Security for Non-Profits with Cameron Birge and Tarek Dawoud
Whether you're a multi-national NGO or your local church group, every non-profit has cybersecurity issues! Carl and Richard talk to Cameron Birge and Tarek Dawoud about tools, techniques and mindset to protect data and resist hackers. While the practices are broadly applicable to any organization and applications, non-profits have specific challenges that make cybersecurity all the more challenges - how do you train volunteers that turn over steadily? How can you be sure that a volunteer software developer is doing the right thing security-wise? Lots of good thinking about how to prioritize your security needs, it's a journey, not a destination!
Guests:
Cameron Birge
As the Microsoft Philanthropies Humanitarian Response Manager, Cameron Birge has the responsibility for coordinating across the company the provision of resources to external agencies providing humanitarian relief during sudden onset humanitarian disasters. As with others on the team, he also has a portfolio of other engagement areas with nonprofits to include awareness on data privacy and cybersecurity issues.
Tarek Dawoud
Tarek Dawoud is a principal program manager and architect in the Azure Active Directory Customer Success team. Tarek works closely with customers who are deploying Azure AD Identity scenarios to help them design and implement their solutions to their employees or consumers smoothly and securely. He is an 11 year veteran of Microsoft, 10 of them in the Identity Division
Links:
- PassBolt https://www.passbolt.com/
- Daily Information Podcast https://isc.sans.edu/podcast.html
- Microsoft Philanthropies https://www.microsoft.com/philanthropies/default.aspx
- Nonprofit Guidelines for Cybersecurity and Privacy http://download.microsoft.com/download/1/D/4/1D494A7D-D153-40FC-BC18-F4C2F800E752/Nonprofit_Guidelines_for_Cybersecurity_and_Privacy.pdf
- Azure Active Directory Identity Protection https://docs.microsoft.com/azure/active-directory/active-directory-identityprotection
- NIST Cybersecurity Framework https://www.nist.gov/cyberframework
- Azure Advanced Threat Detection https://docs.microsoft.com/azure/security/azure-threat-detection
- OWASP Top 10 for 2017 https://www.owasp.org/images/7/72/OWASP_Top_10-2017_(en).pdf.pdf
- Azure Security Center https://azure.microsoft.com/services/security-center/
- Role-Based Access Control in Azure https://docs.microsoft.com/azure/active-directory/role-based-access-control-configure