The World’s Top 501 Managed Service Providers You Should Know

Ranked Among World's Most Elite 501 Managed Service Providers

Right Hand Ranked Among World’s Most Elite 501 Managed Service Providers.

For the 13th year running, MSPs from around the globe completed an exhaustive survey and application this spring to self-report product offerings, annual total and recurring revenues, profits, revenue mix, growth opportunities and company and customer demographic information. Applicants are ranked on a unique methodology that weights revenue figures according to long-term health and viability; commitment to recurring revenue; and operational efficiency.

Channel Futures is pleased to name Right Hand to the 2020 MSP 501.

“We are both thrilled and honored to be recognized once again as one of the top MSPs in the world,” said Josh Wilhelm, President of Right Hand. “Our team’s absolute commitment to process driven delivery shows through this award, our client’s loyalty, and our continual growth.”

In the 13 years since its inception, the MSP 501 has evolved from a competitive ranking list into a vibrant group of service providers, vendors, distributors, consultants and industry analysts working together to define the growing managed service opportunity.

Click here to read the full story in the Pittsburgh Post Gazette

Why Choose CompTIA Security Trustmark+™ for Enhanced Security?

Why CompTIA Security Trustmark+™?

CompTIA | Right Hand Technology Group
 

Last year, Right Hand Inc began embarking on the path of becoming CompTIA Security Trustmark+ certified. In this brief post, I want to highlight the why and the how for getting the Security Trustmark+. Let’s start with the why.

In the past, there have been several times we have been asked if we’re SAS 70 and then SSAE 16 certified. At the time, the businesses that asked about this were not large enough and a big enough portion of our business to warrant the expense of these certifications. In order to achieve these certifications, you can easily spend over $150k! We knew on the security side we were doing the correct things, but we didn’t have the demand to justify going through the process.

Then as we started to go out and do more and more security assessments for organizations who already have an IT provider, we found out that almost every time the security in place was not up to industry standards. Our goal is to continue building a best-in-class MSP backed by best-in-class processes delivered by a team dedicated to delivering best-in-class results. That not only applies to support but also to security.

The problem we found is when we brought the security problems to the surface, many prospects would go back to their current provider who would tell them it’s no big deal. No big deal? Having insecure ports open on a firewall, user accounts active that have been gone for years, patches missing, and a myriad of other security problems is a very big deal in a world where hackers are holding data ransom and now disclosing your customer data if you do not pay up.

At that point, we took a hard look at ourselves and put ourselves in the prospects point of view. We are coming in and telling them all these issues. Their provider is saying it is no big deal. As far as they know, we are all the same. We had to figure out a way to differentiate ourselves and to show when it comes to security, Right Hand is the go-to company.

In the meantime, CompTIA – the largest and most respected association in the IT industry – had developed a series of company certifications. The most recently revamped certification is the CompTIA Security Trustmark+, which follows the NIST Cybersecurity Framework and is a third party audited certification. We decided this is a way we can demonstrate to clients and prospects that we follow NIST standards, have the proper security in place, it has been validated by a third party, and this is something we can help them with.

Next, we will talk about how we went about it.

First, you must make the decision to commit to it. It takes a significant amount of time to complete. We decided it was worth the time and the investment, so we signed up and paid CompTIA to get the certification.

After signing up, you begin the process by following the NIST matrix CompTIA designed for IT providers. This covers all the areas of the NIST Cybersecurity Framework.

After initial delays, the team quickly established a weekly meeting committee to ensure timely completion of the project. A group of us met every Wednesday morning for sixty to ninety minutes and diligently worked through the framework. This group consisted of two CISSPs, a Security+ certified engineer, and our service manager. We did not just want to get through it. We wanted to find anything we may have missed, fix it, and then get through the certification.

Did we change anything internally? Yes.

During our risk assessment and business impact analysis, we quickly realized our strong position in providing services. If our building burned to the ground, we had all of our client support systems already in the cloud. We had in-house accounting systems, potentially causing issues with payroll, accounts receivable, and accounts payable. The team migrated those systems to Azure and accesses them using Citrix.

