Prepared by: Layer8TechGroup · Framework: 10 Technology Fixes — Tier 1 · Documents Ingested: cached collection (previously ingested)
Assessment Scores — 8-Domain Profile
Complete remediation plan across all scored domains. The Priority Fixes section below highlights the five ranked starting points.
| Domain | Layer8 Service | Value at Risk | Est. Timeline | Typical Investment | Est. ROI |
|---|---|---|---|---|---|
CQCustomer Quality✓ Quick Win | Contract Audit & CRM Implementation | $325,500 | ⏱ 8–10 wks | $5,000 – $9,000 | 20x+ |
DRDiligence Risk✓ Quick Win | Security Hardening & Data Room Preparation | $279,000 | ⏱ 4–6 wks | $2,500 – $4,500 | 20x+ |
OROwner Risk✓ Quick Win | Succession Planning & Knowledge Capture Sprint | $232,500 | ⏱ 6–8 wks | $3,500 – $6,000 | 20x+ |
OSOperational Scalability✓ Quick Win | Process Documentation & Systems Audit | $201,500 | ⏱ 8–10 wks | $4,000 – $7,000 | 20x+ |
TMTechnology & Systems Maturity | Technology Infrastructure Audit & Modernization Plan | $155,000 | ⏱ 6–8 wks | $3,000 – $5,500 | |
HCHuman Capital✓ Quick Win | Workforce Retention & Bench Depth Sprint | $155,000 | ⏱ 6–8 wks | $2,500 – $5,000 | 20x+ |
FRFinancial Readiness✓ Quick Win | Books Cleanup & Add-Back Schedule | $108,500 | ⏱ 4–6 wks | $2,000 – $4,000 | 20x+ |
LCLegal & Regulatory Compliance | Legal Compliance Audit & Contract Review | $93,000 | ⏱ 6–8 wks | $3,500 – $6,500 | |
| TOTAL | $1,550,000 | — | $26,000 – $47,500 | 20x+ | |
Quick Win items are flagged ✓ in the table above — these deliver the highest remediation ROI in the shortest timeline and are the recommended starting point for any remediation plan.
Typical investment ranges reflect market-rate remediation costs and are provided for prioritization purposes only. Actual engagement scope and pricing depend on business size, gap severity, and selected service provider. Layer8 Tech Group provides formal engagement proposals following assessment delivery.
Layer8 Tech Group delivers these services for businesses preparing for acquisition.Schedule a Discovery Call →
Layer8 Tech Group delivers each of these services for businesses preparing for acquisition. Engagements are scoped to your timeline and deal target.Schedule a Discovery Call →
MSP revenue infrastructure is evaluated on lead-to-contract automation, after-hours responsiveness, and client retention sequences — critical signals for buyers assessing whether ARR growth is system-driven or founder-dependent.
Automation maturity is scored separately from the overall readiness score. The gaps below represent operational efficiency opportunities and post-close value creation for a buyer — not buyer discount risk.
| # | Criterion & Finding | Score | Rating | Bar |
|---|---|---|---|---|
| R01 | AI Voice / After-Hours Call Handling PIS_Cybersecurity_Assessment_Report.docx · README.md · PIS_CIM.docx · PIS_HC_Profile.txt · MASTER_PROMPT_Synthetic_Artifact_Generator.md There is no evidence of AI voice agent or automated after-hours call handling in any of the retrieved documents; the company's technology stack focuses on managed IT services, CRM (HubSpot), and ticketing (ConnectWise) with no mention of inbound call automation or AI voice capabilities. After-hours calls are not addressed in operational procedures, indicating they likely go unanswered or to voicemail. | 0/2 | MANUAL | |
| R02 | CRM Presence & Workflow Automation PIS_Cybersecurity_Assessment_Report.docx · README.md · PIS_CIM.docx · PIS_HC_Profile.txt · MASTER_PROMPT_Synthetic_Artifact_Generator.md Peachtree uses a CRM (HubSpot is referenced in the cybersecurity assessment and ConnectWise in the onboarding program), and a CRM pipeline export exists (PIS_CRM_Pipeline_2025Q2.csv), but the documents reveal inconsistent adoption—manual follow-up and owner dependence remain evident, particularly in late-stage sales and key account management where the owner holds primary relationships. Workflow automation is partial, with basic tool orientation during onboarding but no evidence of systematized automated workflows or fully tracked pipeline processes independent of staff oversight. | 1/2 | PARTIAL | |
| R03 | 24/7 Lead Capture PIS_Cybersecurity_Assessment_Report.docx · README.md · PIS_CIM.docx · PIS_HC_Profile.txt · MASTER_PROMPT_Synthetic_Artifact_Generator.md The retrieved documents contain no evidence of after-hours or 24/7 lead capture capability; there is no mention of a contact form, chatbot, automated lead routing, or any system designed to capture inbound inquiries outside business hours. The company's operations and sales processes described in the documents focus on manual handling and owner/sales director involvement, with no automation infrastructure for lead capture documented. | 0/2 | MANUAL | |
| R04 | SMS Appointment Reminders & Confirmations PIS_Cybersecurity_Assessment_Report.docx · README.md · PIS_CIM.docx · PIS_HC_Profile.txt · MASTER_PROMPT_Synthetic_Artifact_Generator.md No evidence of automated SMS appointment reminders or confirmation workflows exists in the retrieved documents; the company's onboarding SOP and operational processes reference ConnectWise scheduling and manual field scheduling by the operations manager, but contain no mention of SMS automation, confirmation sequences, or no-show follow-up workflows. | 0/2 | MANUAL | |
| R05 | Automated Review Solicitation PIS_Cybersecurity_Assessment_Report.docx · PIS_CIM.docx · README.md · PIS_HC_Profile.txt · MASTER_PROMPT_Synthetic_Artifact_Generator.md The retrieved documents contain no evidence of automated post-service review solicitation; review generation is not mentioned in the customer onboarding SOP, CRM processes, or operational workflows. The company relies entirely on organic customer feedback and manual processes, with no documented trigger-based or systematic review request mechanism. | 0/2 | MANUAL | |
| R06 | Smart Follow-Up Sequences PIS_Cybersecurity_Assessment_Report.docx · README.md · PIS_CIM.docx · PIS_HC_Profile.txt · MASTER_PROMPT_Synthetic_Artifact_Generator.md The retrieved documents contain no evidence of automated follow-up sequences, drip campaigns, or systematic re-engagement workflows for leads or dormant clients. While the company operates a CRM (pipeline data exists in PIS_CRM_Pipeline_2025Q2.csv), there is no documentation of automation rules, email sequences, or lead nurturing processes, indicating follow-up is either manual or absent entirely. | 0/2 | MANUAL |
Interpretation: Manual — buyer will underwrite operational risk, expect discount
A low Automation Maturity score for an MSP signals that growth is relationship-driven rather than systematic. Buyers will apply a meaningful discount and may require remediation commitments as a condition of close.
