Law firm meeting with an IT provider about an MSP transition

For most 10–50-employee law firms, switching managed IT providers should take approximately 30–60 days and can usually be completed with little or no disruption to attorneys and staff when the transition is properly planned.

A successful MSP transition typically follows five stages: discovery, documentation, knowledge transfer, security review, and cutover. Your new provider should coordinate directly with your existing IT company, inventory your technology, verify backups and security controls, and establish support procedures before taking full responsibility.

The goal isn’t simply to replace one IT company with another. It’s to make the transition without interrupting billable work, client service, email access, case management systems, or critical deadlines.

1. Start With Discovery and a Complete IT Assessment

The first step should happen before your existing IT relationship ends.

Your new MSP needs to understand exactly what it’s taking responsibility for.

A discovery process should identify:

  • Servers and workstations
  • Laptops and mobile devices
  • Microsoft 365 environment
  • Firewalls and network equipment
  • Internet and telecommunications providers
  • Cloud applications
  • Practice management software
  • Document management systems
  • Backup and disaster recovery systems
  • Cybersecurity tools
  • Software licensing
  • Administrative accounts
  • Third-party technology vendors

For a law firm, pay special attention to systems containing confidential client information and active case data.

This discovery creates the baseline for the transition.

What law firms should ask:
“Will you complete a full technology and security inventory before taking over support?”

If the answer is no, that’s a red flag.

2. Transfer Documentation, Passwords and Administrative Access

Next comes the handoff from your existing provider.

Ideally, your new MSP works directly with the outgoing provider so the managing partner or firm administrator doesn’t have to act as the middleman.

The transition should include transferring:

  • Administrative credentials
  • Microsoft 365 administrator access
  • Domain and DNS information
  • Firewall credentials
  • Backup system access
  • Software licensing information
  • Vendor contacts
  • Network documentation
  • Security documentation
  • Existing IT policies
  • Hardware inventories

Your firm should ultimately maintain ownership and appropriate control over its domains, accounts, licensing, data, and administrative access.

What if the previous IT provider won’t cooperate?

This is one of the biggest concerns law firms have about switching MSPs.

A professional provider should have a documented offboarding process. Your new MSP should also have procedures to recover or reset administrative access when documentation is incomplete.

That’s another reason not to wait until your relationship with an existing provider has completely deteriorated before considering a change.

3. Perform a Cybersecurity and Backup Review Before Cutover

This is one of the most important parts of switching IT providers.

The new MSP shouldn’t assume the existing cybersecurity configuration is correct.

It should verify it.

For a 10–50 employee New York law firm, the review should examine areas such as:

  1. Multi-factor authentication
  2. Endpoint security and monitoring
  3. Microsoft 365 security
  4. Backup configuration
  5. Backup recovery testing
  6. User and administrator access
  7. Patch management
  8. Email security
  9. Former employee accounts
  10. Incident response procedures

This is also the ideal time to compare the firm’s current controls against its cyber insurance requirements and New York cybersecurity obligations.

Backups deserve special attention

Before making significant changes, the incoming MSP should determine:

  • What is being backed up?
  • Where are backups stored?
  • Are they protected from ransomware?
  • When was the last successful backup?
  • When was the last recovery test?
  • How long would restoration take?

Never assume that seeing “backup successful” means the firm’s data can actually be recovered.  Regular backup testing helps verify that the data your firm depends on can actually be restored before a real incident puts the process to the test.

4. Establish the New Support Process Before Employees Need It

The technical transition is only half of the project.

Your attorneys and staff need to know exactly where to go for help on day one.

Before cutover, employees should receive clear instructions explaining:

  • How to submit a support request
  • What phone number to call
  • What email address or portal to use
  • When support is available
  • What constitutes an emergency
  • How escalations are handled
  • What to expect from response times

For law firms, this matters because an IT problem can quickly become a productivity problem.

An attorney who can’t access email, a case management system, or a critical document shouldn’t spend 30 minutes figuring out who to call.

The support process should be established before the transition occurs.

5. Cut Over, Monitor and Stabilize the Environment

Once documentation, access, backups, and support procedures have been verified, the new MSP can formally assume responsibility.

A well-planned transition should not require shutting down the firm for a day.

Most changes happen behind the scenes.

During the first several weeks, the new provider should closely monitor:

  • Support ticket volume
  • Network performance
  • Security alerts
  • Backup performance
  • Microsoft 365
  • Endpoint health
  • Recurring user issues

It’s common to discover previously undocumented problems during this period.

That’s not necessarily a bad thing.

The objective is to identify those problems before they create downtime or security incidents.