We improved by self-hosting tools in the cloud, taking on the responsibility of maintaining them to mitigate risks. Our company fully adopted hosted tools, with the vendor managing, securing, and supporting them. Our vendor maintains our system security with a large team, developers to address security issues, and invest in necessary technology. With MSPs falling prey to hackers through their self-hosted tool sets, it made a lot of sense for us.

One last thing we changed was our processes. As part of the certification, you need to review policies, permissions, etc. on a regular basis. You also need to perform certain exercises, like tabletop exercises of a security incident. We created recurring tickets in our system to remind us of the necessary tasks and processes for maintaining compliance.

Finally, after we completed everything on our end, we had to provide everything to the third-party auditor. This included copies of our policies, proof of various controls in place, and attestations for anything for which you cannot provide proof – for example, our vendors are SOC II compliant, but we have NDAs in place and cannot share that documentation.

Overall, we completed the certification in about six months because we already had most of the necessary controls in place.

We will continue to follow the NIST Cybersecurity Framework and keep our certification current. By investing significant time and money, anyone can start an IT company in our world, as there are no entry barriers. Anyone with a self-printed business card can claim to be an IT expert. When it comes to security, an IT company needs more than just IT experts. Right Hand, with the CompTIA Security Trustmark+, now has third-party verification, proving our reliability in protecting client organizations.

See the full story in the Pittsburgh Post-Gazette

For more information on the CompTIA Security Trustmark, visit http://www.comptia.org.

Click here to learn more about us

Josh Wilhelm Joins Right Hand: New Interest Acquired

Picture of Right Hand PresidentJosh Wilhelm Acquires an Interest in Right Hand Inc and Joins the Organization as President

Josh Wilhelm, former Executive Vice President with Plus Consulting, has made an investment in Pittsburgh based Right Hand Inc. In addition to shareholder, Josh will be joining the organization as President.

“I have known the team for many years and have witnessed their absolute dedication to proving best-in-class services to their clients. After leaving Plus Consulting, I wanted to join an organization as a partner that had three things; operational maturity, a great culture, and financial health,” said Josh Wilhelm. “Right Hand Inc has that and more, which allows me to focus where I can contribute the most – driving Strategy and Business Development.”

CEO, Jason Vanzin said, “We really focused that last few years on growing organically by acquiring clients through word-of-mouth. It helps to have a reputation for partnership with our clients. When your clients know you watch their back, make sure they are secure, and that their systems are always up and running, they tend to talk. As engineers, we are great at delivery. In building a better mousetrap, we have sometimes let up on client acquisition. Although I was not looking to bring on a partner or sell a stake in Right Hand, I have been wanting to work with Josh for a long time. I have known him for almost two decades, and when we started talking, it just made sense. He has been in the industry for a long time and has a proven track record for growing IT companies.”

Josh Wilhelm will join the organization as President. In this role, he will focus on new client acquisition, expanding the Right Hand brand, and strengthening partnerships with companies like Microsoft, Citrix, ConnectWise, and Datto.

Right Hand, Inc. was founded on a very simple idea – that your IT company should have your back. Our experts plan, monitor, and manage our clients’ technology to allow them to focus on their own business growth and organizational success. Every eligible member of our technical team is security certified, because IT management should focus on expediency but not at the expense of security. With the right team in place, we help companies find and maintain the proper balance between the two.

Right Hand has been repeatedly recognized by the industry for the services and results they deliver to clients.

  • CRN, a brand of The Channel Company, has recognized Right Hand Inc as part of it’s CRN MSP 500 list for 2017 and 2018.
  • Channel Futures has recognized Right Hand as part of it’s MSP 501 list for 2016, 2017, and 2018.
  • Penton Technology recognized Right Hand as part of it’s Total Service Provider (TSP) list for 2016 before merging with the MSP 501.
  • ChannelE2E recognized Right Hand in 2016, 2017, 2018, and 2019 as part of its Top 100 Vertical Market MSP for servicing Manufacturers nationwide.