ISACA Exam Questions

Which of the following is a good time frame for making …

Which of the following is a good time frame for making changes to passwords?

A.
every 180 to 365 days

B.
every 30 to 45 days

C.
every 10 to 20 days

D.
every 90 to 120 days

E.
None of the choices.

Explanation:
Passwords are the first defensive line in protecting your data and information. Your users need to be made
aware of what a password provides them and what can be done with their password. They also need to be
made aware of the things that make up a good password versus a bad password. A good password has mixedcase alphabetic characters, numbers, and symbols. Do use a password that is at least eight or more
characters. You may want to run a “”password cracker”” program periodically, and require users to immediately
change any easily cracked passwords. In any case ask them to change their passwords every 90 to 120 days.