Wednesday, June 10, 2026
  • Contact Us
  • Advertise
  • Privacy Policy
  • Terms of Use
  • Members
  • Sign in
Westfair Communications
  • HOME
    • WESTCHESTER
    • FAIRFIELD
  • E-EDITIONS
    • Business Journal
    • 250 Years of Business & Commerce in America
    • Podcasts
  • MEMBERS
  • BUSINESS LISTS
  • INDUSTRIES
    • Economic Development
    • Real Estate
    • Hudson Valley
    • Courts
    • Banking & Finance
    • Construction
    • Economy
    • Education
    • Health Care
    • Food & Beverage
    • Government
    • Mergers & Acquisitions
    • Nonprofits
    • Retail
    • Technology
    • Home & Design
    • Health & Fitness
    • Travel
    • Lifestyle
  • SMALL BUSINESS
    • Small Business
    • Food & Restaurants
  • EVENTS
    • 2026 C-Suite Awards
    • 2026 Women Innovators
    • 2026 Millennial & Gen Z
    • 2026 Hispanic Innovators
    • Events Calendar
    • Past Events
      • 2026
        • 2026 Doctors of Distinction
        • 2026 40 Under Forty
        • 2026 Real Estate
        • 2026 Women in Power
      • 2025
        • 2025 Hispanic Innovators
        • 2025 Doctors of Distinction
        • 2025 C-Suite Awards
        • 2025 Women Innovators
        • 2025 40 Under Forty
        • 2025 Millennial & Gen Z
        • 2025 Real Estate
      • 2024
        • 2024 Doctors of Distinction
        • 2024 Women Innovators
        • 2024 40 Under 40
        • 2024 Real Estate
        • 2024 Women In Power
      • 2023
        • 2023 Women In Power
        • Milli + Genz
        • Women Innovators
        • Forty Under 40
        • Doctors of Distinction
        • Real Estate
      • 2022
        • 2022 Millennial + GenZ Awards
        • 2022 C-Suite Awards
        • 2022 Doctors of Distinction
        • 2022 THE FUTURE OF REAL ESTATE
        • 2022 FORTY UNDER 40
      • 2021
        • 2021 FORTY UNDER 40 VIRTUAL EVENT
        • 2021 TOP WEALTH ADVISORS Virtual Event
        • 2021 Milli + GenZ Awards
        • 2021 C-SUITE
        • 2021 DOCTORS OF DISTINCTION
  • GOOD THINGS
  • VIDEOS
    • Our Starting Lineup
    • News Videos
  • PARTNERS
  • ADVERTISE
  • SUBSCRIBEACT NOW
    • NEWSLETTERS
    • DIGITAL ACCESS
No Result
View All Result
  • HOME
    • WESTCHESTER
    • FAIRFIELD
  • E-EDITIONS
    • Business Journal
    • 250 Years of Business & Commerce in America
    • Podcasts
  • MEMBERS
  • BUSINESS LISTS
  • INDUSTRIES
    • Economic Development
    • Real Estate
    • Hudson Valley
    • Courts
    • Banking & Finance
    • Construction
    • Economy
    • Education
    • Health Care
    • Food & Beverage
    • Government
    • Mergers & Acquisitions
    • Nonprofits
    • Retail
    • Technology
    • Home & Design
    • Health & Fitness
    • Travel
    • Lifestyle
  • SMALL BUSINESS
    • Small Business
    • Food & Restaurants
  • EVENTS
    • 2026 C-Suite Awards
    • 2026 Women Innovators
    • 2026 Millennial & Gen Z
    • 2026 Hispanic Innovators
    • Events Calendar
    • Past Events
      • 2026
        • 2026 Doctors of Distinction
        • 2026 40 Under Forty
        • 2026 Real Estate
        • 2026 Women in Power
      • 2025
        • 2025 Hispanic Innovators
        • 2025 Doctors of Distinction
        • 2025 C-Suite Awards
        • 2025 Women Innovators
        • 2025 40 Under Forty
        • 2025 Millennial & Gen Z
        • 2025 Real Estate
      • 2024
        • 2024 Doctors of Distinction
        • 2024 Women Innovators
        • 2024 40 Under 40
        • 2024 Real Estate
        • 2024 Women In Power
      • 2023
        • 2023 Women In Power
        • Milli + Genz
        • Women Innovators
        • Forty Under 40
        • Doctors of Distinction
        • Real Estate
      • 2022
        • 2022 Millennial + GenZ Awards
        • 2022 C-Suite Awards
        • 2022 Doctors of Distinction
        • 2022 THE FUTURE OF REAL ESTATE
        • 2022 FORTY UNDER 40
      • 2021
        • 2021 FORTY UNDER 40 VIRTUAL EVENT
        • 2021 TOP WEALTH ADVISORS Virtual Event
        • 2021 Milli + GenZ Awards
        • 2021 C-SUITE
        • 2021 DOCTORS OF DISTINCTION
  • GOOD THINGS
  • VIDEOS
    • Our Starting Lineup
    • News Videos
  • PARTNERS
  • ADVERTISE
  • SUBSCRIBEACT NOW
    • NEWSLETTERS
    • DIGITAL ACCESS
No Result
View All Result
Westfair Communications
No Result
View All Result
Home Column

