Skip to content
Solid IT
  • IT på abonnement

    IT as a service


    Light Plan

    Designed for small businesses

    Read more →

    Full Plan

    For medium-sized businesses without an in-house IT department

    Read more →

    Plus Plan

    For businesses with an in-house IT department wanting access to specialists

    Read more →

    Network & operations


    Netværk as a service

    Seamless, scalable, and cost-effective network solution

    Read more →

    IT-hosting and operations

    IT operations at transparent, low prices

    Read more →

    WordPress operations and hosting

    Professional WordPress operations for serious businesses and organizations

    Read more →

    NGO Programme

    We give back to those who make a difference. Benefit program, discounts, and flexible support solutions.

    Read more →

    IT Security

    With current geopolitical instability, you cannot compromise on your IT security. We have the solution for those who want peace of mind.

    Read more →

  • Microsoft

    Microsoft services


    Microsoft365

    Work smarter with Microsoft 365. Modern tools to boost productivity across the company.

    Read more →

    Microsoft Azure

    Scalable and secure cloud solutions that scale up or down according to your needs.

    Read more →

    Microsoft Licences

    We guide you through the “license jungle” and ensure you aren’t overpaying for your licenses.

    Read more →

    Vores egne applikationer


    Easy365Manager

    Reduces Microsoft administration by 50-75%

    Read more →

    EasyEntra

    The ideal solution to optimize and automate Microsoft 365 user management

    Read more →

    EasyMailSignature

    Consistent e-mail signatures across the entire organization

    Read more →

    Free licence check

    With a free licence check, we often see that companies can reduce their costs by 10-30%.

    Read more →

    Microsoft consultantcy

    Certified consultants ready to assist small and medium-sized in every aspect of Microsoft 365

    Read more →

  • Konsulentydelser

    Consultancy Services


    Microsoft Consultant

    Certified consultants ready to assist small and medium-sized businesses

    Read more →

    Network Consultant

    Our network specialists have deep technical expertise across leading vendors

    Read more →

    IT Security Consultants

    Cyber threats are becoming increasingly complex — we help you stay ahead

    Read more →

    RELATED SERVICES


    Network as a Service

    A seamless, scalable, and cost-effective network solution

    Read more →

    IT Hosting & Operations

    IT operations at transparent, low prices

    Read more→

    NGO Programme

    We give back to those who make a difference. Benefit program, discounts, and flexible support solutions.

    Read more →

    IT-security

    With current geopolitical instability, you cannot compromise on your IT security. We have the solution for those who want peace of mind.

    Read more →

  • IT-sikkerhed
     

    Awareness Training

    90% of all cyberattacks against businesses are caused by lack of awareness

     

    Antivirus

    Staying ahead of the latest cyber threats can be a challenge

     

    Backup & data recovery

    Data is one of the most valuable assets for any business

     

    Encryption

    In 2024, the number of cyberattacks against Danish businesses increased by 32%

     

    Email og phishing

    Get trained to spot fake emails! everything you need to know about the threats

     

    Cybersecurity for SMEs

    Learn more about cybersecurity with SOLID IT

     

    MDM (Mobile Device Management)

    What is MDM? Find out here

     

    MFA (Multi-Factor Authentification)

    There’s a reason why demand for MFA solutions is increasing

     

    Secure Email

    Make sure all your emails are sent securely — read about our solution here

     

    IT Security Certification

    Turn compliance into a competitive advantage

  • NGO PROGRAMme


    NGO Programme – Overview

    Get an overview of our entire NGO Program

    Read more →

    Customize your IT support

    Build your own solution with pre-paid hours or a subscription. No surprises, no long-term commitment.

    Read more →

    IT Security Quiz

    Take our IT security quiz and test your cybersecurity knowledge

    Read more →

    Discounts and donations


    Hardware discounts

    Every penny you save on hardware is a penny more for your cause.

    Read more →

    Benefit Program for NGOs

    From Microsoft donations to affordable hardware. Get the most out of your IT budget so you can dedicate more resources to your mission.

    Read more →

    Get in touch personally

    Want to hear more about our NGO Program? Click the link and speak with an experienced NGO consultant.

    Read more →

    IT Security

    With current geopolitical instability, you cannot compromise on your IT security. We have the solution for those who want peace of mind.