How Much Downtime Should a Law Firm Expect When Switching MSPs?

Ideally, little to none.

Changing IT providers is different from replacing your entire technology environment. Your computers, Microsoft 365 accounts, applications, and data generally remain in place.

What’s changing is who manages them.

There may be short maintenance windows to replace security software, update network configurations, or deploy new management tools. These changes should normally be scheduled around the firm’s business requirements.

If a provider tells you the firm must experience substantial downtime simply to switch MSPs, ask why.

How Long Does It Take to Switch IT Providers?

For a typical 10–50 employee law firm, an orderly MSP transition may take roughly 30-60days, depending on the firm’s environment, documentation, and the cooperation of the outgoing provider.

The timeline depends on:

  • Firm size
  • Number of locations
  • Quality of existing documentation
  • Cooperation from the outgoing provider
  • Number of applications and vendors
  • Cybersecurity deficiencies discovered
  • Hardware that needs replacement

A 10-person firm with good documentation could transition faster. A 50-person firm with multiple offices, undocumented systems, or significant security problems takes longer.

The objective shouldn’t be the fastest possible transition.

It should be the lowest-risk transition.

5 Red Flags That Your MSP Transition Isn’t Being Managed Properly

Watch for these warning signs:

1. No written transition plan

You should know what’s happening, who’s responsible, and when major milestones occur.

2. No technology inventory

Your new provider can’t properly protect systems it doesn’t know exist.

3. Backups aren’t verified before changes begin

This creates unnecessary business risk.

4. Employees don’t know how to get support

The helpdesk transition should be communicated before cutover.

5. No post-transition strategy meeting

Switching providers shouldn’t end when the passwords are transferred.

The new relationship should begin with a plan for improving your technology.

What Should Happen During the First 90 Days With a New MSP?

After the immediate transition is complete, the focus should shift from taking control to improving the environment.

A useful first-90-day framework is:

Days 1–30: Stabilize

Resolve immediate issues, verify backups, establish monitoring, secure accounts, and make sure employees receive reliable support.

Days 31–60: Improve

Address cybersecurity gaps, outdated equipment, recurring support issues, and documentation deficiencies.

Days 61–90: Strategize

Build a technology roadmap, prioritize projects, review cybersecurity and cyber insurance needs, and develop an IT budget.

This is where vCIO and strategic planning become particularly valuable.

Instead of simply reacting to support tickets, the MSP begins helping leadership determine where technology should go next.

What a Well-Planned Law Firm MSP Transition Could Look Like

Consider a 25-employee Western New York law firm frustrated by slow response times and a lack of strategic guidance.

Rather than terminating the existing provider immediately, the firm establishes a 45-day transition plan with its new MSP.

During that period, the new provider:

  • Documents the firm’s technology
  • Obtains administrative access
  • Reviews Microsoft 365 security
  • Verifies backups
  • Identifies cybersecurity gaps
  • Establishes a new helpdesk process
  • Creates a prioritized 90-day technology plan

The result is a controlled transition with minimal disruption to attorneys and staff.

Questions to Ask a New MSP Before Switching

Before signing an agreement, ask the prospective provider these questions:

  1. How many MSP transitions have you completed for law firms our size?
  2. Who manages the transition?
  3. How long should our transition take?
  4. How will you work with our existing IT provider?
  5. How will you verify our backups before making changes?
  6. What happens if documentation or passwords are missing?
  7. How will our employees request support during the transition?
  8. What are your actual response-time commitments?
  9. Will you perform a cybersecurity assessment?
  10. What happens during our first 90 days after onboarding?

The answers will tell you a great deal about whether you’re hiring another reactive IT vendor or a long-term technology partner.

Why Western New York Law Firms Choose Ferrari Networks

Ferrari Networks works with 10–50-employee law firms throughout Buffalo, Niagara Falls, and Western New York.

Our approach combines:

  • Fast response times
  • Predictable IT pricing
  • Local support
  • Cybersecurity and risk management
  • vCIO and strategic technology planning

When a law firm changes IT providers, our objective isn’t simply to take over the help desk. It’s to understand the firm’s technology, reduce risk, establish accountability, and create a plan for what comes next.

Thinking About Switching IT Providers?

Don’t wait until your current IT relationship reaches a crisis.

Start by understanding what you own, what your current provider manages, what documentation exists, and where your biggest technology and cybersecurity risks are.

A properly planned MSP transition should be controlled, documented, and largely invisible to your attorneys and staff.

For a 10–50 employee law firm, that’s the standard you should expect.

If you would like to further the conversation, book a discovery call and let's chat.

Related Resources

Continue your research with: