Microsoft 365
4 areas covered
- MFA and administrator controls for staff accounts
- SharePoint and OneDrive access reviewed by program
- Managed endpoint protection on supported devices
- Staff and volunteer access removed through offboarding

Nonprofits may hold donor, staff, volunteer, program, and participant information in the same cloud tenant.
Security Stack
Not every nonprofit holds the same data or faces the same consequences. The program starts with the accounts, devices, sharing, and recovery needs inside the agreed scope.
Identity
Multi-factor authentication, administrator controls, and sign-in monitoring reduce the reach of stolen credentials. Named accounts make access easier to review and remove when a role ends.
Email controls filter common account-takeover, fake-invoice, and impersonation attempts. Suspicious activity follows the agreed response process.
Devices
Managed endpoint protection, encryption, and security updates apply to supported staff devices placed in the program. Personal or partner devices remain outside endpoint coverage unless enrolled.
Sharing
Shared drives, SharePoint sites, guest access, and external links are reviewed around the teams and programs that use them. Access is removed when a staff or volunteer role ends.
Recovery
Microsoft 365 or Google Workspace data is backed up outside the tenant and tested for recovery. Donor, case-management, fundraising, grant, and program systems need separate recovery decisions.
People
Short training and safe phishing simulations help staff and volunteers recognize common lures. Awareness training is included for nonprofits without a separate training fee.
Business Value
The organization gets clearer access, protected cloud accounts and devices, a recovery plan for tenant data, and records that leaders can use in board, funder, or insurance discussions.
The organization remains responsible for privacy, safeguarding, funder, contractual, and records decisions. Teclara operates and documents the security controls in scope. Donor, case-management, fundraising, grant, program, and partner systems are included only when named explicitly, and personal devices are covered only when enrolled.
Managed Security & Compliance covers the full stack: monitoring, endpoint protection, email security, backup, patching, and platform administration on Microsoft 365 or Google Workspace.
Platform Expertise
We configure the identity, sharing, email, and retention controls your organization relies on, then keep them under review.
4 areas covered
4 areas covered
Included
Configuration updates are part of the service. When our security baseline changes, your environment is updated without a separate project fee.
Scope and pricing follow the supported users, devices, and systems placed in the program. We identify the controls that matter for the information and work involved, then make the inclusions and exclusions explicit. Awareness training is included for nonprofits without a separate training fee.
The program can protect accounts, email, files, sharing, and supported devices in Microsoft 365 or Google Workspace. Donor, case-management, fundraising, grant, program, and partner systems require separate scoping because they may sit outside the cloud tenant.
Yes. Work can include administrator and sign-in controls, Gmail protection, shared-drive permissions, external sharing review, supported devices, independent backup, monitoring, and staff or volunteer offboarding. Available controls depend on Workspace licensing and the systems placed in scope.
Account controls can follow users outside the office. Managed endpoint protection applies only to supported devices that are enrolled, while personal or partner devices remain outside endpoint coverage. The organization decides which roles and devices must meet each access rule.
Reporting can include sign-in and access records, backup and restore evidence, patching and vulnerability status, alert response records, and written control descriptions. The organization remains responsible for its board, funder, audit, privacy, and safeguarding conclusions.
Managed Security & Compliance covers the agreed security controls, monitoring, endpoint protection, cloud backup, patching, awareness training, and tenant security configuration. General helpdesk, device procurement, routine user support, and full day-to-day technology administration are included only with Managed IT, which is built on the security program.
Client Feedback
“Wadhah at Teclara is amazing.”
M.C.
Chief Executive Officer, Education Non-Profit

Led by Wadhah Hussain, Teclara's founder
20+ years enterprise IT · Big Four alumnus · Microsoft & Google Cloud specialist
We review sign-ins, administrator access, mail flow, device coverage, sharing, and backup in your Microsoft 365 or Google Workspace environment. You receive written findings and priorities, including stale volunteer accounts and external links.