You offer security audits as part of a flat rate and receive a monthly fee based on the size of your customer. All services are included (regular security audits & implementation of measures as required).
Your customer does not have its own IT department, so you take responsibility for their entire IT and provide full support. System authorization and IT infrastructure decisions are in your hands.
High contract and customer loyalty lead to predictable, regular revenue
Consistent, automatable processes as each customer is offered the same product range
Comprehensive service is well marketable
No discussions with customers and no other “players”
Easy service expansions
Difficult to win new customers due to high implementation costs
Possible fluctuations in implementation of measures reduce margins
Preparation for flat rate contract required at all levels (see MSP wheel)

You offer security audits as an independent service package in various price levels (e.g. S/M/L depending on the size of the IT infrastructure). The service includes monthly security audits and the implementation of the measures.
You manage, monitor and maintain specific areas of your customers' IT infrastructure (e.g. email security, firewall, software distribution).
Specialization in subject areas is cost effective
Lower entry barrier than a flat rate (especially for new customers)
Predictable, regular revenue
Lower implementation costs
Reduced customer loyalty due to ease of switching providers
Lack of comprehensive control over customer IT
Possible fluctuations in the implementation of measures reduce margins
Service expansions not easy to implement
You offer security audits as an independent service package at different price levels (e.g. S/M/L depending on the size of the IT infrastructure). The implementation of measures is not included in the package and is charged as an additional service.
You manage and monitor specific areas of your customer’s IT infrastructure (e.g. email security, firewall, software distribution). Together with the customer, you coordinate the measures to be implemented.
Easy acquisition of new customers through cheaper service packages
Predictable, regular revenue
Sales arguments for further IT services (implementation of measures) or products
Legal protection against damages if the customer does not want the measures to be implemented
Quotations and sales are more complex due to additional billing for the measures
Lack of precise sales planning with regard to the implementation of the measures
Service expansions not easy to implement
As a consultant, you perform an independent, monthly check of your customer's IT infrastructure. In addition, you advise your customer on taking actions, but do not implement them.
Your customer has its own IT department and you act as an external consultant. You usually do not have system permissions.
Specialist image is marketable
Suitable for specific markets or requirements (e.g. certifications)
Easily achievable monthly revenue with ongoing security advice
Low customer loyalty due to low service depth
Less popular role because you often point out problems
No decision-making power and reliance on the customer's internal IT