ORB Intake Form (Beginner-Friendly)
Please answer what you can. If you’re not sure, pick C and add a note.
1) Primary goal for this engagement
A) Confirm our real risk + recoverability and get a 90-day plan (recommended)
B) Prepare for a compliance requirement
C) We’re not sure — we just want clarity
Notes:
2) Your environment (choose one)
A) Mostly Microsoft 365 (recommended)
B) Mostly Google Workspace
C) Mix of both
D) Not sure
Notes:
3) IT support model
A) MSP (managed service provider) + internal owner (recommended)
B) MSP only
C) Internal IT team
D) Founder / office manager handles it
E) Other
Notes:
4) Biggest fear / pain (choose up to 2)
A) Ransomware / phishing / account takeover (recommended)
B) Losing files or email
C) Outages / downtime
D) Vendor lockout / passwords in someone’s head
E) Tool chaos (nobody uses CRM / messy integrations)
Notes:
5) Backups (best answer)
A) We have backups and we tested a restore in the last 90 days
B) We have backups but haven’t tested recently (recommended reality)
C) We’re not sure what’s backed up
D) We don’t think we have backups
Notes:
6) Restore test target (pick one)
A) Restore files from backup to a safe location (recommended simplest)
B) Recover an email mailbox / messages
C) Restore a server/VM
D) Recover a key SaaS dataset (CRM / finance export)
Notes:
7) Key systems (list the top 5)
Examples: email, file storage, CRM, finance, ticketing, backup tool
Systems: 1. 2. 3. 4. 5.
8) Decision-makers for Day 10 readout
A) Executive Director / CEO + Ops lead (recommended)
B) IT lead only
C) Board rep involved
D) Not sure yet
Names / roles:
9) Constraints
A) We can provide access within 48 hours (recommended)
B) Access will be slower
C) We have strict vendor/board approval steps
Notes:
10) Anything “political” we should know?
Example: recent staff turnover, vendor conflicts, previous incidents