    Read more →

  • Hardware
  • Om os

    About Us


    Opening hours

    Monday to Thursday 8:30 – 16:30
    Friday 8:30 – 16:00

    Careers at SOLID IT

    Find our open positions here

    Read more →

    About SOLID IT

    We are a team of specialists

    Read more →

    Contact


    Get in touch

    Do you need to speak with a specialist or supporter

    Contact us here→

    ISAE3000 declaration

    Documentation that we handle your data compliantly

    Read more →

    NGO Programme

    We give back to those who make a difference. Benefit program, discounts, and flexible support solutions.

    Read more →

    IT Security

    With current geopolitical instability, you cannot compromise on your IT security. We have the solution for those who want peace of mind.

    Læs mere →

  • Quick Support
  • IT department

    IT as a service


    Light Plan

    Designed for small businesses

    Read more →

    Full Plan

    For medium-sized businesses without an in-house IT department

    Read more →

    Plus Plan

    For businesses with an in-house IT department wanting access to specialists

    Read more →

    Network & operations


    Netværk as a service

    Seamless, scalable, and cost-effective network solution

    Read more →

    IT-hosting and operations

    IT operations at transparent, low prices

    Read more →

    WordPress operations and hosting

    Professional WordPress operations for serious businesses and organizations

    Read more →

    NGO Programme

    We give back to those who make a difference. Benefit program, discounts, and flexible support solutions.

    Read more →

    IT Security

    With current geopolitical instability, you cannot compromise on your IT security. We have the solution for those who want peace of mind.

    Read more →

  • Microsoft

    Microsoft services


    Microsoft365

    Work smarter with Microsoft 365. Modern tools to boost productivity across the company.

    Read more →

    Microsoft Azure

    Scalable and secure cloud solutions that scale up or down according to your needs.

    Read more →

    Microsoft Licences

    We guide you through the “license jungle” and ensure you aren’t overpaying for your licenses.

    Read more →

    Vores egne applikationer


    Easy365Manager

    Reduces Microsoft administration by 50-75%

    Read more →

    EasyEntra

    The ideal solution to optimize and automate Microsoft 365 user management

    Read more →

    EasyMailSignature

    Consistent e-mail signatures across the entire organization

    Read more →

    Free licence check

    With a free licence check, we often see that companies can reduce their costs by 10-30%.

    Read more →

    Microsoft consultantcy

    Certified consultants ready to assist small and medium-sized in every aspect of Microsoft 365

    Read more →

  • Consultancy

    Consultancy Services


    Microsoft Consultant

    Certified consultants ready to assist small and medium-sized businesses

    Read more →

    Network Consultant

    Our network specialists have deep technical expertise across leading vendors

    Read more →

    IT Security Consultants

    Cyber threats are becoming increasingly complex — we help you stay ahead

    Read more →

    RELATED SERVICES


    Network as a Service

    A seamless, scalable, and cost-effective network solution

    Read more →

    IT Hosting & Operations

    IT operations at transparent, low prices

    Read more→

    NGO Programme

    We give back to those who make a difference. Benefit program, discounts, and flexible support solutions.

    Read more →

    IT-security

    With current geopolitical instability, you cannot compromise on your IT security. We have the solution for those who want peace of mind.

    Read more →

  • IT-security
     

    Awareness Training

    90% of all cyberattacks against businesses are caused by lack of awareness

     

    Antivirus

    Staying ahead of the latest cyber threats can be a challenge

     

    Backup & data recovery

    Data is one of the most valuable assets for any business

     

    Encryption

    In 2024, the number of cyberattacks against Danish businesses increased by 32%

     

    Email og phishing

    Get trained to spot fake emails! everything you need to know about the threats

     

    Cybersecurity for SMEs

    Learn more about cybersecurity with SOLID IT

     

    MDM (Mobile Device Management)

    What is MDM? Find out here

     

    MFA (Multi-Factor Authentification)

    There’s a reason why demand for MFA solutions is increasing

     

    Secure Email

    Make sure all your emails are sent securely — read about our solution here

     

    IT Security Certification

    Turn compliance into a competitive advantage

  • NGO PROGRAMme


    NGO Programme – Overview

    Get an overview of our entire NGO Program

    Read more →

    Customize your IT support

    Build your own solution with pre-paid hours or a subscription. No surprises, no long-term commitment.

    Read more →

    IT Security Quiz

    Take our IT security quiz and test your cybersecurity knowledge

    Read more →

    Discounts and donations


    Hardware discounts

    Every penny you save on hardware is a penny more for your cause.

    Read more →

    Benefit Program for NGOs

    From Microsoft donations to affordable hardware. Get the most out of your IT budget so you can dedicate more resources to your mission.

