Still Using Weak Passwords? Do This Instead.

Public entities possess hundreds of thousands of records containing personally identifiable information on their constituents. Creating strong, unique passwords provides a crucial defense from identity theft and financial fraud for municipalities. 

Although widely known as the first line of defense in avoiding cybercrime, passwords have long been firmly established as the weakest link in public entity cybersecurity protocol. Poorly managed passwords remain the most significant and preventable threat to your public entity’s security posture due to the unfortunate reality that people continue to use weak login passwords. To make matters worse, these same passwords are often used across various devices, platforms, and websites. In these cases, by hacking one password, cybercriminals effectively open the doors to your entire digital ecosystem.

Passwords are often the only barrier between a public entity and personal information. While there are several programs that cyber threat actors use to ‘crack’ passwords, choosing strong passwords and keeping them secure can make it more difficult for bad actors to gain unauthorized access to sensitive data.

And as much as we try to convince ourselves that our passwords are impenetrable, professional hackers use tools and tactics to help unveil them in seconds. Weak password security can lead to data breaches, identity theft, and even computer hijacking, allowing criminals to access and exploit your entity’s personally identifiable records.

Are you still using your cat’s name, followed by an exclamation point, as your password? Do you use the same password for a variety of logins? If so, it’s time for a change. And when it comes to protecting yourself, your colleagues, and the community you serve, there’s no better time than the present. 

Four easy steps to becoming a Password Pro: 

  1. Keep it complicated. Consistently updating passwords containing more than ten characters, with a mix of letters, numbers, and symbols, can help significantly reduce your risk of being hacked. 
  2. Don’t make it personal. A study conducted by Morris and Thompson in 1978 demonstrated that it is easier to guess passwords through personal information (family members’ names, birthdays, home addresses, etc.) than to decipher them.
  3. Use random passphrases. A passphrase (e.g., “memo-tiger-thread-glue-button” or “Isn’t that quarterback the best in New England?”) can be easier for you to remember but more difficult to hack. The key to creating solid passphrases is randomness.  
  4. Get Creative. Consider using phonetic replacements, such as “ph” instead of “F.” Use an exclamation point (!) to replace the letters (I) or (L), or make deliberate misspellings, such as “enjin” instead of “engine.”
  5. Get password (and cyber) smart. The helpful tips above are examples of the initial steps you can take to protect yourself, your colleagues, and your community against cybercrime. CIRMA’s member-exclusive Cyber Webinar Series offers contextual scenarios and the latest information on successfully managing password security best practices. Sign in to CIRMA e-learning to access this valuable member benefit, or contact us to get started.  

Most of our professional and personal business is conducted online, and maintaining strong and secure passwords is crucial to mitigating cyber-related risks and exposures. Training and education remain the most effective defense against cybercrime, and knowing how to protect yourself and your organization is easier than ever. Learn at your own pace and when and where you choose with CIRMA’s e-learning resources, 24 hours a day, seven days a week.

If you haven’t taken advantage of the many benefits available through CIRMA’s e-learning platform, contact your local CIRMA Risk Management representative today to get started. There is no additional charge to CIRMA members or their employees for this service. 

Check out CIRMA’s Cyber Center to learn how CIRMA can help your organization prevent and manage cyber exposures.

Cyber Resources Created for CIRMA Members:

Back to Blog Next Article
ethernet cables

Don’t Miss Out: Cyber Assessments for CT Municipalities

New cyber assessment resources are available to help your public entity address evolving cybersecurity threats head-on.

View Posts

Social and Emotional Awareness

Failure to cultivate a workplace culture that advocates for mental health can subject employers to legal risks, including claims of workplace violence or failure…

View Posts

Work Zone Safety Works

It's everyone's collective responsibility to ensure safety in work zones. Road workers rely on their communities to keep them safe at work. CIRMA provides…

View Posts

Police Pursuit Policy Education and Awareness

Law enforcement agencies must ensure their personnel adhere to their Department and State of Connecticut Pursuit Policies to ensure their and others' safety and…

View Posts

Block the Bait: Cyber Phishing Attacks

Human error (still) remains the leading cause of cybersecurity breaches, as employees continue to fall victim to phishing attacks. Verizon’s Data Breach Investigation report…

View Posts
beat cyber social engineering attacks

Social Engineering: The Art of Human Manipulation

Social engineering attacks are one of the most common ways they exploit human instincts and uses psychological manipulation instead of exploiting technical vulnerabilities and…

View Posts
weak password help

Still Using Weak Passwords? Do This Instead.

Passwords have long been firmly established as the weakest link in an organization’s cybersecurity. Here's what you can do to avoid this significant yet…

View Posts
home work environment tips and best practices

Whitepaper: Create a Home Work Environment that Works for You

Creating a home workspace does not require extraordinary upgrades to your home or even purchasing fancy office equipment. Setting up a workspace with basic…

View Posts
wellness at work

Wellness at Work

The adoption of workplace social and emotional health programs skyrocketed over the past two years due to heightened visibility during the pandemic when remote…

View Posts
wrist injury sprain strain workers comp

Preventing Sprains & Strains

Sprain and strain injuries are the most common and costly workplace injuries. Employees can injure their knee, shoulder, wrist, or back while performing everyday…

View Posts

Bee Safe

Bee and wasp stings are a common summer nuisance that can turn deadly if the victim develops a severe allergic reaction (anaphylaxis). Public Health…

View Posts