Nonprofits get sold enterprise IT at a discount when what they need is something shaped differently. The budget constraint is real, but it is not the main difference. The main differences are donated licensing, a workforce that is often part-time or volunteer, and a board that is accountable for risk without being technical.
Start with what you are entitled to
Most nonprofits are paying for software they could be getting free or heavily discounted, and most do not know it.
- Microsoft grants. Eligible nonprofits can receive a substantial allocation of donated Microsoft 365 licences, with discounts on additional seats. This is the single largest cost saving available to most organisations and it is routinely unclaimed.
- Google for Nonprofits. Comparable programme if you are on Workspace.
- TechSoup. A clearing house for donated and discounted software from many vendors, including security tooling.
- Vendor nonprofit pricing. Many security and backup vendors have unpublished nonprofit rates. Ask.
Any provider proposing managed IT for a nonprofit should raise this in the first conversation. If they quote you commercial licensing without asking about eligibility, they either do not know the programmes or are marking them up.
What a nonprofit actually needs from managed IT
Strip out the enterprise features nobody will use and the core is fairly short.
- A help desk your staff will actually call. Part-time and volunteer staff will not raise tickets in a portal. Phone and email matter more here than in commercial environments.
- Identity security. Multi-factor authentication everywhere, and a clean joiner-leaver process. High turnover and volunteer access make stale accounts the standard finding.
- Email security. Nonprofits are heavily targeted by payment fraud and impersonation, particularly around fundraising cycles.
- Backup that has been tested. Donor databases and grant records are irreplaceable and frequently not backed up as well as everyone assumes.
- Predictable cost. A flat monthly figure a finance committee can approve, not variable hourly billing.
The questions boards are now asking
Nonprofit boards have become noticeably more engaged on cyber risk, usually after an insurer, a major funder or a peer organisation’s incident prompted it. The questions tend to be the same four, and they are answerable.
- What would happen to our donor data if we were hit by ransomware?
- Do we meet the requirements on our cyber insurance renewal questionnaire?
- Who has administrative access, and what happens when they leave?
- Are we obliged to report a breach, and to whom?
If your provider cannot help you answer these in writing, that is a gap regardless of how well the help desk performs.
- Claim donated licensing first. It is the largest saving and it is routinely missed.
- Prioritise identity, email security and tested backup over feature breadth.
- Insist on predictable monthly cost your finance committee can approve.
- Be able to answer the board’s four risk questions in writing.
Budgeting realistically
The most common nonprofit IT budgeting mistake is treating technology as a purely administrative cost to be minimised, which produces deferred maintenance that eventually arrives as an emergency during a grant cycle.
A defensible nonprofit IT budget covers six things: recurring support, hardware lifecycle replacement, licensing, security, project work, and a contingency line. Our guide to IT budgeting and planning covers how to build and defend that number.
Comparing providers
Ask every bidder the same five questions, and get the answers in writing:
- Have you handled Microsoft or Google nonprofit grant registration before?
- Is security tooling included in the monthly figure, or additional?
- What is included when a staff member or volunteer joins or leaves?
- Is project work in scope or billed separately?
- Who owns our tenant, domain and backups?
Question two is where most price differences hide. A quote that excludes security is not a cheaper quote, it is a smaller one.
Where IP Consulting fits
We support nonprofits alongside municipalities, utilities and regulated organisations across Virginia and Michigan. Our nonprofit IT services page covers the detail, and an IT assessment is usually the cheapest way to find out what you are entitled to and what you are currently overpaying for.
Frequently asked questions
Can nonprofits get free or discounted Microsoft 365 licences?
Eligible nonprofits can receive a substantial allocation of donated Microsoft 365 licences plus discounts on additional seats, with a comparable programme from Google for Workspace users. TechSoup also distributes donated and discounted software from many vendors. Eligibility is verified per organisation and validation can take several weeks, so start early.
What should a nonprofit look for in managed IT services?
A help desk that part-time and volunteer staff will actually use, strong identity security with a clean joiner-leaver process, email security against payment fraud, backup that has been tested against your donor database, and a predictable monthly cost your finance committee can approve.
How much should a nonprofit budget for IT?
Build the number from what you own rather than from a percentage. A defensible budget covers recurring support, hardware lifecycle replacement, licensing, security, project work and a contingency line. Treating IT purely as an administrative cost to minimise produces deferred maintenance that arrives as an emergency.
What cyber security questions should a nonprofit board be asking?
Four: what happens to donor data in a ransomware incident, whether the organisation meets its cyber insurance renewal requirements, who holds administrative access and what happens when they leave, and whether there is a breach reporting obligation. If your provider cannot help answer these in writing, that is a gap.
Keep exploring
Ready for a clear path forward?
Start with a Navigate Clarity Conversation. A free 30 minute review of where you stand and what to do first.
Start with a Clarity Conversation