Think Build Implement Repeat
London, UK +44 7367 067226
WhatsApp FOLLOW f in X
  1. Home
  2. Blog
  3. How Does an MSP Get Clear Client Approval for Changes Before Engineers Make Them?
Problems We Solve

How Does an MSP Get Clear Client Approval for Changes Before Engineers Make Them?

MSP changes are agreed in calls and email threads, so nobody can show who approved what. We build change requests with recorded client sign-off in the PSA.

Updated 3 min readBy SpiderHunts Technologies

Free estimateNo obligation

Get a free estimate

Tell us what you need. A senior engineer reads every enquiry.

Takes under a minute. We never share your details.

  • Free consultation
  • No commitment
  • NDA on request

Prefer to talk? Book a free 30-minute call →

Quick answer — TL;DR

Changes to a client's systems (firewall rules, conditional access, server updates, migrations) are often agreed on the phone or in a chat, so when something goes wrong, nobody can show who approved it, when, or with what warning. We build a light change process in your PSA: a change request with risk, plan and rollback, sent to the right client approver, with the approval recorded before the work can be scheduled.

A change, a problem, and a question

An engineer tightens a client's conditional access policy one evening, as discussed with the office manager on the phone last week. The next morning, the sales director cannot sign in from a hotel abroad. He is not happy, and asks who authorised the change. The engineer says the office manager did. The office manager remembers a conversation, but not agreeing to anything specific.

There is no written change request, no statement of who would be affected, no rollback plan, and no recorded approval. The change was sensible. The process was not.

Why changes go unrecorded

Formal change management feels heavy for small clients, so MSPs skip it. But the absence of a light version means approvals live in memory.

  • Changes are discussed in calls and chats, not written up.
  • The person who approves is not always the person with authority.
  • Impact on users is not spelled out before the change.
  • Rollback plans exist in engineers' heads.
  • Approvals are not linked to the ticket that made the change.

What unrecorded changes cost

Missing elementConsequence
No written approvalDisputes about who agreed what
Wrong approverA change agreed by someone without authority
No user impact statedSurprised users and angry calls
No rollback planLonger outages when a change goes wrong
No change historyHarder troubleshooting later

Who at each client may approve which kind of change is the client's decision. We record it and make sure the right person is asked.

A light change process we build

  1. A change request form in your PSA with a few required fields: what, why, who is affected, risk, plan, rollback and proposed time.
  2. Change categories you define (standard, normal, emergency), with standard pre-approved changes needing no sign-off, as agreed with each client.
  3. An approver list per client and category, so the request goes to someone with authority.
  4. Approval by email link or client portal, recording the approver, time and the exact version they approved.
  5. Scheduling blocked until approval is recorded, except for emergency changes, which need approval after the fact.
  6. A change calendar per client and a history linked to tickets, for troubleshooting and QBRs.

We keep it as light as possible. For a small client, a change request should take minutes to write and seconds to approve.

Changes, with a paper trail

The engineer writes the conditional access change request: all users to require MFA from compliant devices, sales team travelling next week affected, rollback by disabling the policy. It goes to the managing director, who is the approver for security changes at this client. She approves it with a note to wait until the sales team is back.

The change happens the following week. If someone asks who authorised it, the answer is a link. If something goes wrong, the rollback plan is already written. And at the QBR, the client sees a list of changes made during the quarter, which shows the work behind the scenes.

Standard changes keep the process from getting in the way. Adding a user to a distribution list, resetting MFA for a verified user, or approving a Windows feature update for a pilot group can be agreed once with each client as pre-approved, so engineers do not send approval requests for routine work. Only changes that alter security settings, network access or business systems go through sign-off, and each client can move items between the lists as trust builds.

Your engineers benefit as well. A recorded approval protects the engineer who made a sensible change at the client's request, and a written rollback plan means whoever is on call that night can undo it without phoning the person who made it.

Could your MSP use this?

  • Changes are agreed on the phone and not written down.
  • You have had a dispute about who approved a change.
  • Approvals come from whoever answers, not from someone with authority.
  • Rollback plans are not recorded.
  • You cannot list changes made for a client last quarter.

FAQ

Frequently asked questions

The questions readers ask us after this guide.

Still have a question?

Ask us directly — a senior engineer will get back to you.

Ask about your project

Is this too heavy for small clients?

It is designed to be light, and standard changes can be pre-approved. A normal change takes minutes to write and one click to approve.

Can it work in our PSA?

Most PSAs support change request tickets and approvals with some set-up. We build on that and add what is missing.

What about emergencies?

Emergency changes can proceed and are approved after the fact, with the reason recorded.

What affects the cost?

Mainly how much the PSA can do already and how many clients have distinct approval rules.

What do you need from us to start?

A list of the change types you make most often, your clients' approvers for each, and your PSA access. We agree the standard, pre-approved list with you before anything is switched on.

Keep reading

More on Problems We Solve

Start here

Tell us which part of your MSP's service still runs on goodwill

Describe how the process runs today: the PSA, the calendars, the spreadsheets and the people who hold it together. We will tell you what we would build on top of your tools and what we would leave alone, and if your PSA can already do it with some set-up, we will say so.

  1. You tell us what you needTwo minutes on the form, or a message on WhatsApp.
  2. A senior engineer reviews itAnd comes back with questions, a realistic range and an honest view on fit.
  3. Free 30-minute scoping callWe talk through scope, options and a realistic estimate — with no obligation.
Free estimateNo obligation

Talk to someone who builds this

Send a short brief and we will come back with an honest view and a realistic range.

Takes under a minute. We never share your details.

  • Free consultation
  • No commitment
  • NDA on request

Prefer to talk? Book a free 30-minute call →