Frequently Asked Questions
The questions people actually ask us
No marketing answers. These are the things clients ask on the first call and the things they wish they had asked before hiring their last provider. If yours is not here, call (602) 677-0779 and ask it directly.
Read This First
How to use this page
The questions below are split into two groups: how we deliver service, and how the business side works, billing, security and onboarding.
We have been doing this in Gilbert since 2015, and the pattern of questions is remarkably consistent. Business owners want to know three things before they commit: how fast someone will actually respond, who owns the data and the access if the relationship ends, and whether the monthly number will hold. Everything else, the technology stack, the tooling, the certifications, is downstream of those three.
So we answer them plainly. If an answer would require us to promise something we cannot legally or practically deliver, we say what we do instead. We do not sell binding uptime guarantees, and we do not claim to certify anyone as compliant. What we do is build environments that meet the technical safeguards those frameworks require, document them, and stay in the room when an auditor or an insurer starts asking questions.
If you are evaluating us against another provider, the fastest way to compare is to ask both of us the same set of questions from this page and see which answers dodge. In particular: ask who physically answers the phone, ask what happens to your admin credentials if you leave, and ask whether the monitoring is done by the company you are hiring or resold from someone else. Our answers are below.
Practical next steps: pricing and approvals are covered on our estimates page, payment methods and invoice timing on our payments page, and how to open a request on the Support Center. If you would rather just talk it through, contact us and we will do that instead.
Not seeing your question?
Use the contact form or call (602) 677-0779. We answer questions from non-clients too, and we do not charge for the conversation.
General & Service
What exactly does Orca IT do?
We run and protect technology for small and mid-size businesses: managed IT, network administration, cyber security, remote support and computer and laptop repair. That ranges from a fully managed environment where we handle everything, to a one-time repair on a single machine. We work with businesses across the East Valley onsite and nationwide remotely.
Do you outsource any of your support?
No. Not the help desk, not the monitoring, not the after-hours response, not the onsite visits. There are no offshore call centers, no third-party dispatch and no subcontracted technicians. Every person who touches your systems works for Orca IT, and you will recognize their names after the first month.
What is a pod and why does it matter to me?
A pod is the small, permanent group of the same engineers assigned to your account. It matters because they retain context. They know your server names, your line-of-business software, your quirky printer and your seasonal crunch. That is the difference between a five-minute fix and forty minutes of re-explaining your own network.
How fast do you respond?
Same business day for anything received during business hours, and usually much faster. Critical issues such as a downed server or an active security event are triaged immediately. Pod Care clients also have after-hours emergency response. We run 24/7 monitoring, but we do not claim 24/7 staffed phones because that would not be true.
Can you fix my computer, or do you only serve businesses?
Both. We repair laptops, desktops, all-in-ones and Macs for individuals as well as companies. Common work includes NVMe and SSD upgrades, screen and hinge replacement, thermal and fan service, power and charge circuit repair, virus and spyware removal, and data recovery from failing drives.
How long does a typical repair take?
Software work such as malware removal, a Windows repair install or a Microsoft 365 migration is often same-day or next-day. Hardware depends on parts. Common items like drives, RAM, batteries and fans are usually quick, while less common screens, boards or vendor-specific parts can add days. We give you an expected turnaround with the estimate.
Do you support Macs as well as Windows?
Yes. We handle Apple silicon and T2-era machines, macOS management, Apple mail and calendar in a Microsoft 365 environment, FileVault, and mixed fleets where designers are on Mac and everyone else is on Windows 11. Mixed environments are common in the Valley and they are perfectly manageable when they are set up properly.
Do you require a long-term contract?
No long-term contract is required. Managed coverage is priced as a flat monthly per-user figure, and the scope is written down so both sides know what is included. We would rather keep clients because the service is good than because an agreement makes leaving expensive.
Billing, Security & Onboarding
How does billing work?
One-time repairs and projects are invoiced when the work is complete and approved. Managed clients are billed monthly at a flat per-user rate, on a predictable date, so the number lands in the same place in your books each month. Payment methods and invoice timing are covered in detail on our payments page.
Are there hidden fees?
No. You approve a scope and a price before work begins, and any change to the scope comes back to you before it becomes a cost. Managed plans do not bill per ticket, which is the most common place hidden costs appear at other providers. Travel or after-hours terms, where they apply, are stated on the estimate.
Who owns my data, hardware and licenses?
You do. Always. Your Microsoft 365 tenant, your domain, your backups, your firewall configuration and your software licenses stay in your name. If our relationship ends, you keep everything and we hand over documentation and credentials. Nothing about our setup is designed to make you hard to leave.
How do you protect our systems?
Layered defense rather than one product: patching and update control, EDR on endpoints, MFA on identity, email filtering and DMARC alignment, network segmentation with VLANs, firewall policy, least-privilege admin rights, and monitored, tested backups. Any single layer can be beaten. The point is that an attacker has to beat all of them.
Can you help us meet HIPAA or other compliance requirements?
We help you meet the technical safeguards those frameworks require: access control, audit logging, encryption at rest and in transit, backup and recovery, and documented policy. We are careful with the language here. We do not certify anyone as compliant, and any provider that tells you they can is overselling.
What does onboarding actually involve?
It starts with a free Deep Dive assessment of your environment: workstations, servers, network gear, Microsoft 365, backups and security posture. From there we fix what is urgent, document what exists, deploy monitoring, and set the review rhythm. Most transitions take a few weeks and are designed to avoid disrupting your working day.
What if we already have an IT provider?
Transitions are routine and we handle them without drama. We coordinate credential handover, verify we have full access before anything is switched off, and keep your existing setup running in parallel until the new one is proven. Your users should notice better response, not a disruptive migration weekend.
How often will we actually hear from you?
Beyond day-to-day tickets, managed clients get a recurring Surface Check with leadership: what broke and why, what is aging out, what the security picture looks like, and what should be budgeted next. It is a business conversation with technical backing, not a slide deck of green checkmarks.
Ask Any Provider
Six questions worth asking before you sign anything
Use these on us and on anyone else you are considering. The answers are revealing.
Who physically answers the phone?
If the answer involves an answering service, a shared national help desk or a partner network, you are not hiring the people who will help you.
Is the monitoring yours or resold?
Plenty of providers resell someone else's monitoring and have limited ability to act on the alerts. Ask who watches the console at 2am and what they are empowered to do.
What happens to my credentials if I leave?
You should own your tenant, your domain and your admin accounts from day one. Documentation handover should be a policy, not a negotiation.
How is after-hours handled?
There is a real difference between 24/7 monitoring, 24/7 emergency response and 24/7 staffed phones. Ask which one is actually being offered.
Is the backup tested or just running?
A backup job with a green checkmark is not a restore. Ask when a restore was last performed and what was actually recovered from it.
What is not included?
The most useful question in any proposal. Projects, hardware and third-party licensing are commonly excluded. That is fine. It just needs to be written down.
Question not answered here?
Call (602) 677-0779 or use the contact form on this page. A real engineer in Gilbert will answer it directly.
Talk to Your Pod
Still have a question?
Ask it in a sentence. We answer the awkward ones about pricing, contracts and data ownership as directly as the technical ones.
(602) 677-0779Family owned in Gilbert, AZ since 2015 · onsite across the Phoenix metro · remote support nationwide · never outsourced
Get your free IT consultation
A few details and your pod gets right back to you, usually the same business day.