Our pricing is built around your users, your devices and your compliance requirements, so you only pay for what you genuinely need and your costs scale naturally as your business grows or changes.
Every member of staff is covered by a per user fee, and every managed device by a per device fee. Businesses with compliance or regulatory requirements can add our compliance pack on top. Every client also pays a flat monthly tenant management fee, which covers the foundation of your Microsoft 365 environment and all the behind the scenes work that keeps it running smoothly.
All prices are exclusive of VAT. Microsoft 365 licence fees are charged separately as these vary depending on the licences your business requires.
Full users are typically full time staff who need complete IT support, including unlimited remote and on-site support during business hours. Light users are part time staff, mailbox-only users or anyone without a managed device. They get the same email security, identity protection and Microsoft 365 management as full users, with remote support included for Microsoft 365, email and account access queries during business hours. Both full and light users get the same suite of user-level security tools.
As a general rule, anyone who needs day-to-day IT support and has a company device should be a full user. Anyone who only needs access to email and Microsoft 365, works part time, or uses a personal device rather than a company-managed one is likely a light user.
If you are not sure, do not worry. We work through this with every new client as part of the onboarding process and make sure everyone is on the right tier from day one. If circumstances change, we can adjust at any time.
Yes, absolutely. Most of our clients have a mix. A typical example might be a business with full time staff on the full user tier and part time administrators or reception staff on the light user tier. You only pay for what each person actually needs, and your costs adjust automatically as your team changes.
A managed device is any laptop, desktop or workstation that we actively monitor, maintain and support on your behalf. Shared workstations, reception desk computers and shop floor terminals all count as managed devices. Personal devices used for work but not managed by us do not attract a per device fee, though we would recommend discussing how these are secured as part of your onboarding.
Your monthly costs adjust automatically as your team changes. When a new starter joins we add them to your agreement and when someone leaves we remove them promptly and securely. User provisioning and deprovisioning is included in your tenant management fee so there are no additional charges for making these changes.
Your pricing scales with your team. Add a new full time member of staff and their full user fee is added to your next invoice. Add a new device and the per device fee is added too. There are no setup charges for adding users or devices mid-agreement, and no penalties for growth. If your team grows enough to move into a higher tenant management fee band, we will give you advance notice before that change takes effect.
The compliance pack is designed for businesses that need to evidence security to auditors, regulators or insurers. If you are a legal practice subject to SRA requirements, a financial business regulated by the FCA, or a manufacturer with supply chain security obligations or cyber insurance requirements, the compliance pack is strongly recommended. If you are unsure whether you need it, we are happy to discuss your specific requirements on a call.
Microsoft 365 backup takes daily copies of your mailboxes and Microsoft 365 data so that if something is accidentally deleted or lost it can be quickly restored. Email archiving is different. It retains a long-term, tamper-proof copy of all email communications for compliance and audit purposes. Backup is about recovery. Archiving is about compliance. Both are important for regulated businesses, which is why archiving is included in the compliance pack.
DMARC, along with DKIM and SPF, are email authentication standards that tell the internet your emails are legitimate. Without them, your emails are more likely to land in spam folders and your domain is easier for criminals to impersonate when sending phishing emails to your clients or suppliers. We set these up correctly during onboarding and monitor them on your behalf as part of your tenant management fee.
No. We are deliberately transparent about what is and is not included. Your monthly costs are made up of your tenant management fee, your per user fees, your per device fees and, if applicable, your compliance pack. The only costs outside of this are Microsoft 365 licence fees, which are charged at cost and vary depending on the licences your business requires, and a one-time onboarding fee equivalent to your first month of support.
Beyond that, if something falls outside the scope of your agreement, we will always tell you before doing any work and provide a clear fixed price quote. You will never receive an unexpected invoice from us.
Our agreements run for a minimum of 12 months. However, we are confident you will notice the difference from day one, so we back that up with a 90-day satisfaction guarantee. If you are not completely happy within the first 90 days, you can walk away with no penalty and no questions asked. After the initial 12-month term, we will get in touch around one to two months before your renewal date to discuss next steps.
As your agreement approaches its end date, we will get in touch around one to two months before to discuss renewal. This gives us time to review your setup, talk through any changes to your team or requirements, and agree pricing for the next period before anything lapses.
There are no surprise price increases at renewal. If our pricing changes, we will always give you advance notice, giving you time to review and decide whether to continue.
That is completely fine. The best first step is a no-obligation 15-minute call where we can talk through your current situation and work out whether there is a way to get started that works for you right now. We can often find a practical starting point that gives you immediate value while keeping your options open. There is no pressure to commit to anything on that call.
Most businesses put it off because switching feels complicated. In practice, our onboarding process takes around a month, runs alongside your existing provider, and is designed to be as smooth as possible. Most of our clients wish they had done it sooner.