Vertical-specific operational automation gaps identified in MSP & Technology Operational Automation operations. These gaps represent immediate efficiency opportunities for the current owner and post-close value creation levers for a buyer.
Operational automation gaps identified below are framed as efficiency and revenue recovery opportunities. Dollar estimates reflect operational impact, not a valuation adjustment. Layer8 delivers these implementations directly.
| Automation Opportunity | Score | Status | Bar | Layer8 Opportunity |
|---|---|---|---|---|
| Ticket Triage & Auto-Assignment | 0/2 | MANUAL | Ticket automation reduces mean time to first response — the metric buyers use most heavily to benchmark MSP operational maturity and client satisfaction. | |
| Patch Management & Compliance Reporting | 0/2 | MANUAL | Automated patch compliance reporting is a premium tier differentiator — it demonstrates systematic security management and supports cyber insurance requirements. | |
| Client Onboarding & Offboarding | 1/2 | PARTIAL | Onboarding automation is the most visible quality signal to new clients — and the fastest way to surface the gap between an MSP that runs on people and one that runs on systems. | |
| Client Health Scoring & Churn Risk Alerts | 0/2 | MANUAL | Client health automation converts churn prevention from a reactive fire drill to a proactive managed process — directly protecting the MRR base that drives MSP valuation. | |
| QBR Scheduling & Preparation | 0/2 | MANUAL | QBR automation enables consistent executive engagement across the entire client base — not just the accounts that squeaky-wheel their way to attention. |
Layer8 runs 90-day Automation Sprints that close AMI gaps and systematize vertical-specific workflows. The ROI is measurable before you go to market.Schedule a Discovery Call →
Buyer Discount Risk
EBITDA (most recent FY): $1,000,000 (AI-extracted) · Exit Readiness: 5.0/10 — Needs Preparation
| Score | Band | Buyer Discount Risk |
|---|---|---|
| 8.0 – 10.0 | Institutional Ready | Minimal — few gaps for buyers to exploit |
| 6.5 – 7.9 | Market Ready | Low — some negotiating leverage for buyers |
| 5.0 – 6.4 | Needs Preparation | Moderate — expect re-trade attempts |
| 3.5 – 4.9 | Material Gaps | High — significant discount likely |
| Below 3.5 | Not Ready | Very High — consider delaying go-to-market |
Scores reflect readiness relative to what buyers examine in diligence — not a valuation guarantee. For a specific valuation range, share your Exit Readiness Score with your broker or M&A advisor.
↑ What strengthens your position
- High MRR percentage >70%
- Documented service contracts
- NOC/helpdesk not owner-dependent
- Stack standardization across clients
↓ What buyers will flag
- Break-fix revenue dominant
- No formal service agreements
- Owner is primary engineer
Domain Detail & Findings
| ID | Criterion & Finding | Score | Rating | Bar |
|---|---|---|---|---|
| fix_01 | Documented Processes & SOPs README.md · PIS_CIM.docx · PIS_Cybersecurity_Assessment_Report.docx · PIS_HC_Profile.txt · PIS_Financials_And_Operations.xlsx — High confidence — multiple documents corroborated Peachtree has documented some key processes, including a structured onboarding program for technical staff (Week 1–8 with defined milestones documented in Employee materials) and a Customer Onboarding SOP referenced in the deal room contents. However, the CIM explicitly states "Documentation maturity is improving but inconsistent across onboarding and engineering workflows," and the Cybersecurity Assessment identifies reliance on "informal incident response practices" with no approved incident response plan, indicating significant gaps in core operational SOPs and lack of formal version control or annual review cadence. | 5/10 | NEEDS WORK | |
| fix_02 | Cybersecurity Posture PIS_Cybersecurity_Assessment_Report.docx · PIS_CIM.docx · README.md · PIS_HC_Profile.txt — High confidence — multiple documents corroborated The company demonstrates partial security controls but significant gaps relative to buyer expectations. While Defender for Business is deployed to most endpoints and nightly backups with cloud retention are in place, the cybersecurity assessment explicitly identifies "inconsistent MFA enforcement, limited centralized log monitoring, and reliance on informal incident response practices" as material issues. The assessment rates overall risk as "Medium" and notes that "buyers will likely discount value or require a remediation plan until identity hardening, monitoring, and documentation are improved," with critical recommendations including completing MFA rollout, deploying SIEM/alert aggregation, and documenting a formal incident response plan with testing. | 5/10 | NEEDS WORK | |
| fix_03 | Owner Dependency PIS_Cybersecurity_Assessment_Report.docx · README.md · PIS_CIM.docx · PIS_HC_Profile.txt — High confidence — multiple documents corroborated The business demonstrates moderate owner dependency with some key operational functions delegated but critical client relationships and strategic decisions remaining concentrated with ownership. While the Operations Manager successfully ran operations during the owner's Q1 2026 surgical recovery with no SLA breaches, and the Sales Director manages the pipeline independently, the CIM explicitly notes "moderate owner dependence in late-stage sales, key client relationships, and vendor negotiations," with the largest customer account (Northside Medical Group, 16% of revenue) having only an operational-contact introduction to backup personnel. No formal succession plan is documented—only a verbal commitment to a transition period post-close with no written agreement. | 6/10 | ADEQUATE | |
| fix_04 | Revenue Quality & Concentration README.md · PIS_Cybersecurity_Assessment_Report.docx · PIS_CIM.docx · PIS_HC_Profile.txt · PIS_Financials_And_Operations.xlsx — High confidence — multiple documents corroborated Peachtree's revenue quality is mixed, with recurring revenue at approximately 42% of 2024 total revenue ($5.42M), falling into the 30-50% range. The top three customers represent 29.7% of total revenue, with the largest customer (Northside Medical Group) at 11.4%, which exceeds the 10% threshold for higher scores but remains below critical concentration risk. While the company has documented recurring contracts across MSP, network management, and support agreements, formal renewal rate documentation is not explicitly referenced in the materials, and the service mix is diversified across structured cabling, managed services, security systems, and network projects. | 6/10 | ADEQUATE | |
