
Craig Kaucher is the Chief Technology and Information Officer at Defense Media Activity.
Craig Kaucher is the Chief Technology and Information Officer at the Defense Media Activity. These are his personal views and do not in any way constitute an endorsement on behalf of the Defense Media Activity, the Department of Defense, or the U.S. Government of any particular commercial product or service.
Over the past decade, approaches to securing enterprise information systems have evolved from the secure bastion, through defense in depth, to include today the concepts of continuous monitoring and operations. Through this all, many newer, more powerful technologies have emerged and been integrated into various portions of the enterprise information assurance architecture. One particular aspect of information assurance, the password, which is often seen as one of the greatest vulnerabilities of information systems, still seems to be sticking around in some form or another.
Fortunately at the Department of Defense, the Common Access Card (CAC) has alleviated much of the pain of remembering multiple passwords. Unfortunately, the still-required password, as a backup to the CAC, if nothing else, is longer than ever. Combine that with the near infinite number of passwords that almost anyone uses to access anything from on-line banking to e-commerce sites to subscriptions, and the potential for mistakes or intentional bypassing (i.e., writing them down) becomes quite high.
(more…)
Recent Comments