CyberDefenders is an independently funded nonprofit project.. Donate

Security Tools for Non Profits

Curated list of all the best security tools and resources (and an optional monthly newsletter) to help you build a secure not for profit company.

Risk Assessment

Various tools to help with risk assessment.

Intrusion Detection

Intrusion detection.

Education

Awareness and education tools.

Cloud

Making your cloud secure!

Resources & Tools

SAFETag Framework

Resource

Security Auditing Framework and Evaluation Template for Advocacy Groups. SAFETAG is a professional audit framework that adapts traditional penetration testing and risk assessment methodologies to be relevant to smaller non-profit organizations based or operating in the developing world.

Link: Resource

Project Galileo

Resource

If you are an organization working in the arts, human rights, civil society, journalism, or democracy, you can apply for Project Galileo to get Cloudflare’s cybersecurity protection, for free

Link: Resource

GSuite Security

Resource

Most non profits use Google Suite, this is a good resource to understand the security aspects of this cloud tool.

Link: Resource

StopThinkConnect Toolkit

Resource

Cybersecurity is a shared responsibility in which all Americans have a role to play. The STOP. THINK. CONNECT. ™ Toolkit provides resources for all segments of the community.

Link: Resource

Why Cybersecurity Should Be On Your Nonprofit’s Radar

Resource

Did you know that more than 50 U.S. cities and small towns were attacked by ransomware in 2019? These governments fell victim to fake emails that included attachments mistakenly opened by staff. Baltimore chose to not pay the ransom and instead spent $18 million to recover from the attack. This should be your organization’s wake-up call, because the nonprofit industry is also on the map.

Link: Resource

Document Retention Policies for Non Profits

Resource

A document retention and destruction policy identifies the record retention responsibilities of staff, volunteers, board members, and outsiders for maintaining and documenting the storage and destruction of the organization’s documents and records.

Link: Resource

Email Scams To Be Aware Of

Resource

The Federal Trade Commission reported in October that 26 percent of people who report being scammed in 2018 said they bought or reloaded a gift card to deliver the money, up from 7 percent in 2015.

Link: Resource

Low Risk Organization Security

Resource

This guide is intended as an introductory document for low-risk organizations interested in improving their cybersecurity practices. Produced by Citizen Clinic at UC Berkeley's Center for Long-Term Cybersecurity.

Link: Resource

Project Escher

Tool

Nonprofits focused on human rights, social justice, democracy, economic equality, animal welfare, and community engagement can get access to the SecurityScorecard rating platform for free.

Link: Tool

Google Advanced Protection Program

Tool

The Advanced Protection Program safeguards the personal Google Accounts of anyone at risk of targeted attacks – like journalists, activists, business leaders, and political campaign teams.

Link: Tool

Security Checklist

Resource

An open source checklist of resources designed to improve your pesronal online privacy and security. Check things off to keep track as you go.

Link: Resource

Cloudflare Warp VPN

Tool

A free app that makes your Internet faster and safer with VPN like capabilities. "Your Internet service provider can see every site and app you use—even if they’re encrypted. Some providers even sell this data, or use it to target you with ads.1.1.1.1 with WARP prevents anyone from snooping on you by encrypting more of the traffic leaving your phone.We believe privacy is a right. We won't sell your data, ever."

Link: Tool

Workshop Feedback & Ideation

Our workshop at NICE K12 Conference on Dec 10, 2019 received following feedback and ideation on what the teachers who do next!

  1. Puzzle chain websites with puzzles that can be completed passively
  2. Introduce concepts with a board game during onboarding to students in 1hr block to talk about security
  3. Mini competitions with clubs in our school
  4. Build a network domain using dice, winner is who can throw dice numbers in a range first (like 0.001.001.0)
  5. Board game with ethical scenarios
  6. Digital Forensic escape room
  7. Create your own custom cipher code, someone else must decipher
  8. Using virtual reality, a cyber security manager has to stop an attack by finding the right clues around the room using various tools & equipment.