Use a password manager
A password manager generates and stores a unique, strong password for every account - so a breach at one site never unlocks another. Reusing passwords is the single biggest reason breaches spread inside a company.
Make every password long and unique
- Use at least 14 characters, mixing words, numbers and symbols - or let a password manager generate random ones.
- Never reuse a password between work and personal accounts.
- Change passwords immediately if you suspect they have been exposed.
Turn on MFA everywhere it matters
Multi-factor authentication adds a second check beyond the password - usually an app code, a device prompt or a key. Enable it on: email, cloud accounts, banking, VPN and admin systems. Wherever we manage your MFA, it is configured to block the most common account-takeover attacks.
What to avoid
- Passwords written on sticky notes or in spreadsheets.
- Personal details in passwords (names, birthdays, pets).
- Sharing passwords, or approving MFA prompts you did not request - reject those immediately.