Managed IT Security Assessment Questionnaire Form
Complete this questionnaire to assess your organization's managed IT security posture. All questions relate to your current IT and security practices.
How would you rate your organization's access control practices (e.g., user account management, least privilege, MFA)?
*
1
2
3
4
5
How frequently are operating systems and applications patched and updated?
*
Immediately upon release
Within 1 week
Monthly
Quarterly
Rarely or ad hoc
Select the endpoint protection solutions currently in use (select all that apply):
*
Antivirus/Anti-malware
EDR (Endpoint Detection & Response)
Device encryption
Mobile device management (MDM)
None
Other
How confident are you in your organization's data backup and recovery strategy?
*
Not confident
1
2
3
4
Highly confident
5
1 is Not confident, 5 is Highly confident
Which of the following best describes your incident response plan?
*
Fully documented and tested regularly
Documented but rarely tested
Informal or ad hoc
No formal plan
How often do users receive cybersecurity awareness training?
*
Annually or more often
Every 2 years
Occasionally
Never
Rate the maturity of your network security controls (e.g., firewalls, segmentation, intrusion detection).
*
1
2
3
4
5
Vulnerability Management Coverage
*
Rows
Not implemented
Partially implemented
Fully implemented
Automated vulnerability scanning
1
2
3
Regular manual reviews
4
5
6
Remediation processes
7
8
9
How is security monitoring and logging handled?
*
Comprehensive monitoring and alerting
Partial monitoring/logging
Minimal or ad hoc logging
No monitoring/logging
Are IT security policies and documentation up to date and accessible to relevant staff?
*
Yes, fully up to date and accessible
Partially up to date or limited access
Outdated or inaccessible
No formal policies
Submit Assessment
Should be Empty: