Password Reset
Click ‘Manage My Details’ under your name and My Details page will appear allowing you to change your password. The requirements for a new password must be: Between 8 – 32 characters long Include at least one example of 3 of the following character types: o Uppercase characters Lowercase characters Numbers Special characters ($, !, @ etc.) Caseless Characters (Cantonese/Japanese characters etc.)
The requirements for a new password must be:
- Between 8 – 32 characters long
- Include at least one example of 3 of the following character types: o Uppercase characters
- Lowercase characters
- Numbers
- Special characters ($, !, @ etc.)
- Caseless Characters (Cantonese/Japanese characters etc.)
Good Password Practices
Passwords are a key part of our cyber security strategy and essential to protecting the business. All employees are responsible for taking appropriate measures to ensure that their password is STRONG (cannot be easily guessed) and SECRET (not disclosed to others).
- All passwords should be sufficiently complex and therefore difficult for anyone to guess.
- Passwords must not be shared or written down where they might be found.
- Users should choose passwords that are at least 12 characters long and contain a combination of upper- and lower-case letters, numbers, and punctuation marks and other special characters.
- A password should be unique, with meaning only to the user who chooses it. That means single dictionary words, common phrases and even names should be avoided. NCSC recommends use of 3 random words.
Technically, this is easier to crack than random letters but in practice more secure as it is memorable and thus users are less likely to write it down or re-use.
- Avoid basic combinations that are easy to crack. Choices like “password,” “password1” and “Pa$$w0rd” are equally bad from a security perspective.
- Users must use unique passwords for each of their application accounts and must not use a password that they use for a personal account.
- Default passwords — such as those created for new users — must be changed as quickly as possible.
- We don’t recommend frequent changing of passwords, keep using a password whilst it is strong, secure and memorable.
- If the security of a password is in doubt– for example, if it appears that an unauthorised person has logged in to the account — the password must be changed immediately