps. Microsoft 365 Business Premium at $5.50 per user per month, billed yearly, which is roughly a 75 percent discount. Desktop apps plus the security tooling most organizations actually need. Microsoft 365 E3 at $9.75 and E5 at $24 per user per month, billed yearly. Microsoft 365 F3 at $2.50 per user per month for frontline staff who mostly need email and Teams. Our position on the trade: if you were on granted Business Premium, moving everyone to free Business Basic to preserve the zero on the invoice is usually the wrong call. Business Premium is where Intune device management, Defender for Business, and conditional access live. Dropping to Basic does not just cost you desktop Office, it removes the controls that make a distributed nonprofit defensible, and at $5.50 per user it is the cheapest security you will ever be offered. The better move is Business Premium for staff who handle donor, financial, or member data, and F3 or Basic for people who only need email. Check TechSoup as well, for donated and discounted licensing across other vendors, and Google Workspace for Nonprofits if you are on that stack instead. Eligibility rules differ from Microsoft's. #### Do you need IaaS, PaaS, or SaaS? Almost certainly SaaS, and mostly one of it. Microsoft 365 and Google Workspace are software-as-a-service, and for a nonprofit under a few hundred people they are the cloud strategy. The other two categories matter only in specific cases. Infrastructure-as-a-service, meaning virtual machines you administer, earns its place when you have a line-of-business application that will not run anywhere else. Association management systems and older grant or case management software are the usual culprits. Platform-as-a-service matters if you are building something custom, which most organizations your size should not be doing. The distinction matters for exactly one reason, which is the next section. #### What security is still yours after you move? More than most boards assume. Microsoft publishes a responsibility matrix, and the pattern in it is consistent: as you move from on-premises to IaaS to PaaS to SaaS, Microsoft takes over the physical datacenter, the network, the hosts, and eventually the operating system. Four things never transfer, in any model. Your data, including how it is classified, encrypted, and governed. Your configurations and settings. A misconfigured tenant is your incident, not Microsoft's. Your identities and users. Account lifecycle is yours. Your access management, including multifactor authentication, role assignments, and conditional access. Client devices are shared in SaaS and fully yours everywhere else. Applications are shared in PaaS and SaaS. This is why "we moved to the cloud so we are covered" is the most expensive sentence in nonprofit IT. Nearly every incident we are called into involves one of those four never-transfers: a password with no second factor, an over-permissioned guest account, a sharing setting nobody reviewed, or an admin account that four people use. #### What should move to the cloud, and what should not? Move email, files, and collaboration. That decision is settled and there is no good argument left for running your own mail server. Be more careful with these: Anything with a hardware dependency. Building access control, phone systems tied to physical lines, lab or AV equipment. Check what breaks when the internet does. Large media libraries. Program video and photo archives are cheap to store and expensive to move repeatedly. Decide where they live once. Applications with a licensing model that punishes virtualization. Some association management vendors still price this way. Anything under a grant or contract clause specifying data location or handling. Read the agreement before the migration, not during it. Public, private, and hybrid is mostly a distinction that matters to organizations larger than this. If someone is selling you a private cloud for a 40-person nonprofit, ask them to name the specific requirement driving it. #### How long does a cloud migration take? For a typical nonprofit of 10 to 75 people moving email and files, plan on weeks rather than months, with the caveat that the work is mostly not technical. The file copy is the easy part. What takes the time is deciding how shared content should be structured on the other side, because a migration is the one moment you can fix fifteen years of accumulated folder sprawl and nobody gets a second chance at it. Skipping that step is how organizations end up paying for SharePoint and using it as a file share. ETTE delivers migrations as fixed-price projects, which we do specifically so the scoping conversation happens before anyone commits money. Our SharePoint migration case study covers one of these end to end. Every managed engagement also opens with a 30-day Smooth Start at no additional cost that documents your environment before anything moves, and in one case a DC advocacy firm was fully transitioned off its previous provider in 17 days. #### What does cloud actually cost a nonprofit? Three lines, and organizations routinely budget for one. Licensing is the visible line, and after nonprofit discounts it is usually the smallest. At $5.50 per user per month, Business Premium for a 40-person organization is about $2,640 a year. Management is the line that gets missed. Someone has to run identity, patch devices, review sharing settings, respond when a staff member is locked out at 8 AM, and produce evidence when a funder asks about your controls. ETTE managed