| fix_05 | Customer Contracts README.md · PIS_Cybersecurity_Assessment_Report.docx · PIS_CIM.docx · PIS_HC_Profile.txt · PIS_Financials_And_Operations.xlsx — High confidence — multiple documents corroborated The documents reference sample customer contracts ("PIS_Customer_Contract_*.docx/pdf") but provide no substantive evidence of contract standardization, change-of-control clauses, centralized repository management, or renewal tracking processes. The CIM notes that "documentation maturity is improving but inconsistent across onboarding and engineering workflows," and the CRM pipeline shows renewal activity ("Q3 Service Agreement Renewal, Other SMB Accounts") tracked informally in spreadsheets rather than through a formalized contract management system. There is no evidence of contract review, assignment language validation, or documented renewal rates, indicating contracts exist but lack the structure and governance expected at exit. | 4/10 | NEEDS WORK | |
| fix_06 | IT Infrastructure & Asset Documentation PIS_CIM.docx · README.md · PIS_Cybersecurity_Assessment_Report.docx · PIS_HC_Profile.txt · PIS_Financials_And_Operations.xlsx — High confidence — multiple documents corroborated Peachtree maintains a basic IT asset inventory documented in the PIS_Financials_And_Operations.xlsx file that lists servers, network equipment, and mobile devices with status and location, indicating foundational asset tracking exists. However, the Cybersecurity Assessment Report identifies significant documentation gaps, noting that "backups are performed nightly with cloud retention and local replication; restore tests occur [DATE_TIME] but are not always documented," and the CIM explicitly states "Documentation maturity is improving but inconsistent across onboarding and engineering workflows." Additionally, the security assessment rates overall risk as Medium and recommends completing MFA rollout and establishing centralized monitoring, suggesting maintenance practices and system documentation remain incomplete relative to exit-readiness expectations. | 5/10 | NEEDS WORK | |
| fix_07 | CRM & Pipeline Documentation PIS_CIM.docx · PIS_Cybersecurity_Assessment_Report.docx · README.md · PIS_HC_Profile.txt — High confidence — multiple documents corroborated Peachtree uses ConnectWise and HubSpot as part of its operational stack (referenced in the cybersecurity assessment's MFA rollout recommendations), and a CRM pipeline export file exists (`PIS_CRM_Pipeline_2025Q2.csv` per the README), indicating CRM adoption. However, the CIM explicitly flags "moderate owner dependence in late-stage sales" and the human capital profile notes that "Mark Ellis runs pipeline independently" with the owner as a secondary contributor, suggesting the pipeline is not uniformly managed across the team. The documents do not provide evidence of current pipeline accuracy, forecast validation against actuals, or enforced stage discipline, placing the company in the mid-range of CRM maturity. | 5/10 | NEEDS WORK | |
| fix_08 | Key Employee Risks PIS_Cybersecurity_Assessment_Report.docx · README.md · PIS_CIM.docx · PIS_HC_Profile.txt — High confidence — multiple documents corroborated Peachtree has documented some critical role backups and successfully operated without the owner for a quarter (Q1 2026) with no SLA breaches, and the operations manager can execute non-senior technical hiring and onboarding independently. However, there are multiple single points of failure: the owner holds the executive relationship with a key customer representing 16% of revenue (Northside Medical Group) with no formal handoff, Cisco networking architecture depends on only 2 of 3 senior engineers with CCNA certification and no CCNP on staff, and there is no formal succession plan despite the owner's verbal commitment to a post-close transition period with no written agreement yet. | 6/10 | ADEQUATE | |
| fix_09 | Financial Trajectory & EBITDA Quality README.md · PIS_Cybersecurity_Assessment_Report.docx · PIS_CIM.docx · PIS_HC_Profile.txt — High confidence — multiple documents corroborated The company reported $5.42M in 2024 revenue with $1.00M EBITDA (18.5% margin) and demonstrates internally consistent financial data across multiple documents, but the financial review status is not explicitly stated as audited or independently reviewed. While the CIM highlights a growing recurring revenue base (~$190K MRR, 42% of total revenue) and the README confirms financial reconciliation across P&L and customer revenue views, there is no evidence of third-party audit, and the overall exit readiness score in narrative documents is noted as 6.5/10, suggesting mixed financial readiness for M&A purposes. | 6/10 | ADEQUATE | |
| fix_10 | Data Room Readiness README.md · PIS_CIM.docx · PIS_Cybersecurity_Assessment_Report.docx · PIS_HC_Profile.txt — High confidence — multiple documents corroborated The company has organized a cohesive deal room with core financial documents (master workbook reconciling to $5.42M revenue, GL exports, AR aging), operational records (employee roster, IT assets, customer contracts), and key narrative documents (CIM, cybersecurity assessment, SOPs) as documented in the README.md. However, the CIM explicitly notes that "documentation maturity is improving but inconsistent across onboarding and engineering workflows," and the overall exit readiness score cited in the narrative documents is only 6.5/10, indicating meaningful gaps in secondary documentation and standardization that would require cleanup before buyer review. | 6/10 | ADEQUATE |
| ID | Criterion & Finding | Score | Rating | Bar |
|---|---|---|---|---|
