Signs Your IT Provider Is Taking Your Money and Not Doing the Work

Stratus IT > IT Managed Services > Signs Your IT Provider Is Taking Your Money and Not Doing the Work

Most businesses only discover their IT provider was not doing the work when something finally breaks, and no one has a plan. The warning signs are usually there long before that moment: no proactive communication, surprise renewals, unexplained outages, and a provider who seems to always have someone else to blame. This article walks through the specific signs of an IT provider falling short, a real example of what negligence cost one South African business, and what genuinely accountable IT management looks like in practice.

The Quiet Problem With "No News Is Good News" IT

There is a belief that has cost South African businesses a significant amount of money over the years. It goes like this: if your IT support is in place and nobody is calling you with problems, your provider must be doing a good job.

The hard truth is: they are probably not.

What looks like calm is often just silence. No monitoring. No maintenance. Nobody is actively checking whether your licences are about to expire, whether your backups are running, or whether the machines your team relies on every day are quietly running out of road.

The break-fix model, where a provider waits for something to go wrong before they act, is still the default in much of the IT market. It is also the model most likely to leave your business exposed at the worst possible moment.

What "Not Taking Accountability" Looks Like in Practice

When businesses come to Stratus IT after a difficult experience with a previous provider, the complaints tend to follow a recognisable pattern. The language varies, but the experience is consistent: they paid for a service, and the service was not being delivered.

Here are some red flags to watch out for.

The blame is always someone else's

This is one of the most common patterns Alex Couper, Account Manager at Stratus IT, sees when engaging with businesses that have outgrown their previous provider. “If a provider only manages part of the IT solution, not the ISP, not the licensing, not the hosting, then when something breaks, there is always someone else to point to,” he explains. “‘It’s your ISP.’ ‘It’s the server host.’ ‘It’s the software vendor.’ They own the first five items on the troubleshooting checklist, but not all of it. So the runaround begins, often dressed up in technical language that makes it hard to push back.”

For a business owner or operations manager trying to get a critical system back online, this fragmented accountability is not a minor inconvenience. It is an active failure of the service they are paying for.

You never hear from them proactively

No warnings or updates. No call to say, “Your Microsoft 365 licences are coming up for renewal in 60 days; here is what we recommend and what it will cost”. Just silence, until the expiry notice lands in your inbox, and suddenly it is urgent. A good provider eliminates that surprise entirely.

Everything comes as a surprise

Domains expire. Backups fail silently, and no one finds out until there is nothing to restore. A reactive provider is not managing your IT environment. They are waiting for it to break and then charging you to fix it.

You do not understand what is being done

No monthly report. No record of what has been fixed, what has been flagged, or what is coming. If you asked your provider right now to show you the state of your IT environment, could they? A good provider means you never have to ask because they are already showing you.

The security dimension of this is particularly serious. The 2025 Verizon Data Breach Investigations Report found that 88% of SMB breaches involved ransomware, more than double the rate seen in large enterprises. For small businesses without proactive monitoring in place, a security incident can be existential.

A Real Example: R25,000 for a Website That Was Not Being Maintained

The clearest illustration of IT negligence often doesn’t involve a ransomware attack or a catastrophic server failure. It is mundane, and that is what makes it so common.

Stratus IT inherited a client who had been paying approximately R1,100 per month for website maintenance. That service, properly delivered, should include monthly plugin updates, compatibility checks, and making sure the various software components of a website are kept current and communicating correctly. “Think of it like language,” shares Alex. “If your software is out of date, it is speaking a dialect no one else understands anymore. Everything needs to stay updated so it can talk to everything else.”

This client had been paying for that service for at least two years: roughly R24,000 to R25,000 in total. The work simply was not being done.

When Stratus IT came to migrate the website, it wasn’t possible. The site was so far out of date that the hosting provider’s PHP version requirements could not be met. The site was still running, but it could not be taken forward. It had become a liability.

When the client went back to their previous provider and challenged them, the provider agreed to bring the site up to standard at no additional charge. The client got lucky. The alternative, a security breach, a total loss, or a forced rebuild from scratch, was a real possibility at any point during those two years.

The same scenario played out with a second client in near-identical circumstances. Different provider, same absence of maintenance, same preventable near-miss. It is what happens when a provider treats a client relationship as a recurring invoice rather than an ongoing responsibility.

What Should Your IT Provider Be Doing Every Month?

This is the question most businesses have never thought to ask, because they assumed the answer was covered by whoever they were paying.

Proactive IT management should include regular monitoring and communication across every layer of your environment: not just fixing things when they break, but actively checking what is at risk before it becomes a problem. The table below sets out what that looks like in practice and what it looks like when it is missing.

What your provider should be doing What reactive providers do
Monthly checks on licences, renewals, and expiry dates Wait for a licence to lapse, then flag it as urgent
Software and plugin updates on a scheduled basis Update only when something breaks
Hardware lifecycle planning: what you have, its age, and when it needs replacing Replace hardware reactively when it fails
Monitoring systems before clients report problems Log tickets after clients call
Documented asset list: devices, software, expected lifespan No formal record of what the client actually has
Proactive budget guidance for the next 12-24 months No visibility into upcoming IT costs
Regular client communication on risks and recommendations, including infrastructure risks like unmanaged power interruptions Silence, unless something goes wrong

For a deeper look at what unplanned downtime actually costs a South African business in rand terms, read our breakdown: What Does IT Downtime Actually Cost Your Business?

At Stratus IT’s office in Durban, two screens run side by side. The right-hand screen shows incoming tickets. The left shows proactive monitoring data: alerts, anomalies, and risk flags that the team reviews before a client has said a word.