plans start at $125 per user per month remote-only and $150 fully managed, with nonprofit rates on both and the help desk staffed Monday through Friday, 7 AM to 7 PM ET. Migration is a one-time line, scoped per project. Insist on a fixed price rather than hourly. Hourly billing on a migration puts your interests and your provider's in opposition. #### Where to start If you are still on a granted Business Premium licence, find your renewal date first. That is the deadline everything else works backwards from, and it is the one thing on this page with a clock attached. After that, the useful first step is an inventory rather than a product decision: who has accounts, what data sits where, which systems were adopted outside IT, and which of the four never-transfer responsibilities above currently has nobody's name on it. The readiness assessment covers the same ground quickly, and the cloud, productivity, and backup operations page describes what we run. For nonprofits specifically, our nonprofit page has more on budget-aware and board-ready reporting. Microsoft licensing figures and the responsibility matrix in this article were verified against Microsoft's nonprofit offers page and Azure shared responsibility documentation in August 2026. Microsoft has changed nonprofit licensing recently and may again; confirm current pricing and eligibility before purchasing. #### Related ETTE Guidance ETTE has specialized in nonprofit and association IT since 2002, with nonprofit pricing on every plan. IT for Nonprofits Talk With an Advisor Also see published pricing. --- ## What is a managed services provider? Source: https://ettebiz.com/what-is-a-managed-services-provider/ ETTE Insight ### What is a managed services provider? A managed services provider runs your IT for a flat recurring fee. What an MSP does, how it differs from break-fix support, what the acronyms mean, and how MSPs charge. Updated: 2026-08-20 A managed services provider, or MSP, is a company that runs your organization's IT for a flat recurring fee: the help desk your staff calls, the security tooling on your devices, the backups, the patching, and the planning. The "managed" part is the point. Instead of paying someone to fix things after they break, you pay a team to keep them from breaking and to answer for the whole system. #### What does a managed services provider actually do? Day to day, six things. A staffed help desk your people contact when something does not work. Monitoring and patching that catches issues before anyone notices them. Security: endpoint protection, email defense, identity and access controls, and user training. Backup and recovery, including proving that restores actually work. Vendor management, so your internet provider, phone system, and software vendors have one accountable front door. And advisory: budgets, roadmaps, and guidance when a bigger decision comes up. A good one also documents everything. Every device, account, application, and configuration, written down where the whole team can see it, so support starts with context instead of twenty questions. Whether a provider documents your environment, and who owns that documentation if you leave, tells you more about them than any brochure. #### How is an MSP different from break-fix IT support? Break-fix means you call when something breaks and pay by the hour. The incentives run backwards: the provider earns more when you have more problems, and you hesitate to call because every call costs money, so small issues get reported late and grow into outages. A managed services provider charges the same flat amount whether you call once or forty times. Prevention becomes their profit motive. When ETTE moved to this model, the logic was plain: one flat monthly fee per user means we earn more by fixing things fast and keeping them fixed, not by billing the meter. #### What do the related acronyms mean? MSP: managed services provider, the general-purpose IT partner described above. MSSP: managed security services provider, a specialist focused only on security operations. Many MSPs, ETTE included, build managed security into the base service instead of selling it separately. Co-managed IT: an MSP working alongside your internal IT staff under a clear division of duties, rather than replacing them. vCIO and vCISO: virtual chief information officer and virtual chief information security officer. Fractional executive leadership from the provider: technology roadmaps and budgets from the vCIO, risk and compliance ownership from the vCISO. #### How do managed services providers charge? Most price per user per month; some price per device, and a few still bill hourly, which is break-fix wearing a subscription label. Per user is the model to prefer, because it maps cost to headcount and covers however many devices each person uses. Few providers publish their rates. ETTE does: fully managed IT from $150 per user per month, remote-only from $125, nonprofit rates on every plan, and Virtual CIO advisory listed at $2,500 per month as an add-on. Published or not, the number only means something next to what it includes, which is covered in what outsourced IT support costs and what should be included. #### Do you need an MSP, internal IT, or both? Headcount is the honest guide. Under roughly 75 people, a managed plan usually costs less than one internal hire and buys a full team instead of a single point of failure. Past that size, or when your operations are specialized enough to need a full-time person, the question becomes both: an internal