| owr_01 | Succession Readiness README.md · PIS_Cybersecurity_Assessment_Report.docx · PIS_HC_Profile.txt · PIS_CIM.docx · PIS_Financials_And_Operations.xlsx — High confidence — multiple documents corroborated No formal succession plan exists; the owner has only "verbally committed to a [DATE_TIME] transition period post-close" with "no written agreement yet" (PIS_HC_Profile.txt). While the business demonstrated operational resilience during the owner's absence in Q1 2026 with no SLA breaches, a critical single point of failure remains: the owner holds the exclusive executive relationship with Northside Medical Group (16% of revenue), and only operational contacts have been introduced to [PERSON] (PIS_HC_Profile.txt). The CIM explicitly identifies "moderate owner dependence in late-stage sales, key client relationships, and vendor negotiations" as a risk factor, with no documented handoff protocols for these relationships. | 4/10 | NEEDS WORK | |
| owr_02 | Institutional Knowledge Capture README.md · PIS_CIM.docx · PIS_HC_Profile.txt · PIS_Cybersecurity_Assessment_Report.docx — High confidence — multiple documents corroborated Core operational processes show partial documentation with a structured onboarding program documented in the Employee Handbook covering a 5-8 week ramp for technical staff, and the business successfully operated without the owner for a full quarter with no SLA breaches, indicating some knowledge transfer capability. However, the CIM explicitly notes "Documentation maturity is improving but inconsistent across onboarding and engineering workflows," and critical technical expertise remains concentrated—specifically, Cisco networking architecture depends on only 2 of 3 senior engineers with CCNA certification and no CCNP-level expertise, forcing complex issues to vendor support, while the top revenue client (Northside Medical Group, 16% of revenue) has the owner holding the executive relationship despite operational contact introductions to other staff. | 5/10 | NEEDS WORK | |
| owr_03 | Management Team Depth PIS_HC_Profile.txt · PIS_Cybersecurity_Assessment_Report.docx · PIS_CIM.docx · README.md — High confidence — multiple documents corroborated The company has a functional management layer with documented authority levels and demonstrated ability to operate independently. The business successfully ran without the owner for Q1 2026 during surgery recovery with no SLA breaches or client escalations, with [PERSON] and [PERSON] managing communications and [PERSON] (NOC lead) handling technical escalations. However, there are two material constraints: the owner holds the executive relationship with Northside Medical Group (16% of revenue) where [PERSON] has only operational-level introduction, and there is no formal succession plan despite the owner's verbal commitment to a post-close transition period. | 7/10 | ADEQUATE | |
| owr_04 | Key Person Concentration Beyond Owner PIS_Cybersecurity_Assessment_Report.docx · README.md · PIS_HC_Profile.txt · PIS_CIM.docx · PIS_Financials_And_Operations.xlsx — High confidence — multiple documents corroborated Two to three employees represent material concentration risk beyond the owner. The NOC lead manages all technical escalations with cross-training of only 2 others, and Mark Ellis (Sales Director) independently runs the sales pipeline and handles all commercial accounts, while a key client representing 16% of revenue (Northside Medical Group) has the owner as the sole executive relationship holder with only operational-level introductions documented for backup. The business successfully operated for a period without the owner, but the lack of a formal succession plan and limited backup coverage for Cisco networking expertise (only 2 of 3 senior engineers have CCNA, no CCNP on staff) create material disruption risk if these individuals depart. | 5/10 | NEEDS WORK |
| ID | Criterion & Finding | Score | Rating | Bar |
|---|---|---|---|---|
| cq_01 | Top Customer Concentration PIS_Cybersecurity_Assessment_Report.docx · PIS_CIM.docx · README.md · PIS_HC_Profile.txt · PIS_Financials_And_Operations.xlsx — High confidence — multiple documents corroborated The top three customers represented 29.7% of total revenue, placing the largest customer within the 10-15% range and the top 5 customers likely in the 40-55% range, which aligns with moderate diversification. The company demonstrates manageable concentration risk with a diversified service mix across cabling, managed services, security systems, and network projects, plus a recurring revenue base of approximately 42% that provides additional revenue stability across customer segments. | 7/10 | ADEQUATE | |
| cq_02 | Revenue Predictability & Recurring Mix README.md · PIS_Cybersecurity_Assessment_Report.docx · PIS_CIM.docx · PIS_HC_Profile.txt — High confidence — multiple documents corroborated Peachtree Integrated Systems derives approximately 42% of [DATE_TIME] revenue from recurring sources, primarily through MSP retainers, network management, and support agreements, with an estimated MRR of ~$190K. While this falls within the 30-50% recurring range with moderate predictability, the CIM notes that the company should "convert mixed and project-only accounts to recurring managed support and monitoring contracts," indicating renewal tracking exists but revenue predictability remains mixed rather than highly formalized, and the top three customers represent 29.7% of total revenue, creating concentration risk that affects 12-month forecasting confidence. | 6/10 | ADEQUATE | |
| cq_03 | Contract Transferability PIS_Cybersecurity_Assessment_Report.docx · README.md · PIS_HC_Profile.txt · PIS_CIM.docx — High confidence — multiple documents corroborated The retrieved documents do not contain substantive information about customer contract terms, assignment clauses, or change-of-control provisions. While the README references "PIS_Customer_Contract_*.docx/pdf" files as part of the deal room, the actual contract language and transferability terms are not included in the excerpts provided. The CIM notes "Moderate owner dependence in late-stage sales, key client relationships, and vendor negotiations," suggesting relationship risk, but provides no evidence of formal assignment or consent language in customer agreements. | 3/10 | CRITICAL RISK | |
