This page gathers tools and resources for SJOs and other Civil Society actors to enhance their Digital Resilience
General Tools and Resources
Digital security Handbooks
- This
Cybersecurity Handbook for CSOs
is a comprehensive guide for civil society organisations to develop a cybersecurity plan that is easy to understand and implement. - The
Digital Defenders Partnership
program contributes to enhancing the resilience of Human Rights Defenders (HRDs) by strengthening their digital security. The program’s website gathers several digital security resources including digital protection funds andpublications
such as digital support guides and manuals, and helplines for people facing online gender-based violence.
Digital Security Checklists
- This
Digital Security Checklist for CSOs
is a simplified view of all the digital security issues that CSOs should consider when engaging in advocacy campaigns
Digital Security Helplines
- The Tatua Digital Resilience Centre provides cyber incidence and emergency response to SJOs in East Africa under attack. The support team can be reached via the following Email: support@tatua.digital or Signal/WhatsApp Number: +254 746 751 136
Access Now Digital Security Helpline:
Access Now provides rapid-response emergency assistance to at-risk individuals and organisations under attack. It also supports them to improve their digital security practices and avoid future attacks.
Digital Security Actors Supporting CSOs
- This publication maps
global and regional digital security actors
that support Human Rights Organisations (HROs) through project grants, direct technical assistance, emergency support, digital security training, etc. It also maps global and regional events relevant to the advocacy works of HROs.
Tools and Resources for Incident Response
- The
Civil Society CERT (CiviCERT)
is a Computer Emergency Response Centre supporting civil society and activists under attack. It is a global network of digital security help desks, rapid responders, and infrastructure providers. CiviCERT provides the following other resources:- The
Digital First Aid Kit (DFAK)
is a resource for rapid responders and digital security trainers to provide preliminary support for civil society actors facing the most common digital threats. It can also be used by organisations to protect themselves and the communities they support against these threats. - A mailing list for discussions related to CiviCERT and the Rapid Response Network open to all
- The
Specific Tools and Resources
Digital Security Audits and Assessments
- The
Tatua Digital Resilience Assessment Tool
is a resource for SJOs to review the state of their digital resilience including current technical security and administrative controls in place.
Tools and Resources for Incident Response
- The Tatua DIgital Resilience Centre has a ransomware playbook to guide SJOs on how to effectively respond to ransomware attacks.
Tools and Resources for Trainers
General Training Resources
- The
Security Education Companion
provides resources to improve the privacy and security practices of individuals and organisations including:- Security Education 101 for novice digital security trainers who want to conduct single-day training sessions.
- Lessons for trainers to use during digital security workshops.
- Graphical explainers, GIFs, handouts, activities, and printable documents, to accompany the training lessons.
- The threat modelling approach and building a security plan:
Surveillance Self-defense:
How to build a security plan for yourself.Security Education Companion:
Threat Modeling Activity Handout.OWASP Foundation:
Threat modelling to identify, communicate, and understand threats and mitigation within the context of protecting something of value.
Practical Tools
- Phishing Simulations:
Phishing Quiz with Google
is a phishing simulation built by the Jigsaw unit in Google to enhance the awareness of journalists, activists, and civil society organisations.Shira App
is another phishing exercise that helps users develop the skills needed to identify and defeat phishing attacks on email and messaging apps.