Why you shouldn't force regular password expiry

Regular password expiry is a common requirement in many security policies. However, in the Password Guidance published in 2015, we explicitly advised against it. This article explains why we made this (for many) unexpected recommendation, and why we think it’s the right way forward.

Continue reading at the NCSC website.

James Kimbley

<strong>Founder, Entrepreneur & Investor at Kimbley IT Limited</strong>

<br><br>

My team organises your business IT with Google Workspace, AI, Cyber Security & Support in One Package, trusted by 65+ UK businesses. Kimbley IT is a Google Cloud Partner, and Google Workspace is at the heart of everything we do. We recommend it because we've spent nearly 20 years helping UK businesses get the most from it and not because anyone asked us to.

<br><br>

Connect with me:

<a href="https://www.linkedin.com/in/jameskimbley/">LinkedIn</a> •

<a href="https://www.threads.com/@james.kimbley">Threads</a> •

<a href="https://www.kimbley.com/blog?author=50c5e9d6e4b033df8f3030ec">View All Posts</a>

www.kimbley.com
Previous
Previous

Connecting Cloud services is incredibly easy – and useful. But do you really know what you are agreeing to?

Next
Next

How Inform Accounting uses Cloud Services tied with IT Support to improve the service they offer clients.