And if you are not completely happy within the first 90 days, you can walk away with no penalty and no questions asked. We are confident enough in what we deliver to back it up with a guarantee.
Yes. We manage the transition process on your behalf and recommend maintaining a one-month overlap with your existing provider. This gives us time to gather the information we need, complete setup and agree a clean cutover date without any gaps in your support. Most of our clients find the switch is far smoother than they expected.
In most cases we can begin onboarding within two to four weeks of signing an agreement. The onboarding process itself takes around a month, running alongside your existing provider so there are no gaps in your support. If you have a specific deadline or are in an urgent situation, let us know on the initial call and we will do our best to accommodate you.
The easiest way is to book a 15-minute call. We will talk through your current setup, the size of your team, your devices and any compliance requirements, and put together a clear, itemised quote based on exactly what you need. There is no obligation and no pressure. If we are not the right fit, we will tell you.
Not as much as you might think. To put together an accurate quote we just need to know the number of staff, how many have managed devices, whether anyone needs compliance pack features, and a rough sense of your Microsoft 365 setup. Everything else we gather during onboarding. We have a structured process for this and have done it many times, so we make it as straightforward as possible.
Onboarding typically takes around one month, which is why we recommend maintaining a one-month crossover period with your existing IT provider. This overlap allows us to gather the information we need, complete setup, and agree a clean cutover date, without any gaps in your support.
During onboarding, we set up all of our core systems including remote monitoring, backups, patch management, endpoint protection, and access to our support platform. A one-time onboarding fee applies, equivalent to your first month of support, which ensures everything is configured correctly from day one.
Once onboarding is complete, we will carry out a full review of your environment and provide a prioritised list of recommendations to strengthen your security, resilience, and efficiency over time.
Onboarding typically takes around one month and runs alongside your existing IT provider so there are no gaps in your support. During this time we deploy all our core systems including remote monitoring, endpoint protection, backups, patch management and access to our support platform. A one-time onboarding fee applies, equivalent to your first month of support. This reflects the significant time and work involved in getting your environment properly set up, documented and secured from day one. Once onboarding is complete we carry out a full review of your environment and provide a prioritised list of recommendations.
We make the transition as straightforward as possible. Once you’re ready to move forward, we contact your existing IT provider on your behalf to request the information and access we need to complete onboarding. You don’t need to manage that conversation yourself.
Switching IT providers can feel like a big step, but in practice it doesn’t need to disrupt your day-to-day operations. The crossover period is designed so that your existing support remains in place while we get everything set up in the background, and your team won’t notice a thing until everything is ready to go.
The first month is onboarding. We work alongside your existing provider, deploy all our core systems, document your environment and agree a clean cutover date. Once you are live with us, we carry out a full review of your environment and provide a prioritised list of recommendations.
After that, the goal is simple. Your systems run smoothly, problems get fixed quickly, and IT stops being something you have to think about.
And if for any reason you are not completely happy within the first 90 days, you can walk away with no penalty and no questions asked. That is our satisfaction guarantee.
We provide support Monday to Friday, 8am to 6pm. You can reach us by phone, email or our self-service portal. Every request is logged and tracked through our service desk so nothing gets lost and you always have visibility of what has been raised and what has been done.
For device-level security, your systems are monitored 24/7 by our specialist security operations centre, so threats are detected and responded to around the clock even outside of support hours.
You can reach us by email, phone, or our self-service portal during business hours. Every request is logged and managed through our industry-standard service desk, which means nothing gets lost, every issue is tracked from start to resolution, and you always have a clear record of what’s been raised and what’s been done.
It also means that as we get to know your systems over time, we can spot patterns, address recurring issues at the root, and continuously improve the reliability of your IT.
Mark Faulkner directly. Not a call centre, not a first-line agent reading from a script, not a different engineer every time. When you contact Penken Technology, you speak to the same person who set up your systems, knows your environment and has a stake in keeping everything running smoothly.
This is one of the most significant differences between working with Penken Technology and working with a larger provider. You never have to re-explain your setup, repeat yourself or wait for someone to escalate your issue to someone who actually knows what they are doing.
We aim to respond to all support requests within one hour during business hours. For clients on the compliance pack, priority response times are guaranteed. For critical issues affecting your whole business, we treat these as urgent and respond immediately.
We do not operate a tiered support queue where some clients wait longer than others based on their plan. Every client gets a fast, attentive response.
We have planned for this. Behind the scenes, Penken Technology works with a carefully selected network of trusted partners, vendors and specialist engineers. Your environment is fully documented, our systems are maintained consistently, and our monitoring tools operate continuously regardless of whether Mark is available on any given day.
In the event of a planned absence, we communicate this in advance and ensure cover is in place. For unplanned situations, our partner network and documented processes mean your systems continue to be monitored and managed without interruption.
