Connect with us

Hi, what are you looking for?

Business

Training and education at work can address password security risks

Businesses need to focus on training in order to address the risks from employee security blunders.

Image: © AFP
Image: © AFP

Despite employees knowing the risk of bad password habits, many continue to recycle the same passwords out of convenience. The problem is that 95 percent of organizations suffering credential stuffing attacks had between 637 and 3.3 billion malicious login attempts throughout the year.

The onslaught of cyberattacks highlights the need for more employee education on password practices and for corporate management to put in place appropriate training and awareness programs.

Commenting on the importance of good password management for Digital Journal is Manoj Srivastava, General Manager of ID Agent and Graphus.

Srivastava  explains the importance of not only technical security solutions, but also the necessity of education on proper password habits to ensure better protection against cyberthreats.

Srivastava  explains that now is “a good reminder for IT professionals to take a closer look at the security of their environment. Though having the right security solutions in place is crucial, it’s often the small habits that can make or break an organization’s security posture.”

In terms of specifics, Srivastava  says: “One of the most important things an organization can do is foster a security-first culture that provides employees with the “why” behind aspects like multi-factor authentication (MFA) and frequent password changes that can often seem like a hindrance to their productivity.”

On the subject of training and education, Srivastava recommends: “Short, frequent security awareness training around topics like the importance of strong passwords and why to use a password manager can help break employee bad habits that threaten the entire IT environment.”

Also needed is proactive activity on the part of Information Technology (IT) departments. Here Srivastava states: “When assessing their technology stack, IT professionals should look for identity and access management (IAM) solutions that combine single sign-on (SSO), MFA and password management to ensure better protection against cyberthreats.”

Srivastava’s other recommendations are that “Organizations should discourage reuse of passwords and set strong password requirements for the solutions that employees use daily to avoid the use of some of the most common passwords like 123456 or password—which unfortunately are still frequently used, according to data from ID Agent.”

Avatar photo
Written By

Dr. Tim Sandle is Digital Journal's Editor-at-Large for science news. Tim specializes in science, technology, environmental, business, and health journalism. He is additionally a practising microbiologist; and an author. He is also interested in history, politics and current affairs.

You may also like:

Business

Research reveals how Canadians perceive regional innovation, talent attraction, and economic growth, offering insights for strategy and investment​.

World

Carney secured a term as prime minister despite having never served in parliament, which is unprecedented in Canadian history.

World

Travellers with Red Cross blankets lie prepare to spend the night at Madrid's Atocha train station - Copyright AFP Tiziana FABIImran MarashliBefuddled passers-by holding...

World

The Liberals' victory comes in the context of a trade war with its neighbour the United States, which Carney has vowed to fight fiercely.