IT and cybersecurity for Printing
You are held to Client-driven SOC 2 / PCI / HIPAA pass-through – and, like most firms your size, you are expected to meet it without anyone in-house whose job it is to own it. We run the IT and the security program so the obligation is actually covered, not just acknowledged.
Where we usually start: Client security questionnaires + downtime + retiring IT.
If this sounds familiar
“If the floor goes down, that day is just gone.”
When systems fail, the presses stop, jobs miss their ship dates, and there’s no making it up – the capacity is lost and the customer remembers. Downtime isn’t an inconvenience; it’s revenue we never get back and trust we may not get back either.
“Our best customers won’t even let us bid anymore without a security questionnaire we don’t know how to fill out.”
The banks, hospitals, and big brands are sending audits, vendor-risk forms, and demands for SOC 2 or proof we’re PCI/HIPAA compliant. We can do the printing in our sleep, but this paperwork is starting to cost us work we’d otherwise win.
“We’re holding our customers’ data, and one leak could end us.”
We run their mailing lists, their statements, their account information. If that ever got out – or got locked up by hackers – we’d lose the account, possibly get sued, and our name would be in the paper. I think about it more than I’d like to admit.
Who this is for
Typical size: 25–120 employees, revenue $6M–$45M. If that is roughly you, the rest of this page will land.
What working with us looks like
A named team that knows your stack, monitoring and patching that happens whether or not anyone chases it, and a written security program kept current – with the evidence to back it up when a client, an auditor or an insurer asks. We report to the President/Owner, not to a ticket queue.
Talk to us
Call 206-850-1496 or email mhasse@itwerx.net and we will set up a short call – no audit, no pitch deck, just a conversation about what you have and what is worrying you.