This is one of the reasons we invest heavily in documentation and process from day one. You are never relying on one person having everything in their head.
Our standard support hours are Monday to Friday, 8am to 6pm. Support outside of these hours is outside the scope of monthly agreements.
That said, your devices are monitored 24/7 by our specialist security operations centre, so security threats are detected and responded to around the clock. If a critical incident is detected outside of business hours, you will be alerted.
If your business has a genuine need for out of hours support, let us know on the initial call and we can discuss whether this can be accommodated.
Yes, and we use Macs ourselves. Whether your team is on Windows, Mac, or a mix of both, we can support your devices and ensure they’re fully integrated, secured, and managed alongside the rest of your IT environment.
Not necessarily. During onboarding we carry out a full assessment of your existing hardware and will only recommend upgrades or replacements where genuinely necessary. There’s no pressure to swap everything out from day one.
Where we do recommend new equipment, we procure it directly on your behalf, fully configured and ready to use, with a 3 to 5 year on-site warranty included.
If the worst happens, we are hands-on from the start. We will work with you immediately to contain the threat, limit damage, and get your systems back up and running as quickly as possible. You won’t be left navigating it alone.
Beyond responding in the moment, we can also help you put a formal incident response plan in place before anything goes wrong, so your team knows exactly what to do and who to contact if an incident occurs. Having that plan ready in advance can significantly reduce the impact of an attack and demonstrates due diligence to regulators.
We can also point you towards trusted cyber insurance partners if you’d like to make sure you have appropriate financial protection in place. Given the increasing frequency and cost of cyber incidents, it’s something we would encourage all businesses to consider.
Yes. In fact, we go one step further by holding Cyber Essentials Plus certification, the highest tier of the government-backed scheme. Unlike the standard certification, Cyber Essentials Plus involves independent, hands-on technical verification of our security controls rather than a self-assessment.
For legal, financial, and manufacturing businesses handling sensitive client data, that distinction matters. It means you’re working with an IT partner whose own security has been tested and verified, not just declared.
Cyber Essentials is a government-backed certification scheme that helps businesses protect against the most common cyber threats. The standard certification involves a self-assessment questionnaire that is reviewed by an assessor.
Cyber Essentials Plus goes significantly further. It involves independent, hands-on technical testing of your systems by an external assessor, verifying that your security controls actually work in practice rather than just on paper.
For regulated businesses, the distinction matters. Cyber Essentials Plus provides a much stronger level of assurance to clients, insurers and regulators because it has been independently verified rather than self-declared. We hold Cyber Essentials Plus certification ourselves and can help your business achieve it too.
Yes. We have been through the process ourselves and hold Cyber Essentials Plus certification, so we know exactly what is involved and what assessors look for. We can help you understand the requirements, put the right controls in place and support you through the certification process from start to finish.
For manufacturing businesses facing supply chain security requirements, and for legal and financial businesses with regulatory obligations, Cyber Essentials certification is increasingly essential rather than optional. Getting certified with the right support in place is significantly easier than trying to navigate it alone.
While we can’t provide legal or compliance advice, the services we deliver are closely aligned with what both the SRA and FCA expect from firms when it comes to protecting client data and managing cyber risk.
Our service covers the key technical controls that regulators look for, including email security, access management, endpoint protection, patch management, staff cyber awareness training, and data backup. As a Cyber Essentials Plus certified business, we also bring firsthand experience of implementing and evidencing these controls, which can support your own certification or compliance efforts.
If your business is working towards a specific compliance goal, we’re happy to discuss how our services map to your requirements during an initial call.
Yes. We can produce documentation and reports to support your audit and compliance requirements, tailored to what your auditor or regulator needs to see. This might include evidence of security controls, patch management activity, access management policies, or backup and recovery processes.
If you have specific reporting requirements, let us know and we’ll make sure the right information is available when you need it.
Yes. Cyber security is an increasing concern for manufacturers of all sizes. Larger clients and insurers are more frequently requiring suppliers to hold Cyber Essentials certification, and businesses with connected shop floor systems face additional risks around operational continuity and data integrity.
We help manufacturing businesses achieve and maintain Cyber Essentials certification, secure their networks including any operational technology or connected equipment, and put the right policies and controls in place to meet client and insurer expectations.
All our clients benefit from enterprise-grade security tools as standard. Manufacturing businesses with additional compliance requirements can add our compliance pack, which includes cyber insurance reporting, privileged access management, cybersecurity awareness training and email archiving.
The threats vary by sector, but the most common ones we see affecting legal, financial and manufacturing businesses are:
Phishing and business email compromise
Fraudulent emails targeting staff, often impersonating suppliers, clients or senior management to trick people into transferring money or sharing credentials. Legal and financial businesses are frequently targeted due to the volume of client money and sensitive data they handle.
