We’re seeing more and more cybersecurity regulations and compliance clauses in the contracts from funding agencies. The second-to-last thing your donors want to hear is that you used their donations to pay fines and penalties. The last thing they want to hear is that you breached their personal information.
And the last places you want to be are in the headlines and an embarrassing board meeting.
We’re seeing more and more cybersecurity regulations and compliance clauses in the contracts from funding agencies. The second-to-last thing your donors want to hear is that you used their donations to pay fines and penalties. The last thing they want to hear is that you breached their personal information.
We know you want to pass regulatory audits, survive incident investigations, know your insurance will pay, and win lawsuits. Or avoid them completely.
Many healthcare non-profits think their HIPAA-only compliance program is enough. They are wrong.
Non-healthcare agencies are also seeing more cyber requirements in regulations, contracts, and grants.
We look at ALL your compliance requirements at once – state laws, credit card requirements, and the requirements hidden in your contracts and cyber insurance policy.
Unlike IT staff and Managed Service Providers, we can help with privacy and confidentiality regulations – some of which conflict with federal regulations.
“Great news! Attached is the letter we received from the OCR saying they are closing our HIPAA case without further action. Mike, thank you so much for your assistance with the response. I can’t tell you how much we appreciate your input that greatly influenced this outcome.”
— Rebecca Stodolak
From national organizations like the ALS Foundation and The Arc to respected regional and local agencies, we've helped non-profit leaders uncover critical cybersecurity and compliance gaps—before they turned into damaging headlines, lost funding, or lawsuits.
Your organization is trusted by donors, partners, and the public. But that trust can evaporate overnight if a data breach or compliance failure exposes sensitive information or violates legal and contractual obligations.
Cybersecurity compliance isn't just an IT issue.
It's a leadership responsibility that affects your funding, your reputation, and your mission.
You are governed by:
Laws and regulations protecting sensitive client, employee, and donor data.
Contracts with state, federal, and private funding sources that include security and privacy clauses
Cyber insurance policies that may not pay if you weren’t compliant when attacked
YOUR MISSION TO HELP PEOPLE - Don't waste valuable time and money dealing with avoidable violations
We’ve seen too many non-profits unknowingly violate one or more of these—putting themselves at risk of public embarrassment, steep fines, and having to explain to donors why their contributions were spent on lawsuits instead of services.
We don’t just ask a few questions and take your word for it.
Like a good doctor, we look under the surface to see what’s really going on. Then we work side-by-side with your compliance officer, IT director, and executive team to:
Review your current cybersecurity posture
Identify cybersecurity and compliance gaps
Provide proven policy templates and checklists
Guide your team in building a defensible, auditable compliance program
Non-profit executives who lead on cybersecurity compliance don’t just avoid problems—they earn the confidence of funders, board members, and donors.
You are the public face of your organization.
Let’s talk confidentially about your risks—and how we can help you reduce them before they become headlines.
Contact us today to schedule a confidential compliance review.
Ready right now to talk about your needs?
Call Rose Ketchum at 888-997-3635 x 202
The most common root cause of penalties is the lack of an accurate and thorough Security Risk Assessment.
You know a good doctor wouldn't treat you by just asking questions. You want one that looks under your skin to see what is really happening.
That's why we look under your organization's 'skin' to evaluate your cybersecurity and compliance.
You Don't Want A HIPAA 1-trick Pony
Confidentially Identify Hidden Risks
Secure Your Data
Protect The People You Serve
Protect Your Workforce Members
Protect Your Donor Relationships
Protect Your Funding Source Relationships
Protect Your Reputation
Protect Your Financial Resources
So You Can Focus On Your Mission
There’s no longer a ‘disaster season’. Records are being set in all categories. Insurance companies are pulling out of disaster-prone states.
Protect your business.
Phone: 888-997-3635
Fax:888-667-7849
Semel Consulting, LLC
6547 Midnight Pass Road #90
Sarasota, Florida
34242
© 2025 Semel Consulting, LLC