| cq_04 | Churn Rate & Retention Metrics README.md · PIS_Cybersecurity_Assessment_Report.docx · PIS_CIM.docx · PIS_HC_Profile.txt · PIS_Financials_And_Operations.xlsx — High confidence — multiple documents corroborated The retrieved documents contain no quantitative customer churn rate, net revenue retention metrics, or monthly/quarterly tracking of customer attrition. While the CIM notes that "recurring revenue represented approximately 42% of [DATE_TIME] revenue" and mentions "top three customers represented 29.7% of total revenue," there is no documented root-cause analysis, recovery playbooks, or formal retention programs beyond a general growth opportunity to "convert mixed and project-only accounts to recurring managed support." The company demonstrates reactive rather than proactive churn management, with no evidence of systematic retention tracking or customer lifecycle processes. | 3/10 | CRITICAL RISK |
| ID | Criterion & Finding | Score | Rating | Bar |
|---|---|---|---|---|
| ops_01 | Process Documentation & Repeatability README.md · PIS_CIM.docx · PIS_Cybersecurity_Assessment_Report.docx · PIS_HC_Profile.txt — High confidence — multiple documents corroborated Peachtree has documented core operational processes including a structured 8-week technical onboarding program (documented in Employee handbook) and a Customer Onboarding SOP, with some staff able to execute non-senior hiring and onboarding independently. However, the company explicitly identifies "Documentation maturity is improving but inconsistent across onboarding and engineering workflows" (CIM risk factors), and key dependencies remain on specific individuals—particularly the owner holding the executive relationship with a 16% revenue customer (Northside Medical Group) and senior engineers for complex Cisco networking issues, indicating significant repeatability constraints. | 5/10 | NEEDS WORK | |
| ops_02 | Technology & Systems Scalability README.md · PIS_Cybersecurity_Assessment_Report.docx · PIS_CIM.docx · PIS_HC_Profile.txt — High confidence — multiple documents corroborated The company relies on a hybrid services delivery model with systems including ConnectWise, Datta, SentinelOne, Microsoft 365, and HubSpot, but the cybersecurity assessment identifies "incomplete controls" including "inconsistent MFA enforcement, limited centralized log monitoring, and reliance on informal incident response practices." While the CIM notes "documentation maturity is improving but inconsistent across onboarding and engineering workflows," there is no evidence of cloud-native architecture assessment, documented scalability testing, or confirmation that core systems can handle 3x growth without material upgrades—only that "buyers will likely discount value or require a remediation plan." | 5/10 | NEEDS WORK | |
| ops_03 | Vendor & Supplier Concentration PIS_Cybersecurity_Assessment_Report.docx · README.md · PIS_CIM.docx · PIS_HC_Profile.txt · PIS_Financials_And_Operations.xlsx — High confidence — multiple documents corroborated Peachtree has moderate vendor concentration risk across multiple critical platforms without evidence of formal SLAs or documented alternatives. The cybersecurity assessment identifies dependencies on Microsoft 365, HubSpot, QuickBooks Online, ConnectWise, and CrowdStrike with incomplete rollout and no mention of backup vendors or contractual protections; additionally, Cisco networking architecture creates a single-source dependency for complex network issues, as only 2 of 3 senior engineers hold CCNA certification with no CCNP on staff, requiring escalation to vendor TAC for critical problems. | 5/10 | NEEDS WORK | |
| ops_04 | Financial Controls & Reporting Cadence PIS_Cybersecurity_Assessment_Report.docx · PIS_CIM.docx · README.md · PIS_HC_Profile.txt — High confidence — multiple documents corroborated The company has a Controller on staff and uses QuickBooks Online with documented general ledger exports and AR aging reports, indicating basic financial infrastructure; however, the retrieved documents provide no evidence of monthly close timing, formal budget vs. actual reviews, documented control procedures, or audit trails. The CIM references "documentation maturity is improving but inconsistent across onboarding and engineering workflows," and the cybersecurity assessment notes reliance on informal practices, suggesting financial controls documentation is similarly incomplete and not formalized to buyer expectations. | 5/10 | NEEDS WORK |
| ID | Criterion & Finding | Score | Rating | Bar |
|---|---|---|---|---|
| fr_01 | Books Quality & CPA Relationship README.md · PIS_Cybersecurity_Assessment_Report.docx · PIS_CIM.docx · PIS_HC_Profile.txt — High confidence — multiple documents corroborated The retrieved documents contain no evidence of audited, reviewed, or even compiled financial statements prepared by a CPA firm. The README references a "PIS_Financials_And_Operations.xlsx" master workbook and "QuickBooks-style general ledger export," suggesting internally maintained books rather than professional accounting oversight. The CIM provides only high-level financial summary data ($5.42M revenue, $1.00M EBITDA), with no mention of CPA engagement, audit status, or financial statement preparation standards, indicating these financials are not diligence-ready without substantial rework. | 3/10 | CRITICAL RISK | |
| fr_02 | Add-Back Documentation PIS_CIM.docx · PIS_Cybersecurity_Assessment_Report.docx · README.md · PIS_HC_Profile.txt — High confidence — multiple documents corroborated The documents identify specific owner add-backs (vehicle at $740/mo, cell and personal expenses ~$3,800/yr, and a discretionary bonus pool of $18,000 in [DATE_TIME]), but documentation is acknowledged as limited and inconsistent. The CIM states "Documentation maturity is improving but inconsistent across onboarding and engineering workflows," and the HC Profile notes that the bonus pool "should be formalized" despite amounts being "consistent" historically, indicating add-backs lack formal schedules or independent verification. No normalized EBITDA schedule with supporting evidence is presented, and a buyer's accountant would require material rework to independently verify adjustments and reconcile personal versus business expenses. | 3/10 | CRITICAL RISK | |
