How frequently should I have my users change their password? I get this question a lot lately. Industry standard is going toward more of a passphrase, or a longer password with less frequent changes instead of the standard 30/45/60/90 day change intervals. I am seeing clients go with 14, 15 character passwords instead of the standard 8 characters and then increasing the change interval to once or twice a year instead. The theory behind this is the user will generate a strong passphrase they can remember and won't be as apt to write it down.
https://achubbard.com
/ achsysadmin
/ @thecybersecuritymindset
/ ach_sysadmin
#vciso #passwords #authentication #cybersecurity #cyberhygiene #cybersecurityawareness #cybersecuritydefinitions #achubbard #achsysadmin #ciso #security #it #sysadmin #systemadministration #systemadmin #itsecurity #itsec #infosec #informationsecurity