ETFOptimize | High-performance ETF-based Investment Strategies

Quantitative strategies, Wall Street-caliber research, and insightful market analysis since 1998.


ETFOptimize | HOME
Close Window

5 ways IT admins can improve password management and security

(BPT) - If you're an IT administrator, you know how difficult it is to get employees to create and remember strong, unique passwords for business accounts and technology. Often, users will fall into common habits like using short, easy-to-guess passwords or passwords they've already used in other accounts.

Users who do not follow password security best practices leave themselves and the company open to a data breach. To help employees create stronger passwords, protect company assets and make things easier on themselves, IT admins should consider these five password management and security tips.

1. Design a password policy

By creating a detailed password policy that all employees must follow, you can limit access to and protect your company's resources. For example, you can require that users use long, complex passwords.

Employees will likely be familiar with this requirement, as many websites require a minimum character length, which is generally six characters long. However, longer is better. According to Scientific American, a 12-character password takes 62 trillion times longer to crack than a standard 6-character one.

Also, don't allow users to include personal information in their passwords. While it's easier to remember dates of important life events, names of pets and children, birthplaces and other words based on personal information, these clues are easy for hackers to find on social media and public records.

2. Avoid password fatigue

Password rotation is a common practice in password management and security. By requiring employees to change passwords every few months, it would seem to help you stay one step ahead of potential hackers.

However, frequent password changes can lead to password fatigue, meaning that users are more likely to use simple passwords that aren't secure enough. Also, according to a survey conducted by the Ponemon Institute, 51% of people rotate the same five passwords across their work and personal accounts, leaving them and the company vulnerable to data breaches.

3. Use a password manager

Consider using a password manager to help you and other employees create strong passwords and store them securely. There are many password managers, but they're not all created equal. In fact, a recent data breach of LastPass has made some wary of using a cloud-based password manager. However, by using a program like JumpCloud, IT admins and users can feel secure about passwords and data safety.

JumpCloud uses a hybrid approach that uses a decentralized architecture that stores enterprise vaults locally on users' devices. It also syncs users' vaults to multiple devices with end-to-end encryption on the cloud, offering the best of both worlds. To learn more, visit JumpCloud.com.

4. Check a password dictionary

Many fraudsters use a password dictionary to crack account security by sheer brute force. When employees use dictionary words in their passwords, such as using three short words together, hackers can easily use an algorithm to try different combinations of words until they crack the code.

Have employees check their passwords against a password dictionary so they can avoid using common words, and refer them to sites such as haveibeenpwned.com. If they must use dictionary words, implement guidelines that require they use four or five dictionary words with a mix of other characters. For example, "cloud.novella-candlestick.backpack" is a strong password.

5. Require multi-factor authentication

Many electronics and other technologies now require multi-factor authentication (MFA). Users may have MFA enabled on their phones, tablets and computers, which require them to use their fingerprint, enter a code, or another secondary form of identification in addition to a password. When paired with a strong password, MFA makes it more difficult for the wrong person to access company data.

Password management and security doesn't have to be a headache or time-consuming. Using these five tips will save you time and help users become more invested in a company's security.

Data & News supplied by www.cloudquote.io
Stock quotes supplied by Barchart
Quotes delayed at least 20 minutes.
By accessing this page, you agree to the following
Privacy Policy and Terms and Conditions.


 

IntelligentValue Home
Close Window

DISCLAIMER

All content herein is issued solely for informational purposes and is not to be construed as an offer to sell or the solicitation of an offer to buy, nor should it be interpreted as a recommendation to buy, hold or sell (short or otherwise) any security.  All opinions, analyses, and information included herein are based on sources believed to be reliable, but no representation or warranty of any kind, expressed or implied, is made including but not limited to any representation or warranty concerning accuracy, completeness, correctness, timeliness or appropriateness. We undertake no obligation to update such opinions, analysis or information. You should independently verify all information contained on this website. Some information is based on analysis of past performance or hypothetical performance results, which have inherent limitations. We make no representation that any particular equity or strategy will or is likely to achieve profits or losses similar to those shown. Shareholders, employees, writers, contractors, and affiliates associated with ETFOptimize.com may have ownership positions in the securities that are mentioned. If you are not sure if ETFs, algorithmic investing, or a particular investment is right for you, you are urged to consult with a Registered Investment Advisor (RIA). Neither this website nor anyone associated with producing its content are Registered Investment Advisors, and no attempt is made herein to substitute for personalized, professional investment advice. Neither ETFOptimize.com, Global Alpha Investments, Inc., nor its employees, service providers, associates, or affiliates are responsible for any investment losses you may incur as a result of using the information provided herein. Remember that past investment returns may not be indicative of future returns.

Copyright © 1998-2017 ETFOptimize.com, a publication of Optimized Investments, Inc. All rights reserved.