Passwords have a strange dual nature. The stronger and safer the password the more likely it will be undermined by human weakness.
It is widely known that passwords are the most common means of access control. It is also common knowledge that passwords are the easiest way to compromise a system. Passwords have two basic functions. First, they allow initial entry to a system. Next, after access, they grant permission to various levels of information. This access can range from public data to restricted trade secrets and pending patents.
The best passwords are a lengthy and complex mix of upper and lower case letters, numbers and symbols. The tendency for people when using these formats is to write them down, store them on a hand held device, etc. thus destroying the integrity of the password.
The integrity of passwords can be circumvented through "Human Engineering." People can unwittingly make grave errors of judgment in situations that they may view as harmless or even helpful. For example, a password is shared with a forgetful employee and a system can be compromised. In more ominous cases, a con artist or hacker can phone a naďve employee and present themselves as senior executives or help desk personnel and obtain that persons password. People have also been duped by callers claiming emergencies, cajoling or even threatening the employees job if a password is not provided.
These human lapses can be addressed through employee training and written policies that provide solid guidance and procedures in these circumstances. Training in information security, including password protocols, should be mandatory for every employee of the enterprise. Management support of this training and the security policy is critical to its success. To be effective, training should be repetitive with quarterly reviews of the company policy. There can also be frequent reminders, such as banners, about password security that appear during logons.
Management must not only support security measures, they must also provide a written and enforced policy statement. These written policies should be developed with assistance from the I.T. department as well as the human resource and legal departments. Written policies should be a part of the employee's introduction to the company and should be reviewed at least twice a year. It is also critical that the employee sign off on the document indicating that they received, read, and understood its contents. Firms that ignore these practices do so at their own risk.
Enforcement is an important partner to training. A policy that is not enforced is far worse than no policy at all. In fact, haphazard enforcement or lack of enforcement can increase a company's liability in many legal actions. To work, a policy must have "teeth". There should be a range of consequences for lapses whether it is a single event or multiple or flagrant incidents. This can range from a verbal warning all the way to termination.
In summary, passwords can be kept more secure by recognizing the human factor. Through management initiative, communication and training, as well as written and enforced policies and procedures, companies can have more control over their information assets and keep their clients and partners much safer.
About The Author
Terrence F. Doheny
President, Beyond If Solutions,LLC
AP - President-elect Barack Obama named former campaign rival Hillary Rodham Clinton as his secretary of state on Monday, and announced Robert Gates would remain as defense secretary, making President Bush's Pentagon chief his own in the drive to wind down the U.S. role in Iraq.
AP - Barack Obama says the U.S.-Iraq security agreement approved by Iraq's parliament puts the U.S. on a "glide path" toward reducing forces there.
AP - House Speaker Nancy Pelosi is promising Congress will try to have a huge economic recovery bill ready for President-elect Barack Obama as soon as he takes office.
AP - The Thanksgiving shopping weekend may not have been the disaster some had feared, but unprecedented discounts and tempered buying likely resulted in overall soft sales as a buying binge on Friday quickly fizzled. Now, online retailers are ramping up deals to turn skittish shoppers into "Cyber Monday" spenders.
AP - Soldiers removed the last bodies from the shattered Taj Mahal hotel Monday as India formally demanded Pakistan take "strong action" against those behind the 60-hour siege that left at least 172 people dead.
AP - Alaska Gov. Sarah Palin implored Georgia Republicans to back Sen. Saxby Chambliss in his hotly contested Senate runoff, telling a cheering crowd Monday that the first step in rebuilding the GOP begins with the Southern state.
AP - Thanksgiving weekend movie crowds gobbled up the Reese Witherspoon and Vince Vaughn holiday comedy "Four Christmases," which debuted at No. 1 with $31.7 million, according to studio estimates Sunday.
AP - Plaxico Burress arrived at a police station early Monday, where he was expected to be charged after accidentally shooting himself in the right thigh at a Manhattan nightclub.
Reuters - U.S. President-elect Barack Obama on Monday announced his national security team, nominating former rival Hillary Clinton as secretary of state and asking Defense Secretary Robert Gates to stay on in that role.