    Read more →

    Get in touch personally

    Want to hear more about our NGO Program? Click the link and speak with an experienced NGO consultant.

    Read more →

    IT Security

    With current geopolitical instability, you cannot compromise on your IT security. We have the solution for those who want peace of mind.

    Read more →

  • Hardware
  • About us

    About Us


    Opening hours

    Monday to Thursday 8:30 – 16:30
    Friday 8:30 – 16:00

    Careers at SOLID IT

    Find our open positions here

    Read more →

    About SOLID IT

    We are a team of specialists

    Read more →

    Contact


    Get in touch

    Do you need to speak with a specialist or supporter

    Contact us here→

    ISAE3000 declaration

    Documentation that we handle your data compliantly

    Read more →

    NGO Programme

    We give back to those who make a difference. Benefit program, discounts, and flexible support solutions.

    Read more →

    IT Security

    With current geopolitical instability, you cannot compromise on your IT security. We have the solution for those who want peace of mind.

    Læs mere →

  • Quick Support
  • en
  • da
Forside » NGO Programme » IT Security Quiz » Quiz

IT Security Quiz

Question 1 of 25

4% completed
What is the primary purpose of a strong password?

Correct!

A strong password is your first line of defense against data breaches. For an NGO, a compromised password can mean leaked donor information, confidential project data, or even risks to staff working in vulnerable areas. Invest the extra seconds in creating a unique, complex password — it can save you from a costly and embarrassing data breach that could damage both your reputation and your donors’ trust.

The correct answer is: To prevent unauthorized access to your accounts and data

A strong password is your first line of defense against data breaches. For an NGO, a compromised password can mean leaked donor information, confidential project data, or even risks to staff working in vulnerable areas. Invest the extra seconds in creating a unique, complex password — it can save you from a costly and embarrassing data breach that could damage both your reputation and your donors’ trust.

You receive an email that appears to be from your bank, asking you to click a link and confirm your login details. What is this type of scam called?

Correct!

Phishing attacks pose a particular threat to NGOs, as you often handle both donor funds and sensitive information about vulnerable groups. Cybercriminals know that NGOs frequently have less IT support and training than commercial businesses. Be especially cautious with emails pretending to be from banks, donors, or partners. Always verify through another channel (phone or a separate email) before sharing login details or transferring funds.

The correct answer is: Phishing — an attempt to steal personal information

Phishing attacks pose a particular threat to NGOs, as you often handle both donor funds and sensitive information about vulnerable groups. Cybercriminals know that NGOs frequently have less IT support and training than commercial businesses. Be especially cautious with emails pretending to be from banks, donors, or partners. Always verify through another channel (phone or a separate email) before sharing login details or transferring funds.

What is the best way to protect your office’s wireless network?

Correct!

An unsecured Wi-Fi network is like leaving your office door wide open. For NGOs that often handle sensitive data about vulnerable groups or confidential projects, WPA3 encryption is essential. It ensures that even if someone parks outside your office with a laptop, they can’t intercept your communications. Also consider option c) as an additional security layer — a guest network keeps visitors away from your internal systems.

The correct answer is: Using the newest and strongest encryption protocol (e.g., WPA3)

An unsecured Wi-Fi network is like leaving your office door wide open. For NGOs that often handle sensitive data about vulnerable groups or confidential projects, WPA3 encryption is essential. It ensures that even if someone parks outside your office with a laptop, they can’t intercept your communications. Also consider option c) as an additional security layer — a guest network keeps visitors away from your internal systems.

What is two-factor authentication (2FA)?

Correct!

For NGOs, 2FA is critical protection for both financial accounts and communication channels. Even if a hacker steals a password (through phishing or a data breach), they still can’t get in without the second factor. Microsoft and Google offer free 2FA for nonprofits. Yes, it takes an extra 30 seconds to log in, but it can prevent project funds from being stolen or confidential information about partners in high-risk areas from being leaked.

The correct answer is: A security process where you use two different verification methods (e.g., a password and a code from your phone)

For NGOs, 2FA is critical protection for both financial accounts and communication channels. Even if a hacker steals a password (through phishing or a data breach), they still can’t get in without the second factor. Microsoft and Google offer free 2FA for nonprofits. Yes, it takes an extra 30 seconds to log in, but it can prevent project funds from being stolen or confidential information about partners in high-risk areas from being leaked.

What is the biggest risk when using public Wi-Fi networks?

Correct!

