Reply to post: Re: Layers...like an onion

No, eight characters, some capital letters and numbers is not a good password policy

IT Hack

Re: Layers...like an onion

Best practice??? By whose definition?

Pretty much every infosec pro I've spoken to or worked with. On top of that we also consider passworded screen savers a best practice.

New regulatory issues also drive the adoption of these policies, the newest being GDPR. Of course GDPR does not stipulate clear desk policies but as a security manager one would consider a clear desk policy as a mechanism to reduce the risk of data breaches.

https://www.sans.org/security-resources/policies/general/pdf/clean-desk-policy

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon