This engagement covers Brightwell Manufacturing LLC's full IT estate — the Columbus primary facility and all three satellite offices, serving approximately 85 employees across four sites. Every server, network device, managed endpoint, and cloud tenant in that estate falls within scope. Nothing is carved out by location.
What Is Covered
Infrastructure Transition & Onboarding
We will discover, document, and take managed ownership of your on-premises servers, cloud services, and network infrastructure across all four sites. Every migration event is planned and executed within the agreed two-hour maximum downtime constraint — no exceptions. Where a system cannot be cut over inside that window, we stage it across multiple change windows rather than ask you to absorb extended downtime during your Q4 production run.
Ongoing Systems Management
Once transitioned, we own day-to-day operations: patch management, capacity monitoring, backup verification, and incident response for all in-scope servers, endpoints, network devices, and cloud tenants. Your internal IT person is relieved of reactive firefighting. We carry the operational load.
Cybersecurity Compliance Program
We will assess your environment against the applicable compliance framework governing the Q1 2027 audit, identify and remediate control gaps, and produce a complete audit-ready evidence package — policies, configuration records, and logs — before that audit window opens. The framework must be confirmed by you before Phase 2 begins; scope assumes a single framework.
Helpdesk & End-User Support
All 85 employees across the Columbus facility and three satellite offices are covered under a tiered helpdesk service. Tickets are classified and resolved against contracted response and resolution targets. No employee is out of scope by site.
Who Buys What
Licences, hardware, and cloud subscriptions are procured by Brightwell and passed through at cost. They do not sit inside the monthly managed services fee. We will advise on what to buy and from whom — procurement decisions and vendor relationships remain yours. If a new endpoint needs to be added to the managed estate mid-term, a true-up applies to the per-user rate at the next billing cycle.
What Is Explicitly Excluded
The following items are outside this engagement. Any work in these areas requires a separate statement of work and separate pricing.
- Third-party software, hardware, and cloud subscription costs — passed through at cost, not included in the fee
- Development, customization, or configuration of bespoke business applications — ERP, MES, or any production system software is out of scope
- Physical cabling, structured wiring, or hardware installation at any site
- Compliance framework registration fees, external audit fees, and third-party penetration testing — these are your direct costs
- Support for personally owned devices (BYOD) not enrolled in the Meridian-managed endpoint estate
- Any work arising from a security incident that predates September 7, 2026 — pre-existing incidents are not covered under this agreement
Our recommendation: Before kickoff, Brightwell should confirm in writing which devices are enrolled in the managed estate and which are BYOD. Any gap between what's enrolled and what employees actually use will affect both helpdesk coverage and the cybersecurity compliance posture — and it is better to resolve that in Phase 1 than to find it during the Q1 2027 audit.
Key Dependencies
This scope holds on three conditions: your current IT person remains available during Phase 1 to provide credentials and context; all four sites have internet connectivity sufficient to support remote monitoring agents; and no in-scope system requires air-gapped or physically isolated access beyond normal site visits. If any of these conditions are not met, we will flag the impact on timeline immediately — we will not quietly absorb it.