IT SecurityPublished on · 3 min read· Author: WSV Redaktion

Password Security at Work: The Key Rules

Weak and reused passwords are among the biggest entry points for attackers. These are the rules your company should put in place.

Weak or reused passwords are among the most common entry points for attacks on businesses. The good news: a few consistently applied rules can significantly reduce the risk.

Length beats complexity

A long password is harder to crack than a short one with special characters. Use passphrases of at least twelve characters - for example, several random words strung together.

A separate password for every service

If one service is compromised, attackers automatically try the stolen credentials on other services (credential stuffing). A separate password per service stops this chain reaction.

Use a password manager

Nobody can remember dozens of long, unique passwords. A centrally managed password manager solves this problem and also enables team features such as secure credential sharing and offboarding processes.

Enable two-factor authentication

Wherever possible, a second factor (app, hardware token) should be enabled

  • especially for email, VPN, and cloud services. Even a stolen password is then no longer enough to gain access.

Our tip

Want to know how password security stands in your company? Get in touch - we support you from the initial assessment through to rolling out a password manager.

Start remote support

Privacy settings

We use technically necessary storage for operating this website. Optional services (statistics, marketing, external media) are only loaded after your consent.

Privacy settings