Password Policy

Password Policy

Purpose

The purpose of this policy is to provide exemplar guidance on strong password creation in line with Cyber Essentials Plus and the National Cyber Security Centre.

 

General

Whilst Thalamos will exercise standard confidentiality measures, it is the Client’s sole responsibility and liability to keep passwords secure and not disclose them to third parties.

The Client is also solely responsible and liable for any activity that occurs under that Client’s username and/or login. Each Client must use all reasonable endeavours to prevent any unauthorised access to, or use of, the Service and shall notify Thalamos immediately in the event of any unauthorised access or use, or any suspected unauthorised access or use.

Accordingly, Thalamos accepts no responsibility for misuse of a Client’s account in any manner due to a Client’s disclosure of account details and access information to third parties. In the event of access information being lost, stolen or otherwise disclosed, a Client may reset the password by following the instructions provided on the Website.

 

Guidance

Please make sure to have the following included in your password:

1. At least twelve characters,

2. At least one capital letter,

3. At least one number.,

4. At least one special character, eg. ! ? £ *.

 

Tips for a strong password:

1. Make your password a nonsense phrase

2. Avoid using obvious personal information

3. Do not reuse passwords

4. Start using a password manager

5. Do not share your password with anyone

 

For more useful guidance on choosing a strong password, please visit the National Cyber Security Centre website.


    • Related Articles

    • How to complete your SRF and certificate on Thalamos

      Headline Messages Thalamos is not a decision support tool. It is an administration tool for completing your SRF and certificate. You make the decision about what you are approving and the certificate you are completing. You should preview your forms ...