Micro-IT

Micro-IT Simple. Secure. Flexible. We provide managed IT services, cybersecurity, cloud management, and responsive technical support — all without long-term contracts.

Micro-IT delivers managed IT and cybersecurity built for small businesses — no long-term contracts, just trusted support that keeps you running with confidence. Micro-IT delivers simple, secure, and flexible IT solutions designed specifically for small and mid-size businesses across the United States. Our team helps business owners stay protected, productive, and confident in their technology thro

ugh proactive monitoring, endpoint security, and expert guidance. With Micro-IT, your business runs smoothly, securely, and stress-free.

Three CJIS v6.0 controls any city clerk or chief can verify in 30 minutes — without an auditor or a consultant.Control 1...
09/02/2026

Three CJIS v6.0 controls any city clerk or chief can verify in 30 minutes — without an auditor or a consultant.

Control 1 — Advanced authentication. Sit at the dispatcher console. Try to log into LEIN with just username and password. If it works, advanced authentication is not enforced. PIV card or biometric should be required.

Control 2 — FIPS 140-2 encryption. Open the records management vendor's documentation. Search for "FIPS 140-2" and confirm the cryptographic module is current. If the vendor cannot produce the certificate, the control is not in place.

Control 3 — One-year audit log retention. Ask the IT vendor to show you a log entry from one year ago today. If they cannot produce it within an hour, retention is not configured.

Three checks. Half an hour. Done before lunch. https://dub.sh/a57THjq

09/02/2026

The hotel Wi-Fi worked. The sign-in page looked right. The prompt came from Microsoft.

So she approved it — matched the two-digit code, tapped approve. Everything she had been trained to do, she did. The page was not Microsoft's; the network had answered for it. And what she approved was not her own sign-in.

MFA was not bypassed. It was satisfied. That is what makes this pattern work, and it is why the answer is not more training — it is somebody watching the tenant at two in the morning.

How the pattern works: https://micro-it.net/resources/article-social-engineering?utm_source=facebook-page&utm_medium=social&utm_campaign=travel-identity-2026-09&utm_content=vid-20260902-001

Corporate clients are increasingly asking their outside counsel for the same security documentation they ask their softw...
09/01/2026

Corporate clients are increasingly asking their outside counsel for the same security documentation they ask their software vendors for: SOC 2 attestations, pen-test summaries, incident-response plans.

If you are a small or midsize law firm working with publicly-traded or regulated clients, three things you should have ready to send when asked:

1. A one-page security summary describing your endpoint, identity, inbox, and network controls. Brand-canon list of MFA + EDR + patching + backups + segmentation.

2. A copy of your incident-response plan. One page is fine. It has to exist on paper.

3. A list of subprocessors — your IT vendor, your document management vendor, your cloud storage. The corporate client will want to see this list.

We help client firms prepare all three at no charge. https://dub.sh/Aqad5XS

Zero.Client downtime events across every Micro-IT Managed client in August. The boring math underneath:• 14,000+ OS and ...
08/31/2026

Zero.

Client downtime events across every Micro-IT Managed client in August. The boring math underneath:

• 14,000+ OS and application patches deployed.
• 4,200 phishing emails caught and quarantined.
• 412 EDR alerts triaged.
• 2 alerts escalated to the on-call.
• 0 alerts became incidents.
• 0 client outages.

A good month is the one where nothing happens. By that measure, August was a good month.

That is the product. If your last month did not read like this, the eight-question self-assessment will show you which category is leaking: https://dub.sh/1NnT12C

Friday-afternoon, one minute:1. Open the firewall dashboard (Meraki, UniFi, Fortinet, whatever).2. Look at the threats-b...
08/28/2026

Friday-afternoon, one minute:

1. Open the firewall dashboard (Meraki, UniFi, Fortinet, whatever).
2. Look at the threats-blocked count for the past 7 days.

Anything in the thousands is the silent background work the firewall is doing for you. Anything in the millions is normal at a small office these days.

If you do not know your firewall has a dashboard, that is the answer to find out Monday. Not knowing what your own gear reports is the most common gap we find, and it is on the two-minute self-assessment: https://dub.sh/na96YvZ

Have a good weekend out there.

Back-to-school brand-impersonation season runs August through October. The targets are families and the small offices se...
08/27/2026

Back-to-school brand-impersonation season runs August through October. The targets are families and the small offices serving them.

Shape of the attacks we have seen this season:

• School-district lookalike domains asking parents to verify enrollment fees.
• Pediatric clinic impersonations asking for updated insurance information.
• Youth-sports league impersonations asking for registration payment to a new portal.