When employees check email from a café or airport, hackers can ‘listen in’ on the traffic. For NGOs, this means the risk of exposing donor correspondence, confidential evaluation reports, or even login details for your bank account. The solution? Always use a VPN connection on public networks, or wait to work with sensitive information until you’re back on a secure network. A VPN typically costs 50–100 DKK per user per month — a small price to protect your mission.

The correct answer is: Others may be able to intercept your data and passwords

When employees check email from a café or airport, hackers can ‘listen in’ on the traffic. For NGOs, this means the risk of exposing donor correspondence, confidential evaluation reports, or even login details for your bank account. The solution? Always use a VPN connection on public networks, or wait to work with sensitive information until you’re back on a secure network. A VPN typically costs 50–100 DKK per user per month — a small price to protect your mission.

What is ransomware?

Correct!

Ransomware is a nightmare for NGOs: all your project documents, donor databases, and annual reports suddenly become inaccessible, and criminals often demand thousands of dollars to unlock them again. NGOs are especially vulnerable because they often have older computers and limited resources for professional IT security. Prevention is everything: daily backups, updated antivirus, and employee training. Remember: even if you pay, there is no guarantee you’ll get your data back.

The correct answer is: A type of malware that encrypts your files and demands ransom to unlock them

Ransomware is a nightmare for NGOs: all your project documents, donor databases, and annual reports suddenly become inaccessible, and criminals often demand thousands of dollars to unlock them again. NGOs are especially vulnerable because they often have older computers and limited resources for professional IT security. Prevention is everything: daily backups, updated antivirus, and employee training. Remember: even if you pay, there is no guarantee you’ll get your data back.

A person follows right behind a colleague through a secure door without using their own access card. What is this security breach called?

Correct!

For NGOs working with sensitive topics or in conflict areas, physical security is just as important as digital security. Tailgating may seem harmless — “I’m just helping a colleague carrying something” — but it can allow unauthorized individuals to access your office. This can result in stolen computers containing donor data, installed listening devices, or worse. Create a culture where everyone uses their own access card, and where it’s acceptable to ask unfamiliar individuals for identification.

The correct answer is: Tailgating — following someone closely through a secured entry

For NGOs working with sensitive topics or in conflict areas, physical security is just as important as digital security. Tailgating may seem harmless — “I’m just helping a colleague with heavy boxes” — but it can allow unauthorized individuals to access your office. This can result in stolen computers containing donor data, installed listening devices, or worse. Create a culture where everyone uses their own access card, and where it’s acceptable to ask unfamiliar individuals for identification.

Why is it important to update software and applications regularly?

Correct!

Every month, new security vulnerabilities are discovered in popular software. Hackers automatically scan the internet for computers that lack the latest updates — it’s like leaving a window open with a sign saying “Come in here.” For NGOs with limited IT resources: enable automatic updates on all critical software. Yes, restarts during the workday can be annoying, but it’s far better than explaining to donors why their credit card information has been stolen.

The correct answer is: To close known security vulnerabilities that hackers can exploit

Every month, new security vulnerabilities are discovered in popular software. Hackers automatically scan the internet for computers that lack the latest updates — it’s like leaving a window open with a sign saying “Come in here.” For NGOs with limited IT resources: enable automatic updates on all critical software. Yes, restarts during the workday can be annoying, but it’s still better than explaining to donors why their credit card information has been stolen.

What is the safest way to dispose of paper documents containing sensitive information?

Correct!

NGOs often handle extremely sensitive documents: applications containing personal stories, lists of local partners in authoritarian countries, or internal evaluations. “Dumpster diving” — searching through trash — is a real threat. A good cross-cut shredder costs 1,000–2,000 DKK and makes documents virtually impossible to reconstruct. For highly sensitive documents, mix the shredded pieces with water before disposal. It may sound paranoid, but for some NGOs, it can protect lives.

The correct answer is: Using a cross-cut (confetti-cut) paper shredder

NGOs often handle extremely sensitive documents: applications containing personal stories, lists of local partners in authoritarian countries, or internal evaluations. “Dumpster diving” — searching through trash — is a real threat. A good cross-cut shredder costs 1,000–2,000 DKK and makes documents virtually impossible to reconstruct. For highly sensitive documents, mix the shredded pieces with water before disposal. It may sound paranoid, but for some NGOs, it can protect lives.

You receive an SMS from an unknown number claiming you’ve won a prize and asking you to click a link. What is this an example of?

Correct!

Smishing attacks are increasing rapidly because people are less cautious with SMS than with email. For NGO staff who are often on the move and checking messages quickly between meetings, the risk is high. Scammers pose as delivery services, banks, or even colleagues in distress. Rule of thumb: legitimate organizations rarely send links via SMS. If you receive a message about account issues or deliveries, go directly to the official website or app — never through the link in the SMS.

The correct answer is: Smishing — fraud via SMS

Smishing attacks are increasing rapidly because people are less cautious with SMS than with email. For NGO staff who are often on the move and checking messages quickly between meetings, the risk is high. Scammers pose as delivery services, banks, or even colleagues in distress. Rule of thumb: legitimate organizations rarely send links via SMS. If you receive a message about account issues or deliveries, go directly to the official website or app — never through the link in the SMS.

What is a ‘Trojan horse’ in IT security?

Correct!

Just like the original Trojan horse, this type of malware disguises itself as something harmless — perhaps a free accounting tool for NGOs or a document from a “donor.” Once installed, it can steal passwords, monitor keystrokes, or give hackers remote access. NGOs are particularly vulnerable because you often download free software to save money. Be extremely cautious with software that doesn’t come from official sources, and always scan downloads with antivirus first.

The correct answer is: Malicious software disguised as a legitimate program

Just like the original Trojan horse, this type of malware disguises itself as something harmless — perhaps a free accounting tool for NGOs or a document from a “donor.” Once installed, it can steal passwords, monitor keystrokes, or give hackers remote access. NGOs are particularly vulnerable because you often download free software to save money. Be extremely cautious with software that doesn’t come from official sources, and always scan downloads with antivirus first.

What does ‘encryption’ mean?

Correct!

For NGOs, encryption is often the difference between a minor incident and a disaster. If an employee’s laptop containing field reports is stolen, encryption ensures that the thief cannot read the contents — which can protect sources, partners, and aid recipients. Modern computers often have built-in encryption (BitLocker on Windows, FileVault on Mac) — make sure it’s enabled. For particularly sensitive files, use additional encryption. It’s like having both a lock on the door and a safe inside.

The correct answer is: Transforming data into unreadable code to protect it from unauthorized access

For NGOs, encryption is often the difference between a minor incident and a disaster. If an employee’s laptop containing field reports is stolen, encryption ensures that the thief cannot read the contents — which can protect sources, partners, and aid recipients. Modern computers often have built-in encryption (BitLocker on Windows, FileVault on Mac) — make sure it’s enabled. For particularly sensitive files, use additional encryption. It’s like having both a lock on the door and a safe inside.

What is the biggest danger of ‘shoulder surfing’?

Correct!

In open office environments, cafés, or on planes, shoulder surfing is a real threat. For NGO staff working with confidential donor information or sensitive project data, a curious glance can lead to leaked information. Solutions: use privacy screen filters on laptops (200–300 DKK), sit with your back to a wall in public places, and wait to open sensitive documents until you are in a secure location. Also learn to recognize the signs — repeated “accidental” interruptions can be deliberate attempts.

The correct answer is: Someone looking over your shoulder to steal passwords or sensitive information

In open office environments, cafés, or on planes, shoulder surfing is a real threat. For NGO staff working with confidential donor information or sensitive project data, a curious glance can lead to leaked information. Solutions: use privacy screen filters on laptops (200–300 DKK), sit with your back to a wall in public places, and wait to open sensitive documents until you are in a secure location. Also learn to recognize the signs — repeated “accidental” interruptions can be deliberate attempts.

What is a firewall?

Correct!

Think of a firewall as your digital gatekeeper. It monitors all traffic going in and out of your network and blocks suspicious activity. For NGOs, this is critical: it can stop hackers from accessing donor databases, prevent malware from sending out confidential information, and block phishing attempts. Most modern routers have a built-in firewall, but make sure it’s enabled and properly configured — otherwise it’s like having a security guard who’s asleep on the job.

The correct answer is: A security barrier that monitors and controls network traffic

Think of a firewall as your digital gatekeeper. It monitors all traffic going in and out of your network and blocks suspicious activity. For NGOs, this is critical: it can stop hackers from accessing donor databases, prevent malware from sending out confidential information, and block phishing attempts. Most modern routers have a built-in firewall, but make sure it’s enabled and properly configured — otherwise it’s like having a security guard who’s asleep on the job.

What makes ‘whaling’ different from regular phishing?

Correct!

Whaling attacks target NGO leaders and board members with sophisticated, highly personalized messages. Scammers research your organization, know the names of projects and donors, and craft convincing scenarios — for example, “urgent wire transfer for emergency relief.” These attacks are especially dangerous for NGOs because they often result in major financial losses or leaked strategic information. Always establish verification procedures for money transfers and sensitive decisions — no genuine partner will be offended by a confirmation call.

The correct answer is: It is specifically targeted at high-profile individuals such as directors or board members

Whaling attacks target NGO leaders and board members with sophisticated, highly personalized messages. Scammers research your organization, know the names of projects and donors, and craft convincing scenarios — for example, “urgent wire transfer for emergency relief.” These attacks are especially dangerous for NGOs because they often result in major financial losses or leaked strategic information. Always establish verification procedures for money transfers and sensitive decisions — no genuine partner will be offended by a confirmation call.

Why is it a bad idea to reuse the same password across multiple services?

Correct!

Data breaches happen constantly — even large companies get hacked. If you use the same password for your email, bank, and donor database, a single breach can give criminals access to everything. For NGOs, this can mean stolen project funds, leaked donor information, or compromised social media accounts spreading misinformation. The solution: use a password manager (many offer NGO discounts). It may feel inconvenient at first, but it’s like having one secure keychain instead of the same key for every door.

The correct answer is: If one service is hacked, attackers can gain access to all your other accounts

Data breaches happen constantly — even large companies get hacked. If you use the same password for your email, bank, and donor database, a single breach can give criminals access to everything. For NGOs, this can mean stolen project funds, leaked donor information, or compromised social media accounts spreading misinformation. The solution: use a password manager (many offer NGO discounts). It may feel inconvenient at first, but it’s like having one secure keychain instead of the same key for every door.

What is the best method for backing up important data?

Correct!

For NGOs, data is often irreplaceable: years of project reports, donor history, documentation of your impact. The best backup strategy follows the 3-2-1 rule: 3 copies of your data, on 2 different types of media, with 1 stored offsite. Cloud backup is ideal for NGOs — it’s automatic, secure, and often inexpensive (Microsoft and Google offer nonprofit discounts). Remember: a backup that hasn’t been tested isn’t a backup. Regularly try restoring files to ensure the system works.

The correct answer is: Using an automated cloud service or an external hard drive stored in a secure location

For NGOs, data is often irreplaceable: years of project reports, donor history, documentation of your impact. The best backup strategy follows the 3-2-1 rule: 3 copies of your data, on 2 different types of media, with 1 stored offsite. Cloud backup is ideal for NGOs — it’s automatic, secure, and often inexpensive (Microsoft and Google offer nonprofit discounts). Remember: a backup that hasn’t been tested isn’t a backup. Regularly try restoring files to ensure the system works.

What is ‘social engineering’?

Correct!

Social engineering exploits human helpfulness and trust — qualities that are especially strong in NGO cultures. A scammer may call and pretend to be IT support, a donor in trouble, or a partner organization. They often create artificial time pressure: “The server is about to crash, I need your password NOW!” For NGOs: establish clear procedures. Real IT support will never ask for passwords over the phone. If in doubt: hang up and call back using a known number. Better to seem paranoid than to be deceived.

The correct answer is: Psychological manipulation to trick people into revealing sensitive information

Social engineering exploits human helpfulness and trust — qualities that are especially strong in NGO cultures. A scammer may call and pretend to be IT support, a donor in trouble, or a partner organization. They often create artificial time pressure: “The server is about to crash, I need your password NOW!” For NGOs: establish clear procedures. Real IT support will never ask for passwords over the phone. If in doubt: hang up and call back using a known number. Better to seem paranoid than to be deceived.

What is the biggest risk of allowing employees to use their personal devices (BYOD) for work without clear guidelines?

Correct!

BYOD (Bring Your Own Device) is often necessary for NGOs with tight budgets, but without clear guidelines it’s a security disaster waiting to happen. Personal phones may not have a password, updated software, or encryption. If an employee’s phone with work email is stolen on the bus, the thief could potentially gain access to the entire organization. Minimum requirements: devices must have a password/biometrics, an automatic lock screen, and remote wipe capability. Consider MDM software (Mobile Device Management) to enforce these standards.

The correct answer is: It can create security risks if the devices are not protected or get stolen

BYOD (Bring Your Own Device) is often necessary for NGOs with tight budgets, but without clear guidelines it’s a security disaster waiting to happen. Personal phones may not have a password, updated software, or encryption. If an employee’s phone with work email is stolen on the bus, the thief could potentially gain access to the entire organization. Minimum requirements: devices must have a password/biometrics, an automatic lock screen, and remote wipe capability. Consider MDM software (Mobile Device Management) to enforce these standards.

