Keeping Your Information Safe with Centralized Security Services

TechSoupGlobal 175 views 12 slides May 22, 2024
Slide 1
Slide 1 of 12
Slide 1
1
Slide 2
2
Slide 3
3
Slide 4
4
Slide 5
5
Slide 6
6
Slide 7
7
Slide 8
8
Slide 9
9
Slide 10
10
Slide 11
11
Slide 12
12

About This Presentation

In this webinar, Felipe Mondragon from Tech Impact shared the basic understanding of how cyberattacks happen and how to prevent them. Small to medium-sized nonprofit organizations are specifically susceptible due to their lack of cybersecurity policies and staff training. The good news is that there...


Slide Content

Nonprofit Cyber Risk
Management
Felipe Mondragon

WE’RE A NONPROFIT ON A
MISSION TO LEVERAGE
TECHNOLOGY TO ADVANCE
SOCIAL IMPACT.

We do this by delivering tech services, education, and
training that help nonprofits and communities thrive.
NONPROFIT
EDUCATION & TRAINING:
•Unbiased research
•Easy-to-understand
•One-to-many approach
NONPROFIT
TECH SERVICES:
•Impartial advice
•Well-aligned solutions
•Adopt technology that fulfills
missions
WORKFORCE
DEVELOPMENT:
•Hands-on experience
•Launching careers
•Improved quality of life

Felipe Mondragon
Information Security Engineer
Security professional with 25+ years of experience in information
security in the financial and energy industries.
My goal is to empower non-profit organizations with the tools to
maximize their value to the community.

•All attendee lines will remain muted.
•Please connect to audio by dialing in (toll) or by using your computer speakers (VoIP Toll Free).
•If you have dialed in by phone select Telephone and enter your audio PIN number in the audio panel.
•If you lose audio, please exit out of the presentation and reconnect.
•We are recording today’s presentation and you will be sent a link to the webinar recording.
•Please use the “Chat Tab” to ask us questions.
1.Why are nonprofits targeted?
2.Nonprofit threat landscape
3.Common attack methods
4.Best practices
5.Expert support
AGENDA

Nonprofits are increasingly targeted by cyber attacks due to several
key factors. They often handle sensitive donor information, including
personal and financial data, making them lucrative targets for identity
theft and financial fraud. Additionally, nonprofits may lack the robust
cybersecurity infrastructure and resources that larger corporations
possess, rendering them more vulnerable to sophisticated attacks.
•Sensitive data – PII, PHI, Credit cards
•Under funded IT / cybersecurity budgets
•Understaffed – who’s watching the screens?
•Untrained staff
•Unprepared for incidents
Why are nonprofits targeted?

Cyber Criminals
Financial gain through theft of
sensitive data such as donor
information and credit card
details
Hacktivists
Ideological reasons, such as
promoting a cause, exposing
perceived wrongdoings, or
retaliating against the
nonprofit's stance on issues.
Insiders
Personal gain, revenge, or
coercion by external actors to
exploit their access to the
nonprofit’s systems.
Threat Actors

Common Attack Methods
Data Breaches
•Nonprofits often handle sensitive information, such as client records, personal health information and donor details. A breach could lead to reputational damage and legal repercussions.
Phishing Attacks
•Cybercriminals may impersonate trusted sources to trick employees into revealing private and confidential information.
Ransomware
•Malicious software can encrypt critical files, resulting in the demand of a ransom for their release.
Insider Threats
•Employees or volunteers with access to sensitive information could misuse or leak it.

•Implement Strong Access Controls (MFA)
•Regularly Update and Patch Systems
•Develop a Cyber Security Policy
•Conduct Cybersecurity Training and Awareness Programs
•Develop and Regularly Test an Incident Response Plan
•Perform Regular Security Assessment
•Risk assessments
•Vulnerability assessments
Best Practices

A Managed Service Provider can significantly enhance a
nonprofit's ability to manage cyber risk by offering
specialized expertise:
•Centralized device management
•Comprehensive cyber security solutions
•Vulnerability assessments
•Policy development support
These services help nonprofits protect their sensitive data,
maintain operational integrity, and focus on their mission
with greater confidence in their cybersecurity defenses.
Expert Support

LET’S ANSWER SOME
QUESTIONS!

TECHIMPACT.ORG