Microsoft offers an easy inexpensive or free way for small nonprofits to boost their data security.
Most small business nonprofits have fewer than 50 employees and lack a dedicated online security officer. These small and medium size organizations have many of the same business operation and security needs and goals as larger nonprofits. Microsoft describes their role: “They work on the frontlines to save lives, provide critical services to underserved communities, protect the environment, and much more. The challenge is they have fewer resources to purchase the latest technology, train their employees to use it, employ IT support staff, or invest in resources to keep their organizations secure”.
But a study by Microsoft found that most of these nonprofits report having no organizational digital policy to manage cybersecurity risk, or even take basic critical security steps to ensure that their email accounts are not compromised. If nonprofits do not have cybersecurity practices in place, their organization and beneficiary and donor data is vulnerable to hackers.
There is no federal law that mandates nonprofit organizations to have a Written Information Security Plan (WISP), but some state laws do require it. This basic step is highly recommended by state regulations and insurance providers. Having a WISP helps nonprofit businesses protect sensitive information, helps maintain donor trust, and minimize potential financial losses due to data breaches.
Microsoft has a free short e-book available online titled “Crash Course in Microsoft 365 Business Premium for Nonprofits“, that is worthwhile considering especially if your small nonprofit does not have a data security plan. The free offer of Microsoft 365 Business Premium for small nonprofits, distributed through TechSoup, may be the easiest and most inexpensive way for small nonprofits to improve their data security. When combined with internal (often the office manager or even just the founder) and external people (often the accountant) tasked with addressing security, significant improvements in policy, safety, and efficiency are possible for even small volunteer-led nonprofits.
Nantuxent Group includes these security management services in the offerings available to nonprofit organizations. Send an inquiry form for more information. Tony Novak CPA will respond in person within one business day.