Technology Standard

 


Logical Access Control - Password Management

Version: 1.0
Status: Approved 02/21/07
Contact: Director, Technology Services


PURPOSE

To provide guidelines necessary to implement password management standards and procedures to protect System Office and College IT systems and data.


SCOPE

In accordance with the COV ITRM 501-01, Password Management standards and procedures must be implemented to specify the means for password use to protect System Office and College IT systems and data.


APPLICABILITY

The Password Management Standard is applicable to the System Office and all Colleges.


STANDARD

The System Office and Colleges must document password management practices to ensure adequate password procedures are implemented to protect against IT system and account intrusions. Password management best practices are provided below.

Requirement:

Ensure that account access to sensitive IT systems require a password. This includes local, remote access, and temporary accounts.

Requirement:

Utilize the password features of an IT system to:

Requirement:

Provide training to staff on password security awareness to:

Requirement:

System administration management:


RELATED LINKS

Data Protection, Encryption Standard


Return to Information Security Program