Skip to main content
business it strategy

1. How often should a business IT strategy be updated?

Most organizations benefit from a full strategy refresh annually, with quarterly check-ins to adjust for budget changes, new risks, or shifting business priorities.

2. Does a small or mid-sized business really need a formal IT strategy?

Yes. The businesses most exposed to reactive spending and cybersecurity risk are frequently small and mid-sized companies that assume formal strategy is only for large enterprises. Verizon’s DBIR data shows SMBs face a disproportionate share of ransomware incidents, which makes proactive planning more important, not less.

3. Who should own the IT strategy inside the company?

Ownership should sit with executive leadership, informed by IT input. Many companies without a full-time CIO use a fractional or virtual CIO to provide that executive-level ownership without a full-time hire.

4. What’s the difference between an IT strategy and an IT roadmap?

The strategy defines the goals, priorities, and governance. The roadmap is the sequenced, time-bound execution plan that comes out of the strategy, covered in more detail earlier in this guide.

5. How do we know if our current technology can support our growth plans?

A structured technology gap analysis, referenced earlier in this guide, is the most reliable way to answer this before committing budget to new initiatives.

6. What’s the first step if we’ve never had a formal IT strategy before?

Start with a current-state assessment rather than jumping straight to a roadmap. The business IT assessment checklist linked above is a practical way to establish that baseline before deeper planning begins. From there, findings can be prioritized into a roadmap, and executive ownership, whether internal or through a fractional CIO, can be assigned to keep the plan moving.

John Angelotti

John Angelotti is the President of DCG Technical Solutions, beginning his technology journey on a Commodore 64 and at swap meets with his mother. For more than two decades, he has helped businesses grow through secure, strategic, and cost-effective IT leadership.

At DCG, he works to ensure clients can grow without worrying about downtime. As the leader of a security-forward MSP, he develops tailored solutions that safeguard each client’s operations and reputation.

John is known for making complex technology easy to understand and guiding organizations through key improvements, from cloud migrations to cybersecurity hardening. Outside of work, he enjoys building things with his hands, archery, hiking, and competitive custom car audio.