lead who knows the organization, plus a co-managed provider supplying capacity, after-hours security coverage, and specialists no one person can be. The wrong answer at any size is one administrator with every password and no documentation. Organizations discover the cost of that arrangement on that person's last day. #### How do you evaluate a managed services provider? Ask for response objectives in writing; ETTE publishes 20 minutes for urgent issues, 60 for high priority. Ask how onboarding works and what gets documented; a provider who changes things before documenting your environment is guessing. Ask whether backups get restore-tested. Ask about exit terms, because confident providers do not lock the door. And ask for client references in your sector, since a provider fluent in, say, nonprofit budgets and board reporting will serve a nonprofit better than a generalist with a bigger office. ETTE has been a managed services provider for nonprofits, associations, and small businesses since 2002, headquartered in Washington, DC with remote coverage nationwide. The services overview shows how the pieces fit together, and the readiness assessment is a short self-check for leaders deciding whether managed IT is the right move at all. #### Related ETTE Guidance ETTE delivers managed IT, security, and advisory for nonprofits, associations, and small businesses. Managed IT & On-Site Support Talk With an Advisor Also see managed IT services in Washington, DC and published pricing. --- ## Outsourced IT support: cost and what is included Source: https://ettebiz.com/outsourced-it-support-cost/ ETTE Insight ### Outsourced IT support: what it costs and what should be included What outsourced IT support costs under per-user, per-device, and hourly models, what a managed plan should include, and the questions that expose a weak quote. Updated: 2026-08-20 Most IT providers will not tell you what outsourced IT support costs until you sit through a sales call. ETTE publishes its rates: fully managed IT starts at $150 per user per month, remote-only at $125, with nonprofit pricing on both. This page explains what sits behind numbers like those, what should be included, and how to spot a quote that leaves the expensive parts out. #### What does outsourced IT support cost? Under a per-user model, your monthly cost is the rate multiplied by your active user count. A 5-person team on ETTE's Fully Managed plan starts at 5 × $150 = $750 per month. A 25-person organization starts at $3,750. A 10-person team on Remote-Only starts at $1,250. Volume discounts apply as headcount grows, and the number adjusts automatically when people join or leave. List pricing at ETTE covers organizations of roughly 10 to 75 people. That is the size range where paying per user costs less than staffing the same coverage internally. Larger teams get scoped as a custom quote, and co-managed partnerships, where a provider works alongside your internal IT staff, are priced by the responsibilities the provider takes on rather than by a list rate. A user means a person who signs into your email, computers, or business apps. Not a device. If a quote counts devices, a person with a laptop, a desktop, and a phone costs you three times, which is one reason two quotes for the same organization can look wildly different. #### What pricing models will you see? Four, and the model matters more than the rate. Per user, flat monthly. One rate covers each person's devices and support. Predictable, and it gives the provider an incentive to fix things fast and keep them fixed, because rework costs them rather than you. Per device. Looks cheaper per line item and often totals higher, since most people now carry more than one device. Hourly, also called break-fix. You pay when something breaks. This is the model that punishes you for calling, so problems get reported late and small issues become outages. For any organization that depends on its systems daily, it is the most expensive option dressed as the cheapest. Project-based. Right for one-time work like a migration or an office move. Insist on a fixed price for projects; hourly billing on a migration puts your interests and your provider's in opposition. #### What should be included at that price? A fully managed plan should cover the whole operating picture, not a ticket queue. ETTE's plans include a staffed help desk Monday through Friday, 7 AM to 7 PM ET, on-site technician dispatch in the DC metro area on the Fully Managed plan, proactive monitoring and patching, endpoint detection and response, cloud backups for files and email, and a structured 30-day onboarding that documents your environment before anything changes. Response commitments belong in writing, not in a sales conversation. ETTE works to published objectives: urgent issues in 20 minutes, high priority in 60, normal in 90, change requests in 8 hours. If a provider will not put numbers like these in the agreement, the price is not comparable to one from a provider who will. #### What drives the price up or down? On-site needs are the biggest lever. Remote-only support costs less because nobody drives to you; it fits distributed teams and organizations comfortable with hands-on work handled through guided local support. Compliance obligations raise cost, because evidence, reporting, and stricter controls take real hours. Security add-ons beyond a baseline, advanced email protection or a fractional security officer, are scoped to your risk rather than bundled invisibly. Nonprofit status lowers it. ETTE