Daily
- Backup jobs review. Confirm every scheduled backup completed successfully. A failed backup you find on Monday is worth catching on Tuesday.
- Endpoint security alerts. Review EDR and antivirus alerts. Real threats hide in a pile of noise unless someone actually looks.
- Critical monitoring. Check server health, disk space, and internet uptime dashboards.
- Ticket triage. Sort helpdesk requests by impact so you don't spend the morning on password resets while a server is down.
Weekly
- Windows and third-party patching. Approve and deploy patches to a test group, then broader rollout. Delayed patching is the #1 cause of preventable breaches.
- Backup test restore. Restore one random file every week. It takes five minutes and it's the only way to know backups work.
- User account audit. Disable accounts for anyone who left. Review new-user access.
- Firewall and remote-access logs. Scan for brute-force attempts, denied countries, or anything unusual.
- Storage capacity. Fileservers, mailboxes, OneDrive — expand before hitting 85%.
Monthly
- Full server patch cycle. With proper change windows and reboots.
- Microsoft 365 secure score review. Track improvements, act on recommendations.
- Phishing simulation. Send a controlled test; assign training to anyone who clicks.
- Software license and subscription audit. Cancel what nobody uses, right-size what's under-licensed.
- MFA coverage report. Any exceptions? Fix them.
- Backup retention verification. Confirm daily, weekly, and monthly copies exist per policy.
Quarterly
- Restore drill. Actually restore a server or major dataset to a test environment. Time it. Document what broke.
- Vulnerability scan. External and internal. Prioritize by severity, then remediate.
- Access review. Every user's group memberships and shared-drive rights. Prune what isn't needed.
- Documentation refresh. Network diagram, vendor contacts, license list, admin credentials in the password manager.
- vCIO / technology roadmap review. Where are the risks and the opportunities in the next 12 months?
- Business continuity tabletop. Walk through a scenario — ransomware, power outage, key-person absence.
Annually
- Cyber-insurance renewal prep. Fill out questionnaires from a position of "yes" answers, not scrambled remediation.
- Password manager and MFA audit. Rotate shared secrets, remove ex-employees, confirm recovery keys.
- Firmware updates. Firewalls, switches, access points, and servers.
- Disaster recovery plan review. Update contacts, RTO/RPO targets, and vendor escalation paths.
- Hardware lifecycle plan. What's coming out of warranty this year? Budget the refresh.
The honest truth
Almost no small business runs this list consistently on their own — not because they don't want to, but because there's always something more urgent. That's what a managed IT provider actually does: turns this checklist into automated, monitored, documented work that happens whether you're thinking about it or not.
If your team is running IT off memory and reminders, we can help you replace that with a predictable, boring, and safe operating rhythm.
Need help putting this into practice?
Network Solutionist helps Delaware businesses harden security, automate maintenance, and stop worrying about IT.
Book a Consultation