Connect with us

Hi, what are you looking for?

Business

Training and education at work can address password security risks

Businesses need to focus on training in order to address the risks from employee security blunders.

Image: © AFP
Image: © AFP

Despite employees knowing the risk of bad password habits, many continue to recycle the same passwords out of convenience. The problem is that 95 percent of organizations suffering credential stuffing attacks had between 637 and 3.3 billion malicious login attempts throughout the year.

The onslaught of cyberattacks highlights the need for more employee education on password practices and for corporate management to put in place appropriate training and awareness programs.

Commenting on the importance of good password management for Digital Journal is Manoj Srivastava, General Manager of ID Agent and Graphus.

Srivastava  explains the importance of not only technical security solutions, but also the necessity of education on proper password habits to ensure better protection against cyberthreats.

Srivastava  explains that now is “a good reminder for IT professionals to take a closer look at the security of their environment. Though having the right security solutions in place is crucial, it’s often the small habits that can make or break an organization’s security posture.”

In terms of specifics, Srivastava  says: “One of the most important things an organization can do is foster a security-first culture that provides employees with the “why” behind aspects like multi-factor authentication (MFA) and frequent password changes that can often seem like a hindrance to their productivity.”

On the subject of training and education, Srivastava recommends: “Short, frequent security awareness training around topics like the importance of strong passwords and why to use a password manager can help break employee bad habits that threaten the entire IT environment.”

Also needed is proactive activity on the part of Information Technology (IT) departments. Here Srivastava states: “When assessing their technology stack, IT professionals should look for identity and access management (IAM) solutions that combine single sign-on (SSO), MFA and password management to ensure better protection against cyberthreats.”

Srivastava’s other recommendations are that “Organizations should discourage reuse of passwords and set strong password requirements for the solutions that employees use daily to avoid the use of some of the most common passwords like 123456 or password—which unfortunately are still frequently used, according to data from ID Agent.”

Avatar photo
Written By

Dr. Tim Sandle is Digital Journal's Editor-at-Large for science news. Tim specializes in science, technology, environmental, business, and health journalism. He is additionally a practising microbiologist; and an author. He is also interested in history, politics and current affairs.

You may also like:

World

US Secretary of State Antony Blinken (L) is paying his second visit to China in less than a year - Copyright POOL/AFP Mark SchiefelbeinShaun...

Business

Google-parent Alphabet soared with Microsoft in after-hours trade following forecast-beating earnings - Copyright GETTY IMAGES NORTH AMERICA/AFP Drew AngererMarkets were mixed on Friday after...

Life

An expert explains why keen gamers should consider running as part of their regular routine.

World

People wave the Palestinian flag during protests in Doha after the outbreak of the Gaza war - Copyright AFP Rabih DAHERCallum PATONCriticism of Qatar...