| fr_03 | Revenue Recognition & Consistency PIS_Cybersecurity_Assessment_Report.docx · README.md · PIS_CIM.docx · PIS_HC_Profile.txt — High confidence — multiple documents corroborated The retrieved documents do not contain specific revenue recognition policies, GAAP compliance documentation, or evidence of consistent application of revenue recognition methods across periods. While the CIM references that "recurring revenue represented approximately 42% of [DATE_TIME] revenue" and financial data reconciles to $5.42M across multiple views, there is no documentation of formal revenue recognition policies, deferred revenue tracking procedures, or audit confirmation of GAAP compliance. The absence of explicit revenue recognition policy documentation and audit evidence places the company in the "mostly consistent with some irregular practices" category, requiring material clarification during financial due diligence. | 5/10 | NEEDS WORK | |
| fr_04 | Three-Year Financial Trend README.md · PIS_Cybersecurity_Assessment_Report.docx · PIS_CIM.docx · PIS_HC_Profile.txt — High confidence — multiple documents corroborated The CIM reports 2024 revenue of $5.42M with $1.00M EBITDA (18.5% margin) and highlights a "growing recurring managed services base" with ~$190K MRR, but the retrieved documents provide no multi-year P&L comparison, CAGR calculation, or year-over-year trend data needed to assess three-year growth consistency. While the overall exit readiness score cited in the README is 6.5/10, the financial excerpts lack the historical revenue and EBITDA figures required to evaluate whether margins are stable or improving, or whether growth has been consistent above or below the 10-15% threshold. | 5/10 | NEEDS WORK |
| ID | Criterion & Finding | Score | Rating | Bar |
|---|---|---|---|---|
| lc_01 | Business Licenses & Permits PIS_CIM.docx · PIS_Cybersecurity_Assessment_Report.docx · README.md · PIS_HC_Profile.txt — High confidence — multiple documents corroborated The retrieved documents contain no evidence of required business licenses, permits, contractor certifications, or transferability confirmation for Peachtree Integrated Systems' service lines (structured cabling, access control, CCTV, managed IT services). The CIM, cybersecurity assessment, and HR profile files do not address state contractor licensing, EPA certifications, insurance carrier appointments, or any compliance documentation required for the company's technology services operations, representing a material gap in exit-readiness documentation. | 2/10 | CRITICAL RISK | |
| lc_02 | Contract Change-of-Control Provisions PIS_Cybersecurity_Assessment_Report.docx · PIS_CIM.docx · README.md · PIS_HC_Profile.txt — High confidence — multiple documents corroborated The retrieved documents contain no evidence of legal review of vendor, customer, or lease agreements for change-of-control provisions, assignment clauses, or contract portability. While the CIM identifies "moderate owner dependence in late-stage sales, key client relationships, and vendor negotiations" and references sample customer contracts in the deal room file listing, no actual contract language, assignment provisions, or change-of-control analysis is provided in any of the assessed excerpts. The only contractual transition reference is an informal verbal commitment by the owner to a transition period with "no written agreement yet," indicating material gaps in documented contract governance prior to exit. | 2/10 | CRITICAL RISK | |
| lc_03 | Employment Law Compliance PIS_Cybersecurity_Assessment_Report.docx · PIS_CIM.docx · README.md · PIS_HC_Profile.txt — High confidence — multiple documents corroborated The documents reveal inconsistent employment compliance documentation and material gaps in formal agreements. While compensation has been benchmarked against market data (CompTIA Salary Guide, Glassdoor) and benefits are portable (Cigna, Fidelity Simple IRA, Travelers workers comp), there is no evidence of current I-9 documentation, executed non-compete or non-solicitation agreements for technicians who could take customer relationships, or formalized employment agreements—particularly critical given the owner's planned post-close transition period is only documented via "verbal commitment" with "no written agreement yet." Additionally, the discretionary bonus pool ($18,000 in recent year) lacks formal documentation and should be formalized, and two senior engineers have expressed interest in market-rate adjustments, indicating potential retention/classification risk post-transaction. | 5/10 | NEEDS WORK | |
| lc_04 | Intellectual Property Ownership PIS_CIM.docx · PIS_Cybersecurity_Assessment_Report.docx · PIS_HC_Profile.txt · README.md — High confidence — multiple documents corroborated The documents provide no evidence of formal IP ownership documentation, trademark registration, or an IP schedule in the data room. While the company operates structured cabling, access control, CCTV, and managed IT services, there is no explicit confirmation that software, methodologies, customer data systems (ConnectWise, Datto, SentinelOne), or brand assets are formally assigned to the entity rather than held personally by the owner or embedded in third-party platforms. The cybersecurity assessment and HR profile reference operational tools and systems but do not address IP ownership formality, leaving material ambiguity about clean ownership transfer at close. | 5/10 | NEEDS WORK | |
| lc_05 | Litigation & Contingent Liability PIS_Cybersecurity_Assessment_Report.docx · PIS_CIM.docx · README.md · PIS_HC_Profile.txt — High confidence — multiple documents corroborated The retrieved documents contain no evidence of material litigation, open claims, or undisclosed contingent liabilities. The company operates as a hybrid services firm (structured cabling, access control, CCTV, and managed IT) without law firm, accounting firm, insurance agency, or real estate brokerage operations, so the specialized professional liability assessment categories (malpractice insurance, bar discipline, peer review, RESPA compliance, etc.) do not apply. The only identified contingent liability is a documented $28,000 PTO accrual balance sheet liability and a discretionary bonus pool ($18,000 in prior year) that management indicates should be formalized—both are disclosed, quantified, and represent standard employment obligations rather than material undisclosed exposure. | 8/10 | STRONG |