“For example,” says Alex, “a customer’s PC sends our software a warning that the hard drive is reaching capacity. The technician reviews it, sees that the drive has been filling up for over six months, and asks: Is there an alternative before we go to hardware? Maybe the user is not using SharePoint as they should be, and that solves it without any cost. We ask the questions first. The first instinct is never to sell the customer something they may not need.”

That discipline of asking whether the existing setup is being used to its full potential before recommending any spend is the difference between a provider who treats your business like their own and one who treats it like a revenue opportunity.

A practical example: Windows 10 reached the end of support in October 2025. Any business still running machines that could not be upgraded to Windows 11 should have had a replacement plan in place before that deadline. A proactive provider would have had that conversation well in advance. If yours didn’t, that tells you something.

What Happens When Something Breaks at the Worst Possible Time?

Proactive IT reduces problems, but it does not eliminate them entirely. What separates a good provider from a great one is how they perform when something goes wrong anyway.

A real-case scenario that Stratus IT has handled more than once: a key staff member, in this case a payroll manager, has their laptop crash on the 21st of the month, just as payments need to be processed. “We immediately escalate as this is a critical issue. We assess whether we can fix it quickly, and in parallel, we get a loan laptop prepped and ready, so there are no lulls. The client has the loan unit in place while we work on the problem. If we fix it in time, great. If not, they have still met their deadline.”

That response is not improvised but is the result of a priority matrix: a framework that weighs urgency against impact and ensures that situations like payroll failure are never treated as routine tickets at the back of the queue.

This kind of accountability also extends to problems that are not technically Stratus IT’s responsibility. When one of their clients recently onboarded with a third-party financial system that required monthly access for reconciliation, Stratus IT engaged with that provider directly, with the client’s knowledge, to establish the integration and resolve the issues that arose. “Both sides preferred it that way,” Alex notes. “The problem gets solved faster when IT people are talking to IT people.”

A provider who only steps in when the problem is theirs is a provider who has not understood what the relationship is for.

Why Professional Services Firms Feel This the Most

The consequences of poor IT accountability are universal. But they are felt most acutely in businesses where data integrity, uptime, and responsiveness are not just operational concerns; they are professional obligations.

For accounting firms and audit practices, legal practices, financial advisory firms, insurance brokerages, and engineering companies across KwaZulu-Natal and Gauteng, a failed system does not just cost productivity. It can mean a missed filing deadline, a compliance exposure from lost or corrupted client records, or a breakdown in client trust that takes years to repair. In South Africa, the Protection of Personal Information Act (POPIA), enforced by the Information Regulator, creates specific legal obligations around how personal data is stored, secured, and recovered. Those obligations do not pause because your IT provider dropped the ball.

These businesses need an IT provider who understands the stakes. Not just one who can fix a laptop.

How Stratus IT Approaches This Differently

Stratus IT is a managed IT services provider based in Durban (Kloof, KZN) and Benoni (Gauteng), supporting professional services and compliance-heavy businesses across South Africa with 20 to 150 employees.

The approach starts before a contract is signed. “I never want to open with pricing or product,” says Alex. “The very first step is the audit. If someone asks ‘what do you charge?’, my response is: What do you have? Who are you, and what do you do? The diagnosis has to come first, like a doctor who will not prescribe meds before they have examined you.”

That audit gives Stratus IT a complete picture of a client’s environment: every device, its age, its health, what is at risk, and what needs to be planned for. From that point, there is no guesswork and no future surprises.

The other meaningful difference is ownership of the full stack. By managing ISP, licensing, hosting, and endpoints together, Stratus IT removes the conditions that allow blame to be passed elsewhere. When something goes wrong, there is one call to make.

“When I am accountable for all of it,” Alex says, “there is no runaround.”

Not Sure If Your Current Provider Is Delivering?

An IT assessment is the fastest way to find out. Stratus IT will review your environment, identify your highest-risk areas, and give you a clear picture of what proactive IT management would look like for your business before you commit to anything.

Request Your IT Assessment

FAQs: Signs Your IT Provider Is Taking Your Money and Not Doing the Work

At a minimum: the status of your backups, any hardware or software flagged as at risk, licence renewals coming up in the next 60 to 90 days, and a summary of tickets logged and resolved. If your provider is not giving you this, you do not have visibility into your own IT environment. For businesses with POPIA obligations, that lack of visibility is also a compliance risk.

The simplest test: when did they last contact you about something before you contacted them? A proactive provider surfaces risks, flags upcoming costs, and reaches out with recommendations. A reactive provider responds to calls. If the only time you hear from them is when something breaks, you have a reactive provider.

Break-fix, sometimes called time-and-material, means you pay when something goes wrong. A managed IT service means you pay a monthly fee for ongoing monitoring, maintenance, and support, and your provider is incentivised to prevent problems rather than just fix them. For South African SMEs, managed IT typically works out significantly cheaper over time when you factor in the rand cost of unplanned incidents, lost billable hours, and the risk of a data breach under POPIA.

Yes, with the right process. Stratus IT conducts a full IT audit before any transition, which means the risk areas are identified and planned for before anything changes. The goal is always continuity, not disruption.

By Alex Couper: Account Manager at Stratus IT

Download our IT Self-Check Tool

Is Your IT Supporting Your Business or Holding It Back?

Most business leaders don’t realise their IT has problems until something goes wrong. By then, it’s cost them: downtime, security incidents, or client trust. This self-check tool identifies where you are vulnerable.

Copyright @2026 Stratus IT. All Rights Reserved.