Michele Braun: Cybersecurity – passwords, authentication and authorization

Michele Braun by Michele Braun
July 27, 2018
0
Share on LinkedInShare on FacebookShare on Twitter
Michele Braun

Time was that a password was what you whispered to your friend to enter the “secret” hideout. The next password for many of us was the 4-digit personal identification number (PIN) we memorized to get money from an ATM. Now, we have many passwords and PINs: for online banking; for airline travel rewards; for investment accounts and credit cards; and for Amazon Prime, Netflix, Hulu, and Youtube subscriptions. Logging into a home network requires a password, as does your cellphone and the system for viewing your increasingly electronic medical records. In the workplace, there are more passwords, sometimes unified but sometimes with different passwords to access individual systems.  

I try to never undervalue security and I respect the advice of industry experts who tell us not to use the same IDs or the same passwords. I do want my data protected, I do not want hackers to be able to get information, money or other resources to which they are not entitled.  

Are these passwords and protections necessary? Undoubtedly. Can you remember them all? I can”™t. Are the rules crazy-making? Absolutely!  

Fortunately some industry experts appreciate ”” or share ”” our confusion and frustration and are continuing their efforts to improve security without building (metaphorical) walls so high that legitimate users cannot get through. Accordingly, in June 2017, the National Institute of Standards and Technology (NIST), which creates widely used standards, updated its “Digital Identity Guidelines,” with special attention to usability.

Electronic systems need to verify that users, that is, the individuals trying to get access are who they claim to be. This function is called authentication and applies variously to online, telephone, ATM and other remote services. The new guidelines report points out that “from the user”™s perspective, authentication stands between them and their intended task.” The text then makes the much-appreciated point that “effective design and implementation of authentication makes it easy to do the right thing, hard to do the wrong thing and easy to recover when the wrong thing happens.” I have not yet found any application that fully achieves this goal, but I am glad this objective has been publicly endorsed by an influential group.  

Since it takes time to change, property tests and rollout software changes, some of the recommendations are now starting to show up. Watch for these and consider asking the your company”™s service providers about enhancing protections for your company”™s digital assets. 

Fortunately, many of these changes make sense and some are actually user friendly. Unfortunately, these changes may require users to yet again change their IDs and passwords.

Ideally, more than one approach is used to validate (authenticate) your identity.  Multifactor authentication, a long-time favorite of IT security professionals, is coming into wider use. The rubric here is “something known, something owned and something you are.” An ATM card, for instance, is something owned and the PIN is something known. A thief lifting your wallet may get the card but won”™t know the PIN”¦ unless you have written the PIN on the card. So don”™t.  

Some services will send a code to your (pre-registered) email or cellphone as the “something owned” test if you log in from an unknown computer. And, logging into websites or sending online requests may require you to check a box saying “I am not a robot” or to do a simple task such as adding 2+3. These are tools to validate the “something that you are” portion of the test. Fingerprint and facial recognition applications also authenticate users. The strength of these tools is multiplied when used in combination ”” at least two and preferably three ”” not to replace each other as single authenticators.

Other usability considerations recommended by the NIST experts include 

”¢ plain language instructions and options for alternative authentication;  

”¢ clear rather than masked text during password or PIN entry to decrease the chances that we”™ll be locked out after “fat fingering” the uppercase/lowercase/number/character password requirements; and

”¢ simpler composition rules (versus forced, mixed characters) allowing more characters so that longer but memorable passphrases can be accommodated.  

The new guidelines also propose that PINs and passwords do not need to be changed at “arbitrary” fixed intervals ”” such as monthly or quarterly ”” but rather, in response to specific threats.  

Michele Braun is director, Institute for Managing Risk at Manhattanville School of Business (Michele.Braun@mville.edu 914-323-1238) and is always ready to talk risk and payments as managing executive of The Crossway Group LLC, a consulting and professional training firm (mbraun@crosswaygrp.com).

This page is available to subscribers. Click here to sign in or get access.