| ID | Criterion & Finding | Score | Rating | Bar |
|---|---|---|---|---|
| tm_01 | Core Systems Documentation & Ownership PIS_Cybersecurity_Assessment_Report.docx · PIS_CIM.docx · README.md · PIS_Financials_And_Operations.xlsx · PIS_HC_Profile.txt — High confidence — multiple documents corroborated Core business systems are partially documented but show significant gaps in entity ownership and personal account dependencies. The Cybersecurity Assessment Report identifies incomplete MFA enforcement across critical systems (Microsoft 365, HubSpot, QuickBooks Online, ConnectWise, and remote admin tools) and notes that "privileged accounts are not fully separated from day-to-day identities," indicating personal account dependencies remain unresolved. Additionally, the CIM explicitly states "Documentation maturity is improving but inconsistent across onboarding and engineering workflows," and the assessment recommends standing up centralized monitoring and formalizing incident response procedures, suggesting current system documentation and ownership controls are incomplete relative to buyer expectations. | 5/10 | NEEDS WORK | |
| tm_02 | Cybersecurity & Data Protection Posture PIS_Cybersecurity_Assessment_Report.docx · README.md · PIS_CIM.docx · PIS_Financials_And_Operations.xlsx · PIS_HC_Profile.txt — High confidence — multiple documents corroborated The company has deployed Defender for Business to most endpoints with CrowdStrike rollout in progress for select users, but the cybersecurity assessment explicitly identifies "incomplete controls" relative to buyer expectations, particularly around "inconsistent MFA enforcement, limited centralized log monitoring, and reliance on informal incident response practices." While backups are performed nightly with documented restore tests, there is no evidence of a formalized incident response plan, data classification framework, annual IR testing, cyber insurance, or structured vendor security reviews—with the CIM noting "no formal SIEM or fully mature cybersecurity program despite healthcare-adjacent customer base." | 5/10 | NEEDS WORK | |
| tm_03 | Data Integrity & Business Intelligence PIS_CIM.docx · PIS_Cybersecurity_Assessment_Report.docx · README.md · PIS_HC_Profile.txt — High confidence — multiple documents corroborated Peachtree has foundational financial and operational data exports (P&L, GL, AR aging, CRM pipeline, employee roster, IT asset inventory) that reconcile internally to $5.42M revenue and ~$190K MRR, but the documents explicitly state "Documentation maturity is improving but inconsistent across onboarding and engineering workflows" and note that "backup restore tests occur [DATE_TIME] but are not always documented." Critical gaps include no centralized log monitoring or SIEM ("limited centralized log monitoring" per the cybersecurity assessment), and key operational dependencies on individuals (owner holds executive relationships with 16% of revenue customer; [PERSON] manages all field scheduling and vendor relationships without formal handoff procedures). | 5/10 | NEEDS WORK | |
| tm_04 | Technology Vendor & Subscription Management PIS_CIM.docx · PIS_Cybersecurity_Assessment_Report.docx · README.md · PIS_HC_Profile.txt — High confidence — multiple documents corroborated The documents provide no evidence of documented vendor contracts, renewal date tracking, or formal vendor relationship inventory. The Cybersecurity Assessment Report identifies multiple vendor tools in use (Microsoft Defender, CrowdStrike, Datto, SentinelOne, ConnectWise, HubSpot, QuickBooks Online) but notes "reliance on informal incident response practices" and lacks centralized documentation; additionally, the CIM acknowledges that "documentation maturity is improving but inconsistent across onboarding and engineering workflows," indicating core vendor relationships are known but not formally documented with transferability confirmed. | 4/10 | NEEDS WORK | |
| tm_05 | Technical Debt & Modernization Risk PIS_Cybersecurity_Assessment_Report.docx · PIS_CIM.docx · README.md · PIS_HC_Profile.txt — High confidence — multiple documents corroborated The company operates a mixed technology stack with both modern cloud components (Microsoft 365, Defender for Business, CrowdStrike, Datta, SentinelOne) and deferred modernization needs. The Cybersecurity Assessment Report identifies material gaps including "inconsistent MFA enforcement, limited centralized log monitoring" and incomplete endpoint security deployment (CrowdStrike "in progress for engineering and executive users only"), with the assessor noting that "buyers will likely discount value or require a remediation plan until identity hardening, monitoring, and documentation are improved." While no legacy systems are explicitly described as end-of-life, the documented security control gaps and incomplete tooling rollouts represent deferred upgrades that fall short of buyer expectations for a healthcare-adjacent managed services provider. | 5/10 | NEEDS WORK |
| ID | Criterion & Finding | Score | Rating | Bar |
|---|---|---|---|---|
| hc_01 | Workforce Retention & Tenure README.md · PIS_HC_Profile.txt · PIS_CIM.docx · PIS_Cybersecurity_Assessment_Report.docx · PIS_Financials_And_Operations.xlsx — High confidence — multiple documents corroborated Peachtree demonstrates mixed retention signals with overall annual turnover appearing to fall in the 15-25% range based on reported rates: 0% management turnover, 12% senior technical turnover (1 senior engineer departure), 20% NOC/mid-level technical turnover (2 departures), and 30% administrative turnover. Average tenure metrics are redacted in the documents, but the company shows stability in key revenue-generating and management roles—the single senior engineer departure was replaced within the stated timeframe, and all four managers remain stable. However, compensation gaps noted for senior engineers with stated interest in market rate adjustments pose a near-term retention risk that could affect technical stability in the rolling 24-month outlook. | 6/10 | ADEQUATE | |
