Security News > 2020 > October > Why CIOs need to focus on password exposure, not expiration
While passwords may not be a cutting-edge security innovation, that's not to suggest that CIOs don't need to modernize their approach to password management.
Employees' poor password management practices are well-documented, with Google finding that 65% of people use the same password for multiple, if not all, online accounts.
It follows that password security has evolved from a focus on expiration to a focus on exposure.
In this environment, it's highly likely that a password could be secure at its creation but become compromised down the road. As such, CIOs also need to monitor password security on a daily basis and take steps to protect sensitive information if a compromise is detected.
Replacing password expiration with password exposure will be particularly critical as CIOs manage an increasingly hybrid workforce.
News URL
http://feedproxy.google.com/~r/HelpNetSecurity/~3/tNXLZhvynBs/