Previous Post

Andi Gray: How to find a new accounting firm

Next Post

Hexcel taps Campbell to replace retiring Foster as lead director

Related Posts

Column: Tariff Refunds Now Available: What It Means for Connecticut
Business

Column: Tariff Refunds Now Available: What It Means for Connecticut

April 28, 2026
COLUMN: New accounting standard changes the way tech startups capitalize software
accounting

COLUMN: New accounting standard changes the way tech startups capitalize software

February 23, 2026
Column: Next step for AI is in the area of human resources
Business Journals

Column: Next step for AI is in the area of human resources

December 10, 2025
Next Post
Hexcel taps Campbell to replace retiring Foster as lead director

Hexcel taps Campbell to replace retiring Foster as lead director

Subscribe to our newsletter

Lifestyle

  • Exclusives
  • Good Things Happening
  • Food & Restaurants
  • Travel
  • Health & Fitness
  • Home & Design

World News

CNN WIRE — Bill Gates testifies about Jeffrey Epstein: VIDEO
World News

CNN WIRE — Bill Gates testifies about Jeffrey Epstein: VIDEO

by CNN Wire
June 10, 2026
0

VIDEO OF BILL GATES BEFORE TESTIFYING By Annie Grayer, MJ Lee, Andrew Kaczynski, CNN (CNN) — Billionaire Bill Gates told...

U.S. and world news for June 10

U.S. and world news for June 10

June 10, 2026
Trump Administration targets Social Security; Hudson Valley offices affected

CNN WIRE — Report confirms Social Security cuts loom unless Congress acts

June 9, 2026
U.S. and world news for June 9

U.S. and world news for June 9

June 9, 2026
CNN WIRE — Lawsuit aims to stop UFC fight at the White House

CNN WIRE — Lawsuit aims to stop UFC fight at the White House

June 8, 2026
Five stabbed at Penn Station ahead of NBA finals

Five stabbed at Penn Station ahead of NBA finals

June 8, 2026
No Result
View All Result

Latest News

Financial Services giants Steward Partners, Zelniker Dorfman mark biggest breakaway
Banking & Finance

Financial Services giants Steward Partners, Zelniker Dorfman mark biggest breakaway

by Gary Larkin
June 10, 2026
0

Some members of the new team at Zelniker Dorfman Private Wealth at Steward Partners. Photo courtesy of...

W. R. Berkley Corp. founder William Berkley dies at 80

W. R. Berkley Corp. founder William Berkley dies at 80

June 10, 2026
Yorktown approves major solar generation facility

Yorktown approves major solar generation facility

June 10, 2026
Scarsdale building sells for $2.2M

Scarsdale building sells for $2.2M

June 10, 2026
CNN WIRE — Bill Gates testifies about Jeffrey Epstein: VIDEO

CNN WIRE — Bill Gates testifies about Jeffrey Epstein: VIDEO

June 10, 2026
Logo Westfair Business Journal

Latest News

Financial Services giants Steward Partners, Zelniker Dorfman mark biggest breakaway

W. R. Berkley Corp. founder William Berkley dies at 80

Yorktown approves major solar generation facility

  • About Us
  • Contact Us
  • Advertise
  • Privacy Policy
  • Terms of Use
  • Sign in

Trending Westchester

Subscribe to our newsletter

© 2024 Westfair Business Publications. All rights reserved. Westfair Communications (Westfair), a privately held publishing firm based in Mount Kisco, N.Y., publishes the Westchester County Business Journal in New York state and the Fairfield County Business Journal in Connecticut.

No Result
View All Result
  • HOME
    • WESTCHESTER
    • FAIRFIELD
  • E-EDITIONS
    • Business Journal
    • 250 Years of Business & Commerce in America
    • Podcasts
  • MEMBERS
  • BUSINESS LISTS
  • INDUSTRIES
    • Economic Development
    • Real Estate
    • Hudson Valley
    • Courts
    • Banking & Finance
    • Construction
    • Economy
    • Education
    • Health Care
    • Food & Beverage
    • Government
    • Mergers & Acquisitions
    • Nonprofits
    • Retail
    • Technology
    • Home & Design
    • Health & Fitness
    • Travel
    • Lifestyle
  • SMALL BUSINESS
    • Small Business
    • Food & Restaurants
  • EVENTS
    • 2026 C-Suite Awards
    • 2026 Women Innovators
    • 2026 Millennial & Gen Z
    • 2026 Hispanic Innovators
    • Events Calendar
    • Past Events
      • 2026
      • 2025
      • 2024
      • 2023
      • 2022
      • 2021
  • GOOD THINGS
  • VIDEOS
    • Our Starting Lineup
    • News Videos
  • PARTNERS
  • ADVERTISE
  • SUBSCRIBE
    • NEWSLETTERS
    • DIGITAL ACCESS

© 2024 Westfair Business Publications. All rights reserved. Westfair Communications (Westfair), a privately held publishing firm based in Mount Kisco, N.Y., publishes the Westchester County Business Journal in New York state and the Fairfield County Business Journal in Connecticut.