Skip to content
Menshen

Services · IT Operations

Alongside
your team

Your team keeps strategy, architecture and the systems that run the business. Menshen operates the platform functions that consume the working day: Microsoft 365, backup, endpoints, patching and email, each contracted separately and with an SLA.

The catalogue

Choose what you hand over, keep the rest

Each service is contracted independently, with a documented scope, a contractual SLA and its own operational report. Start with one function and add the others when it makes sense.

Managed Backup - Microsoft 365

Daily backup of Exchange Online, SharePoint, OneDrive, Teams and Groups. Granular restore. Unlimited retention (Backup Only) or compliance-grade (Backup + Archiving).

Managed Backup - general workloads

Backup-as-a-Service for physical and virtual servers (VMware, Hyper-V), file servers, applications and databases. 3-2-1 architecture.

Managed Microsoft 365

Day-to-day tenant administration: user lifecycle, licence optimisation, security baseline (MFA, conditional access, defender policies), Teams and SharePoint governance, and a monthly posture report on our assessment pipeline. Co-managed (alongside your team) or fully managed. Menshen's admin access follows a formal discipline: least privilege, PIM, and every privileged change recorded and communicated in advance.

Managed Endpoint Security

Deployment, configuration and ongoing management of endpoint security, on Kaspersky Endpoint Security or Microsoft Defender for Endpoint, sized to your organisation's endpoint count, with a contractual SLA.

Managed Email Security

Anti-phishing posture (Defender for Office 365 baseline), DMARC / SPF / DKIM monitoring and remediation.

Managed Email Signatures

Centralised, consistent email signatures across the organisation (CodeTwo), applied server-side and rendered on any device or client. Templates, legal disclaimers and campaigns kept up to date by us.

Managed Patch Management

OS patch management for Windows servers, Windows endpoints and supported Linux distributions. Test windows, maintenance-window coordination, compliance reporting.

Coverage can range from business hours to 24/7/365.

For a lighter first step, Microsoft 365 Posture Monitoring is read-only: it watches posture every month and can grow into fully managed Microsoft 365 when your organisation decides.

Why Menshen

Operators, not consultants

  • 24 years in Angola

    In continuous operation since 2002. In a managed service, the stability of the provider matters as much as the technology.

  • Angola's oldest active Microsoft partner

    10 Microsoft Partner of the Year awards. Solutions Partner - Modern Work, with Legacy Gold partner status.

  • A portfolio that spans SMB to bank

    The same team and the same operational playbook serve a 40-person organisation and a financial institution alike. From banking to the public sector, the procedures do not change.

  • Local team, local accountability

    Your service manager is in Luanda, not in a different time zone, and owns the operation. Continuity through power cuts, connectivity dips and everyday operational disruption.

Without an in-house IT team

The a-la-carte model is designed for organisations that keep their own IT team. If you don't have one, IT Outsourcing is the model to choose: one fixed monthly fee, one scope, and Menshen as your IT department, from the service desk to backup.

FAQ

Frequently asked questions

  • How do you work alongside our in-house team?
    Your team keeps strategy, architecture and the systems that run the business. Menshen operates the platform functions you contract, each with a documented scope, an SLA and its own reporting. In practice: the decisions stay on your side, the day-to-day operation of each contracted service moves to ours, and the boundary between the two is written into each service contract rather than left to be re-agreed every month.
  • How is Menshen's access to our environment governed?
    With the same discipline we apply to our own Microsoft 365 tenant. Access is granted on least privilege, with no standing Global Administrator roles, using Privileged Identity Management (PIM) wherever licensing allows. Any change to privileged roles is logged and communicated to your designated approver before execution; a change without a matching record is treated as an incident. The state of privileged access is reported monthly, in its own section of the service report: changes in the period, how many carried a matching record, and any drift against the baseline agreed at onboarding. A month with no changes is reported all the same, with the indicators at zero. Access is granted by your organisation and revocable by it at any time.
  • Can we contract just one service?
    Yes. The catalogue is a-la-carte by construction: each service carries its own scope, SLA and price, and is contracted independently. Many organisations start with one function (Microsoft 365 backup, or patch management) and add others once the model has proven itself in their environment.
  • What's in scope and what's out?
    Each service carries its own documented scope, which defines what is continuous operation and what is a project. Out of scope, and quoted separately: new projects (Microsoft 365 tenant migration, a new VPN, a new server), scope expansions, and hardware or new licence purchases.
  • Do you guarantee zero incidents?
    No, and be wary of anyone who does. No IT model eliminates risk; this one is structured to minimise it, with a rigorous security baseline, continuous monitoring, low probability on the most damaging events, and predictable recovery when something does get through. The difference between models is not "zero risk" vs "some risk": it is "risk actively managed by a team with tested procedures" vs "waiting for the next incident".
  • How do we get started?
    An assessment of your current environment, with no obligation. We audit the functions you are considering handing over, document the state they are in and identify risks. Then a proposal per service, with scope and SLA defined. Onboarding of the contracted service follows, then the steady state: operational reporting and periodic review.

Next step

Assessment of the current environment, no commitment

We audit the functions you are considering handing over, document the state they are in, and propose scope and an SLA per service.

Request an assessment