You find a USB stick in the parking lot outside the office. What should you do?

Correct!

A “lost” USB stick can be a targeted attack — hackers know that NGOs often operate on tight budgets and may be tempted by “free” hardware. Once plugged in, it can automatically install malware that steals passwords, encrypts files for ransom, or gives hackers remote access. This tactic has been used against human rights organizations around the world. Always treat found USB sticks as potential threats. Your IT administrator has the tools to examine it safely or dispose of it securely.

The correct answer is: Hand it over to the IT administrator without plugging it into any computer

A “lost” USB stick can be a targeted attack — hackers know that NGOs often operate on tight budgets and may be tempted by “free” hardware. Once plugged in, it can automatically install malware that steals passwords, encrypts files for ransom, or gives hackers remote access. This tactic has been used against human rights organizations around the world. Always treat found USB sticks as potential threats. Your IT administrator has the tools to examine it safely or dispose of it securely.

What does ‘data confidentiality’ mean in the CIA triad of information security?

Correct!

For NGOs, confidentiality is often about protecting vulnerable people. Lists of local partners in authoritarian regimes, personal data of asylum seekers, or whistleblower information can put lives at risk if they fall into the wrong hands. Confidentiality is ensured through: access control (who can see what), encryption (data unreadable to outsiders), and the “need-to-know” principle (staff only access what is necessary). Remember: a data breach can destroy the trust you’ve spent years building.

The correct answer is: Ensuring that data is only accessible to authorized individuals

For NGOs, confidentiality is often about protecting vulnerable people. Lists of local partners in authoritarian regimes, personal data of asylum seekers, or whistleblower information can put lives at risk if they fall into the wrong hands. Confidentiality is ensured through: access control (who can see what), encryption (data unreadable to outsiders), and the “need-to-know” principle (staff only access what is necessary). Remember: a data breach can destroy the trust you’ve spent years building.

What is the most common way malware spreads?

Correct!

Over 90% of successful cyberattacks start with a phishing email. For NGOs, these often appear disguised as donor reports, project proposals, invoices, or urgent requests related to humanitarian aid. Malware may be hidden inside seemingly harmless Word documents or PDFs. Train staff to recognize suspicious emails: unexpected senders, grammar mistakes, urgent language, or requests to “enable macros.” When in doubt: verify through another channel before opening any attachments.

The correct answer is: Via attachments or links in phishing emails

Over 90% of successful cyberattacks start with a phishing email. For NGOs, these often appear disguised as donor reports, project proposals, invoices, or urgent requests related to humanitarian aid. Malware can be hidden inside seemingly harmless Word documents or PDFs. Train staff to recognize suspicious emails: unexpected senders, grammar mistakes, urgent language, or requests to “enable macros.” When in doubt: verify through another channel before opening attachments.

What is the purpose of a ‘clean desk policy’?

Correct!

For NGOs with open offices, volunteers coming and going, and visits from partner organizations, a clean desk policy is critical. Donor contracts, personnel files, or lists of aid recipients should not be left out where anyone can see them. It’s not just about external threats — it also helps protect confidentiality internally. Simple rules: lock away sensitive documents after hours, flip papers over when leaving your desk, and use lockable drawers for ongoing cases.

The correct answer is: Preventing unauthorized access to sensitive information left out in the open

For NGOs with open offices, volunteers coming and going, and visitors from partner organizations, a clean desk policy is critical. Donor contracts, personnel files, or lists of aid recipients should not be left out where anyone can see them. It’s not just about external threats — it also protects confidentiality internally. Simple rules: lock away sensitive documents after working hours, turn papers over when leaving your desk, and use lockable drawers for ongoing cases.

Which of the following is an example of a strong password?

Correct!

A strong password should be long, unique, and difficult to guess — even for someone who knows you. Avoid organization names, project titles, or years, as hackers can easily research these on your website. “BlueHorse#Sunshine!7k” works because it combines unrelated words with symbols and numbers in a way that’s easy to remember but hard to crack. For NGOs: consider using a password manager (many offer nonprofit discounts) so staff can use unique, strong passwords without having to remember them all.

