Complimentary · No Obligation · No Expiry

IT Health Report

A read-only review of your Microsoft environment. No changes to your systems. Within two weeks of access being granted you receive a written report you own outright.

PIPEDA Aligned Canada Central Read-Only Access
🔐

What access we need

Two read-only roles in your Microsoft tenant: Global Reader and Security Reader. Neither can change anything and neither can open your email or your documents. Access is removed the day the report is delivered, and you can revoke it yourself at any time.

What the report covers

Six sections, in writing, with findings and recommendations you can act on immediately or hand to another provider.

01

Asset and access inventory

Every device, account, and licence visible in your tenant. Who has what access, which accounts are inactive, and where privileged roles are assigned.

02

Backup and recovery review

Whether your Microsoft 365 data and endpoint backups are configured, how complete the coverage is, and what a recovery scenario would look like today.

03

Security posture baseline

Your Secure Score in context, which Defender and Entra controls are active, and which recommended settings are off by default and should be turned on.

04

PIPEDA readiness gaps

The technical controls PIPEDA expects, mapped to what is actually configured in your environment. Gaps are listed plainly, not scored against a framework you did not sign up for.

05

Quick wins

Settings that can be changed in under an hour with no cost and no disruption. Every report includes at least three. You can act on these yourself the day you receive the report.

06

Prioritised action plan

Findings ranked by risk, with estimated effort and a suggested sequence. Designed to be handed directly to whoever manages your IT, whether that is us or someone else.

How it works

1

Book a time

Schedule a brief kickoff to confirm scope and send you the role invite instructions.

→
2

Grant access

You approve Global Reader and Security Reader in your tenant. Review begins immediately.

→
3

Receive your report

Within two weeks you receive the written IT Health Report. Access is removed the same day.

Frequently asked questions

Can I see who was given access?

Yes. The role assignments are visible in your Entra admin centre at any time. You can remove them yourself without contacting us.

Will any changes be made to our environment?

No. Global Reader and Security Reader are strictly read-only. Neither role has any write permissions. Nothing in your environment can be changed through these roles.

Can the reviewer read our email or documents?

No. Global Reader does not grant mailbox access or document access. It provides visibility into tenant configuration, licences, and audit settings only.

Is there any obligation after receiving the report?

None. The report is yours to keep with no follow-up unless you request it. You can implement the recommendations yourself, hand them to another provider, or contact us if you would like to proceed together.

How long does the report stay valid?

There is no expiry. It reflects your environment at the time of the review. Configuration changes you make afterward are not captured, but the findings and recommendations remain yours permanently.

What if we are not on Microsoft 365?

The IT Health Report is scoped to Microsoft 365 and Entra ID. If your environment is primarily Google Workspace or another platform, contact us first and we will tell you honestly whether the review would be useful.

Request your IT Health Report

Free, read-only, delivered within two weeks.

Book a time to get started