offers reduced per-user rates on every plan and helps nonprofits capture donated and discounted licensing through programs like TechSoup, which often offsets a meaningful share of total technology cost. #### Is outsourced IT cheaper than hiring internally? For organizations under about 75 people, usually yes, and the reason is coverage rather than salary math. One internal administrator is a single person: one skill set, one set of working hours, one point of failure who takes vacations and eventually resigns with the passwords in their head. A managed plan buys a team with a help desk, an engineer bench, security tooling, and documentation that survives any one person leaving. The honest counterpoint: an internal person knows your organization in a way no provider fully will, and above a certain size you want one. That is what co-managed IT is for. Your staff keeps strategy and the work they are best at, and the provider supplies capacity, after-hours coverage, and specialists. #### What questions expose a weak quote? What are your response time objectives, and are they in the agreement? Do you test that backups restore, or only that backup jobs run? Who owns the documentation of my environment if we part ways? What are the exit terms? A provider confident in its service does not need punitive termination clauses. What exactly is not included? Projects, after-hours work, and on-site visits are where surprise invoices live. Any provider who answers those five plainly belongs on your shortlist. Any who dodges them has told you what the relationship will be like after you sign. #### Where to see real numbers ETTE's pricing page lists what each plan includes at the published rates, and the managed IT services and support page covers how delivery works day to day. If you are comparing providers in the DC market, our comparison of seven providers nonprofits shortlist names competitors and what each is good at, including where ETTE is not the right fit. #### Related ETTE Guidance ETTE delivers managed IT, security, and advisory for nonprofits, associations, and small businesses. Managed IT & On-Site Support Talk With an Advisor Also see managed IT services in Washington, DC and published pricing. --- ## Client testimonials Source: https://ettebiz.com/testimonials Client Testimonials ### What our clients say about working with ETTE. Nonprofits, associations, and businesses across Washington, DC share what it's like to work with a team that stays. Video Testimonial #### Hear directly from our clients. Leroy Hughes, Jr. shares what it's like to work with ETTE - and what a long-term technology partnership really looks like for a Washington, DC organization. Talk With an Advisor Call 202-345-1965 Long-Term Clients #### Named clients. Relationships measured in decades. ★★★★★ "ETTE consistently delivers professional, intuitive, and personal IT services, making them a standout partner for over a decade." Leroy Hughes Vice President of Operations, Public Justice · Nonprofit ★★★★★ "ETTE provides excellent customer service and support for the Society for Public Health Education (SOPHE). We have worked with ETTE for over 10 years... they help us think about long-term strategic solutions that will help us improve our efficiency and digital-first experience." Maricela Arias-Cantu, MS, MHA, CAE Chief Executive Officer, SOPHE · Association ★★★★★ "ETTE is professional, responsive, and consistently delivers exceptional service. As a company deeply dependent on effective communication channels, we cannot afford any downtime or disruptions. ETTE understands this critical need and has proven to be an invaluable partner." Pedro Alfonso President, Dynamic Concepts, Inc · Small Business Want the full story behind work like this? Start with the Managed IT Transition or SharePoint Migration case studies, or browse them all from the Case Studies menu. What Clients Say #### Relationships that keep getting smarter. ★★★★★ "ETTE is the best IT services provider that I have ever dealt with, hands down. Their techs are not only very knowledgeable and competent, but they are also responsive and accommodating." Mohamed M. Verified Google Review ★★★★★ "The ETTE team was fast, responsive, and helpful. I had struggled for hours on something that it took half an hour with the skilled support team at ETTE to solve. Definitely recommend!" Alex Breckel Verified Google Review ★★★★★ "ETTE has proven itself time and again in support of our company's IT system. Their dedication and support go beyond just the technical but are exemplified in their customer service." Preston Hames Verified Google Review ★★★★★ "ETTE is the Gold Standard for IT providers. I could write an essay about all of the ways in which they've helped our organization. If you are looking for an IT and Cyber Security provider, look no further!" Zachary Brewer Verified Google Review ★★★★★ "ETTE has been very supportive of our staff as we have transitioned to remote working. They are available to resolve issues promptly. I appreciate all of the technicians' assistance with answering any questions I've had. I would gladly recommend ETTE." Andrea Hostetler Verified Google Review ★★★★★ "My computer was offline and I couldn't connect to the printer. I contacted ETTE and the problem was solved in a few minutes. Great work!" Charles Turner Jr Verified Google Review Ready to Join Them? #### Start a conversation with ETTE. Most of our clients have been with us for years. See what a long-term IT relationship looks like. Talk With an Advisor Call 202-345-1965 ---