Three things to teach the office team this week:

• Any urgent ask for payment to a new account is a phone call to verify.
• Domain spelling matters more than display name. yourdistrict.com versus yourdistrict-payments.co.
• Forward suspicious messages to your IT vendor before forwarding to colleagues.

Brand-impersonation monitoring is part of Managed Inbox. https://dub.sh/d7NBMjf

Most tax firms cannot name every outside service that can reach a client's return today.That list is exactly what the FT...
08/26/2026

Most tax firms cannot name every outside service that can reach a client's return today.

That list is exactly what the FTC Safeguards Rule — the rule the IRS ties to your PTIN — requires a firm to select, contract with, and oversee. The tax software, the e-file transmitter, the client portal, the document store, the payroll platform. Each one holds client financial data, and overseeing them starts with being able to name them.

Most firms cannot produce the list. On intro calls we ask three questions:

1. Which outside services can reach a client's return or SSN today.
2. What each one is contractually required to do if it gets breached.
3. Who reviews that access when a preparer leaves in April.

The usual answer is a pause, then a scramble. That gap is what an examiner writes up and a wire-fraud crew walks through — a portal login that belonged to a seasonal preparer who left two tax seasons ago and still reaches returns.

Vendor discipline is unglamorous and it is the whole game: a current inventory of every service that touches client data, an access review each quarter, and an offboarding step that actually removes the login. We build the inventory with the firm and keep it current, so the day the FTC or a cyber-insurer asks for evidence, *it already exists.*

A thirty-minute read on what the Safeguards Rule actually requires of an accounting firm: https://dub.sh/x7tAHMj or 270.816.5726.

Three Microsoft Defender for Office 365 settings every clinic should configure to play nicely with an EHR vendor:1. Safe...
08/25/2026

Three Microsoft Defender for Office 365 settings every clinic should configure to play nicely with an EHR vendor:

1. Safe Attachments dynamic delivery. The email arrives without the attachment; the attachment finishes sandboxing in the background and shows up moments later. Lab results from your EHR still arrive on time. Phishing attachments get caught.

2. High-confidence phish to admin-only quarantine. The receptionist does not get the choice of releasing it. The admin reviews releases weekly.

3. EHR integration whitelist by named sender, not by domain. "[email protected]" gets allowed; "yourehrvendor-billing.co" does not.

All three are included in Microsoft 365 Business Premium and configured as part of Managed Inbox. https://dub.sh/IkS9umz

Ten.Law firms breached in one 48-hour ransomware campaign earlier this year by the INC Ransom group. The firms ranged fr...
08/24/2026

Ten.

Law firms breached in one 48-hour ransomware campaign earlier this year by the INC Ransom group. The firms ranged from 8 attorneys to 90. The common factor was inbox-driven initial access plus weak segmentation between the document management system and the rest of the network.

The defenses that mattered for the firms that did not get hit:

• EDR with behavioral detection.
• Network segmentation isolating the document management server from the rest of the LAN.
• Daily backups with at least one offsite-immutable copy.

All three are part of Managed Endpoint plus Managed Site. https://dub.sh/jDKqp6S

Tax-extension phishing season runs August through October. The September 15 and October 15 extension deadlines are the c...
08/20/2026

Tax-extension phishing season runs August through October. The September 15 and October 15 extension deadlines are the catalysts.

The IRS Security Summit issued its own warning on August 4 (IR-2026-85). The Nationwide Tax Forums run New York August 18-20, Orlando September 1-3 and San Diego September 15-17 — the same weeks the volume climbs.

Shape of the attack:

• Lookalike domain of your CPA firm — one character off.
• Real signature block scraped from a previous legitimate email.
• Urgent ask: confirm wire instructions, send updated W-9, approve estimated tax payment.

The newer variant skips the lookalike entirely. The attacker signs in to a real mailbox through a proxy that sits between the user and Microsoft 365, so the session survives MFA. Because the sign-in comes from a residential IP in the same region, "unusual sign-in location" never fires. Then they read the live thread and reply inside it. Nothing to spot in the domain, because the domain is correct.

Three rules to repeat to your team this week:

• Tax notices come on paper, not via PDF link.
• EFTPS emails are almost always fake.
• If the CPA suddenly wants new wire instructions, call them. Always.

Plain, boring, repeated. Worth the team huddle.

The wire-verification rule we put in writing for clients: https://dub.sh/QiyBe07

Address

55 Paradise Lane
Metropolis, IL
62960

Telephone

+278165726

Alerts

Be the first to know and let us send you an email when Micro-IT posts news and promotions. Your email address will not be used for any other purpose, and you can unsubscribe at any time.

Contact The Business

Send a message to Micro-IT:

Shortcuts

Share