The correct answer is: BlueHorse#Sunshine!7k (random words + symbols + numbers)

A strong password should be long, unique, and difficult to guess — even for someone who knows you. Avoid organization names, project titles, or years, as hackers can easily research these on your website. “BlueHorse#Sunshine!7k” works because it combines unrelated words with symbols and numbers in a way that’s easy to remember but hard to crack. For NGOs: consider using a password manager (many offer nonprofit discounts) so staff can have unique, strong passwords without needing to remember them all.

What is the first thing you should do if you suspect your work account has been compromised?

Correct!

Time is critical when an account is compromised. For NGOs, any delay can mean: stolen donor funds, leaked information about vulnerable groups, or misuse of your communication channels for fraud. Take action: 1) Change your password immediately, 2) Notify IT/management, 3) Check for suspicious activity (sent emails, changed settings), 4) Enable two-factor authentication if not already active, 5) Change passwords on other accounts if the same one was reused. Remember: being hacked isn’t embarrassing — failing to react quickly is.

The correct answer is: Immediately change your password and notify your IT administrator

Time is critical when an account is compromised. For NGOs, any delay can mean: stolen donor funds, leaked information about vulnerable groups, or misuse of your communication channels for fraud. Take action: 1) Change your password immediately, 2) Notify IT/management, 3) Check for suspicious activity (sent emails, changed settings), 4) Enable two-factor authentication if not already enabled, 5) Change passwords on other accounts if the same one was reused. Remember: being hacked isn’t embarrassing — failing to react quickly is.

Almost there! Get your personal recommendations

  • Your personal security score
  • 3–5 concrete improvement suggestions
  • Option for a free consultation
Accept privacy policy(Required)
This field is hidden when viewing the form
Please enter a number from 1 to 100.
Used for administrative purposes. Does not show on the front end.
Solid IT

Glostrup Department
SOLID IT P/S
Naverland 2
2600 Glostrup

Support:
Tlf. 7025 6005
E-mail: support@solidit.dk

Opening hours
Mandag – Torsdag 8:30 – 16:30
Fredag 8:30 – 16:00

CVR: 37034827

Services

  • IT department on subscription
  • Microsoft
  • Microsoft Licences
  • Solid IT Consultancy Services
  • NGO Programme
  • Hardware
  • Free licence check
  • Get 30 minutes of free support

Learn about IT Security

  • Awareness training in IT security
  • Antivirus: Protect your business from malware
  • Backup and Data recovery: Protecting the future of your business
  • Encryption: Data protection and data security
  • Phishing: Protect your business from fake emails
  • Cybersecurity for small businesses
  • Mobile Device Management (MDM)
  • Secure Email: Take control of every aspect of email security for your business
  • IT security certifications
  • IT security consultants

About SOLID IT

  • About us
  • Jobs at SOLID IT
  • Contact us
  • English
  • Dansk

© 2025 · All rights reserved by SOLID IT P/S

  • Cookie policy
  • Privacy policy
  • ISAE3000 declaration
  • Data processing
  • Terms of business
Administrer samtykke
For at give dig de bedste oplevelser bruger vi teknologier som cookies til at gemme og/eller få adgang til enhedsoplysninger. Hvis du giver dit samtykke til disse teknologier, kan vi behandle data som f.eks. browsingadfærd eller unikke ID'er på dette websted. Hvis du ikke giver dit samtykke eller trækker dit samtykke tilbage, kan det have en negativ indvirkning på visse funktioner og egenskaber.
Funktionsdygtig Always active
Den tekniske lagring eller adgang er strengt nødvendig med det legitime formål at muliggøre brugen af en specifik tjeneste, som abonnenten eller brugeren udtrykkeligt har anmodet om, eller udelukkende med det formål at overføre en kommunikation via et elektronisk kommunikationsnet.
Præferencer
Den tekniske lagring eller adgang er nødvendig for det legitime formål at lagre præferencer, som abonnenten eller brugeren ikke har anmodet om.
Statistikker
Den tekniske lagring eller adgang, der udelukkende anvendes til statistiske formål. Den tekniske lagring eller adgang, der udelukkende anvendes til anonyme statistiske formål. Uden en stævning, frivillig overholdelse fra din internetudbyders side eller yderligere optegnelser fra en tredjepart kan oplysninger, der er gemt eller hentet til dette formål alene, normalt ikke bruges til at identificere dig.
Marketing
Den tekniske lagring eller adgang er nødvendig for at oprette brugerprofiler med henblik på at sende reklamer eller for at spore brugeren på et websted eller på tværs af flere websteder med henblik på lignende markedsføringsformål.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
Se præferencer
  • {title}
  • {title}
  • {title}