Reuters - India said on Monday it had called Pakistan's envoy and informed him that deadly attacks in Mumbai were carried out by militants from Pakistan and demanded swift action against those responsible.
Reuters - Thai protesters prepared to end their three-month occupation of the Prime Minister's office on Monday to consolidate their grip on the main airport ahead of a court verdict that could dissolve the elected government.
Reuters - European leaders clashed on Monday over how much public money to spend on battling recession as data showed factories were slashing output in the United States, Europe and China.
Reuters - House of Representatives Speaker Nancy Pelosi met leading governors on Monday to discuss the size and shape of an economic stimulus package she hopes Barack Obama can sign when he becomes president on January 20.
Reuters - Federal authorities arrested the mayor of Birmingham, Alabama, on Monday as part of a corruption probe surrounding the city's sewer bonds.
Reuters - Key retail stocks fell on Monday as investors feared that deep discounts offered by U.S. stores during the year's first holiday shopping weekend could sap profits and would not save a bleak season.
Reuters - A suicide car-bomber killed eight people on Monday in an attack aimed at a military checkpost in northwest Pakistan's Swat Valley, military officials said.
AFP - Barack Obama on Monday nominated his erstwhile political foe Hillary Clinton as his secretary of state, as he rolled out a muscular national security team rich in global political star power.
AFP - India on Monday formally accused "elements" in Pakistan of being behind the devastating Islamic militant attacks in Mumbai and demanded that Islamabad take "strong action".
If you don't have an mp3 player, and even if you do,... Read More
In Windows Xp, you can install two operating systems on the same... Read More
This article describes the basic properties of color, what the relationships are... Read More
The technological horizon has always got something new to offer, and among... Read More
The United States Of America citizen feels that games is a part... Read More
Computers are everywhere, and vary in specification, brands, sizes, shaped, and prices.... Read More
Google, in their march to stay ahead of the pack of competition,... Read More
Getting started with video editing is very simple you only need a... Read More
Perhaps not yet, but the handwriting might be on the wall?How is... Read More
The year is 1981. IBM has just released the Personal Computer; a... Read More
On 21 August 2003 Symantec Security Response upgraded the W32.SOBIG.F threat to... Read More
OK, so you caught a computer virus and your system is all... Read More
Just The Facts, Ma'mPalm pilots are all the rage now. Everyone has... Read More
Freezing is also known as crashing or hanging. It's frustrating. The computer... Read More
If you are a building a website or a forum, chances are... Read More
So you've got some spyware, ad-ware, or viruses on your system. For... Read More
CCNA FAQQ. What exams do I have to take to get my... Read More
As the Web grows more crowded and just plain "noisy" with information... Read More
Saving Lives With A Pocket PCFree medical downloads can be a real... Read More
There are plenty of articles out there about how to prepare for... Read More
This is not your typical lost data story. I was a good... Read More
If you've been kicking around the idea of building your own computer,... Read More
Having two operating systems is not as difficult as many of us... Read More
Do you use Windows standard uninstall feature? How do you migrate data... Read More
Feeling overwhelmed in selecting a new TV? With all the choices these... Read More
iPod users start to get the picture and it's turning out to... Read More
In my humble opinion nothing makes a long trip easier (especially if... Read More
Passwords have a strange dual nature. The stronger and safer the password... Read More
I recently took a good look at what was keeping me from... Read More
Confused by EDTV vs HDTV? We don't blame you. The number of... Read More
One of the most common questions computer users ask is, "How do... Read More
After reading this good article you will know some important information about... Read More
We've all seen them, you've been browsing a website and you click... Read More
One of the most confusing parts of beginning your Cisco studies is... Read More
It's hard enough as it is these days to get organized and... Read More
Projectors have come a long way in the past few decades. The... Read More
ASR (Automated System Recovery) is a feature available on the Windows XP... Read More
JPEG, GIFF/JIFF, BMP, and TIFF are the most commonly used formats for... Read More
