ED Coding & Reimbursement Alert - 2019 Issue 10
Reader Question: Find Truth About Password Changes
Subscribe or sign in to view the full article.
Article Overview
This reader Q&A discusses current National Institute of Standards and Technology guidance on identity security and password practices. It is aimed at IT managers, office administrators, and compliance-minded staff who oversee authentication policies. The article summarizes the general direction of the guidance, including when password changes are and are not recommended, as well as related policy considerations for choosing and managing memorized secrets.
Why This Topic Matters
Organizations often maintain outdated password rules that can frustrate users and affect productivity. This article matters because it highlights current guidance that may influence internal IT policy updates and staff authentication practices.
Article Sections
-
Question
A reader asks about routine password-change policies and whether frequent updates are necessary in an office setting.
-
Answer
The response summarizes updated NIST guidance on memorized secrets and broader password policy considerations for organizations.
-
Additional NIST guidance
The article notes other password-policy themes discussed in the guidance, including composition requirements and the use of common-password screening lists.
What You Will Learn
- How current NIST guidance addresses routine password changes
- What types of password-policy requirements are discussed in the article
- Why organizations may want to review older authentication practices
- What broader identity-security considerations are raised by the guidance
Who Should Read This
- IT managers
- Office administrators
- Compliance staff
- Healthcare practice managers
- Staff responsible for authentication policies
Subscribe or sign in to view the full article.


Quick, Current, Complete - www.findacode.com