| hc_02 | Compensation Competitiveness PIS_Cybersecurity_Assessment_Report.docx · README.md · PIS_HC_Profile.txt · PIS_CIM.docx — High confidence — multiple documents corroborated Peachtree has documented benchmarking against CompTIA Salary Guide and Glassdoor Atlanta data, with most roles at or near market rates; however, senior engineers are paid 5% below the CompTIA median of $112,000 (current range $95,000–$108,000), and two senior engineers have already expressed interest in market-rate adjustments planned for a future review cycle. While the compensation philosophy is documented and systematic, the existing gap in a critical technical role combined with identified retention risk creates moderate exposure to post-close turnover or payroll inflation pressure from the buyer. | 6/10 | ADEQUATE | |
| hc_03 | Recruiting & Training Capability PIS_CIM.docx · README.md · PIS_Cybersecurity_Assessment_Report.docx · PIS_HC_Profile.txt — High confidence — multiple documents corroborated The company has a documented three-stage hiring process and structured onboarding program with defined milestones (Week 1–2 systems access, Week 3–4 shadowing, Week 5–8 independent work, and 90-day performance review), and the Operations Manager can execute all non-senior technical hiring and onboarding without owner involvement. However, owner approval is still required for senior role hires, and new-hire one-year retention of 81% falls slightly below the 85% threshold for higher scores, indicating room for improvement in onboarding effectiveness or role fit. | 6/10 | ADEQUATE | |
| hc_04 | Bench Depth & Succession Beyond Owner PIS_HC_Profile.txt · README.md · PIS_CIM.docx · PIS_Cybersecurity_Assessment_Report.docx · PIS_Financials_And_Operations.xlsx — High confidence — multiple documents corroborated The company has documented bench depth for most key non-owner roles with identified backups (e.g., NOC Operations has Jamie cross-trained 2 others; Billing/Finance has independent coverage; Sales Pipeline has documented overlap), and successfully operated without the owner for Q1 2026 during surgery recovery with no SLA breaches. However, critical single points of failure remain: Cisco networking architecture depends on only 2 of 3 senior engineers with CCNA certification and no CCNP on staff, and the key client relationship (Northside Medical Group, 16% of revenue) is held solely by the owner with only operational contact introduction to [PERSON]. No formal succession plan exists, with only a verbal owner commitment to a post-close transition period and no written documentation. | 6/10 | ADEQUATE | |
| hc_05 | Compensation/Benefits Structure Transferability README.md · PIS_Cybersecurity_Assessment_Report.docx · PIS_CIM.docx · PIS_HC_Profile.txt — High confidence — multiple documents corroborated The compensation structure is largely portable with entity-owned benefits (Cigna health/dental/vision, Fidelity Simple IRA, Travelers workers comp) that transfer cleanly at close. However, cleanup is required on owner-specific arrangements including vehicle allowance ($740/mo), personal expenses (~$3,800/yr), S-corp distributions requiring formalization, and a discretionary bonus pool ($18,000 in [DATE_TIME]) currently distributed by owner with limited documentation that "should be formalized." Additionally, senior engineer compensation gaps have been identified with two senior engineers requesting market rate adjustments planned for an upcoming review cycle, requiring post-close attention. | 6/10 | ADEQUATE |
Top 3 Strengths
- Human Capital at 6.0/10 represents an adequate foundation of talent and organizational capability that will reduce buyer concern over post-close execution risk. A stable management and technical team mitigates the need for aggressive earnout structures or retention clawbacks, allowing sellers to negotiate a higher cash component of the purchase price and defend against re-trade attempts focused on key person risk.
- Diligence Risk at 5.4/10, while still in needs work, is the strongest of the deal-facing domains and signals that material operational and financial documentation gaps are manageable rather than systemic. This positions the seller to resist broad-based discount demands during underwriting and reduces the likelihood of discovery-driven price reductions late in the process.
- Owner Risk at 5.2/10 demonstrates adequate clarity around ownership structure and founder involvement, eliminating a common source of deal friction and post-close disputes. By establishing straightforward ownership transition terms early, the seller can avoid the complexity-driven discounts that buyers typically impose when founder entanglement or governance uncertainty exists.
Top 3 Risks
- Customer Quality at 4.8/10 (NEEDS WORK) represents the highest-weighted risk in the portfolio and will trigger a buyer discount during underwriting. Buyers will conduct deep diligence into customer concentration, retention, churn patterns, and contract stickiness—and a needs-work posture in this domain signals meaningful customer-base fragility that will surface as a material liability in purchase price negotiations and post-close earnout structures.
- Financial Readiness at 4.0/10 (NEEDS WORK) creates a critical gap in the seller's ability to support M&A diligence and represents a deal-risk factor that buyers will leverage aggressively during re-trade attempts. Poor financial record-keeping, inadequate accounting controls, or unclear revenue recognition will require remediation before listing and will expose Peachtree to significant buyer haircuts as due diligence teams flag compliance gaps and forecast uncertainty.
- Diligence Risk at 5.4/10 (NEEDS WORK), combined with Legal & Regulatory Compliance at 4.3/10 (NEEDS WORK), positions the company to face material liabilities during third-party verification of contracts, IP ownership, regulatory standing, and vendor/customer agreements. Buyers will apply a discount to account for the cost of remediation, legal risk transfer, and the operational friction required to close diligence gaps before signing.
Recommended Priority Fixes
The five highest-priority actions for the next 90 days, ranked by deal impact. For the complete domain-by-domain remediation plan and cost estimates, see the Value Recovery Roadmap above.
Compliance Notes
No PII was detected in the ingested documents.