With renting methods such as online DVD rental and pay-per-view, it seems... Read More
First things first, what is Firefox? Well, it's a browser. Ok but... Read More
MP3 players are Hot! Playing music has come a long way since... Read More
Buying a receiver is one of the most important decisions you're going... Read More
System File Checker is a great utility that is typically not utilized... Read More
Computer is an electronic machine work on the instructions of human being.... Read More
"Aaaaaahhhhhh! I've been invaded by a virus!" Getting a virus means getting... Read More
The Cisco Certified Network Associate (CCNA) Certification is meant for career enhancement... Read More
Digital Video Disc or as it is sometimes referred to Digital Versatile... Read More
What led them to this choice, as all four studios stated separately,... Read More
So I'll start from the very beginning.One day I was surfing in... Read More
Plenty! When we made the decision to be our own bosses, we... Read More
Cookies, not the kind that Mom makes, but the computer type, what... Read More
All of us are familiar with the pyramids of Egypt. These magnificent... Read More
We have just entered the time of year that most electrical storms... Read More
Sometimes your PC will start acting strange for no apparent reason or... Read More
For those seeking to buy their first flat panel TV display device,... Read More
I do a holiday letter every year and send them to friends... Read More
You probably heard of the new Firefox browser version 1.0 recently released... Read More
The best way to get the gaming computer that you want, that... Read More
How long do you think DVDs have around? 20 years? 10 years?... Read More
Youâ??ve studied hard; youâ??ve practiced your configurations; youâ??ve used your flash cards... Read More
What is a Refurbished Computer?Refurbished Computers. Remanufactured Computers. Reconditioned Computers. Essentially, all... Read More
Addressing a D2X Digital SLRCoolpix 8800 search, this article provides a quick... Read More
Millions have enjoyed recorded music since 1877 when Thomas Edison invented the... Read More
In the first part of this home lab tutorial, CCNA and CCNP... Read More
HTTP ProtocolThe web is run on port 80. You are probably wondering... Read More
All over the world, people carry with them walkmans and other music... Read More
This tip is on sharing files and folders on a local network... Read More
Each of the items in the checklist below is part of a... Read More
Maintaining your computer is extremely important ? especially if you are an... Read More
Stimulus thru Caffiene or Visual Input?It appears that the Mobi TV feature... Read More
The year is 1981. IBM has just released the Personal Computer; a... Read More
In this era of Internet, most people are frequent users of computers.... Read More
Feeling overwhelmed in selecting a new TV? With all the choices these... Read More
In the years of the dot com boom and bust, the Microsoft... Read More
Perhaps not yet, but the handwriting might be on the wall?How is... Read More
When studying for your Cisco CCNA, CCNP, or CCIE exam, you've got... Read More
As the Web grows more crowded and just plain "noisy" with information... Read More
JVC developed and used a high-performance reflective film to produce this revolutionary... Read More
I have a love-hate relationship with my computer.In fact, often I love... Read More
In the early days, Personal Digital Assistants (PDAs) were not much more... Read More
1. Let your PC boot up completely before opening any applications.2. Refresh... Read More
"Automated Testing" is automating the manual testing process currently in use. This... Read More
Occupational Therapy Made EasierMedical downloads for the pda have improved the life... Read More
For many people the computer industry is a seeming unsolvable jungle filled... Read More
Time is money. And when you constantly have to divide your time... Read More
When browsing the internet you are likely to come across many different... Read More
Many computer users are worried about their computer's performance. After spending lot... Read More
I met an entrepreneur who hole heartedly disagree with an article in... Read More
ASR (Automated System Recovery) is a feature available on the Windows XP... Read More
File Transfer Protocol (FTP) is a protocol that is part of the... Read More
Most of the web applications have a lot of images used in... Read More
Plasma and LCD TVs are the latest trend in home entertainment. Both... Read More
"Aaaaaahhhhhh! I've been invaded by a virus!" Getting a virus means getting... Read More
In my humble opinion nothing makes a long trip easier (especially if... Read More
Personal Technology Personal Technology |