Ransomware
Malicious software that encrypts your files and demands payment for their return. Manufacturing businesses are increasingly targeted due to the operational impact of downtime on production.
Account compromise
Attackers gaining access to Microsoft 365 accounts through stolen or weak passwords, then using them to send fraudulent emails, access sensitive data or move laterally through your systems.
Supply chain attacks
Targeting smaller businesses as a route into larger clients or partners. Increasingly relevant for manufacturers with large corporate clients who require supplier security standards.
All of these are addressed by our security toolset and, where relevant, our compliance pack.
Staying current is a core part of what we do, not an afterthought. We actively follow developments from the ICO, NCSC, SRA and FCA, monitor changes to the Cyber Essentials scheme, and maintain relationships with specialist compliance partners who keep us informed of regulatory changes relevant to our clients.
We also invest in our own ongoing professional development and hold Cyber Essentials Plus certification, which requires regular renewal and keeps our own security controls up to date.
When something changes that affects our clients, we let them know proactively rather than waiting for them to ask.
Yes. While we have particular expertise in legal, financial and manufacturing businesses, we work with a range of professional services businesses across Cheshire and South Manchester. Get in touch and we’ll be happy to discuss whether we’re the right fit.
Larger providers offer scale. What they cannot offer is the level of personal, consistent service that comes from working directly with an experienced specialist who genuinely knows your business.
With a larger provider, you get a helpdesk. With Penken Technology, you get Mark Faulkner directly, every time. Someone who knows your systems, understands your business and has a personal stake in keeping everything running smoothly.
You also get enterprise-grade tools and security without the enterprise price tag or the impersonal service that usually comes with it. Our toolset is the same professional-grade stack used by much larger providers, deployed and managed by someone who treats your business as if it were their own.
And if for any reason you are not completely happy within the first 90 days, you can walk away with no penalty and no questions asked. We are confident enough in what we deliver to back it up with a guarantee.
Not all small IT providers are equal. Here is what sets Penken Technology apart:
Cyber Essentials Plus certified
We hold the highest tier of the government-backed scheme, independently verified. Many smaller providers hold no certification at all.
Sector expertise
We specialise in legal, financial and manufacturing businesses. We understand your compliance obligations, your software, your workflows and the specific threats your sector faces. A generalist provider does not.
Enterprise-grade toolset
We use the same professional security and monitoring tools as much larger MSPs, including 24/7 threat detection, identity threat response, advanced endpoint protection and Microsoft 365 security monitoring.
Transparent pricing
No confusing packages, no hidden extras, no surprises. You pay a clear per user and per device fee with everything documented upfront.
90-day satisfaction guarantee
If you are not completely happy within the first 90 days, you can walk away with no penalty and no questions asked.
We work best with businesses of between 5 and 50 staff that depend on technology to serve their clients, protect sensitive data and keep operations running smoothly. Our clients tend to value a personal, responsive relationship with their IT provider over a faceless helpdesk, and want someone who genuinely understands their business rather than just closing tickets.
We have particular expertise in legal, financial and manufacturing businesses, though we work with a range of professional services businesses across Cheshire and South Manchester.
A good fit client is one who wants proactive, security-focused IT support and values transparency about what they are paying for and why. If that sounds like you, we would love to have a conversation.
Penken Technology was founded in February 2024 by Mark Faulkner. While the business is relatively new, the experience and client relationships behind it span more than 17 years. Mark has worked across legal, financial and manufacturing sectors throughout his career, building the sector-specific knowledge and technical expertise that underpins everything Penken Technology does today.
We use a professional-grade toolset that is the same standard used by much larger managed service providers. This includes:
We do not name specific vendors on our website as our toolset evolves as better solutions become available. What matters is the outcome. Your systems are monitored, protected and maintained to a consistently high standard.
Continuous learning is built into how we operate. We hold Cyber Essentials Plus certification, which requires regular renewal and keeps our own security controls current. We follow developments from the NCSC, ICO and relevant sector regulators, monitor the threat landscape actively and maintain relationships with specialist vendors and partners who keep us informed of emerging risks and new solutions.
We also invest in our own professional development through ongoing training and engagement with the wider MSP community. When something changes that affects our clients, we communicate it proactively.
Yes. If you’re happy with our service and refer another business to us, we’ll credit 10% of their monthly managed services spend to your invoice for up to 12 months. Refer multiple businesses and credits can accumulate up to 100% of your own monthly fee.
Credits apply to recurring managed services only, not hardware, licensing, or projects.
You can refer a business by emailing referral@penkentechnology.com or via our referral form.
We use cookies to improve your experience and analyse website traffic. You can accept or decline non-essential cookies.
Enter your number and we’ll call you back, usually within the hour.