Friday, March 6, 2026
  • Contact Us
  • Advertise
  • Privacy Policy
  • Terms of Use
  • Members
  • Sign in
  • Login
Westfair Communications
  • HOME
    • WESTCHESTER
    • FAIRFIELD
  • E-EDITIONS
    • Business Journal
    • Podcasts
  • MEMBERS
  • BUSINESS LISTS
  • INDUSTRIES
    • Economic Development
    • Real Estate
    • Hudson Valley
    • Courts
    • Banking & Finance
    • Construction
    • Economy
    • Education
    • Health Care
    • Food & Beverage
    • Government
    • Mergers & Acquisitions
    • Nonprofits
    • Retail
    • Technology
    • Home & Design
    • Health & Fitness
    • Travel
    • Lifestyle
  • SMALL BUSINESS
    • Small Business
    • Food & Restaurants
  • EVENTS
    • 2026 Real Estate
    • 2026 40 Under Forty
    • 2026 Doctors of Distinction
    • 2026 C-Suite Awards
    • 2026 Women Innovators
    • 2026 Millennial & Gen Z
    • Events Calendar
    • Past Events
      • 2026
        • 2026 Women in Power
      • 2025
        • 2025 Hispanic Innovators
        • 2025 Doctors of Distinction
        • 2025 C-Suite Awards
        • 2025 Women Innovators
        • 2025 40 Under Forty
        • 2025 Millennial & Gen Z
        • 2025 Real Estate
      • 2024
        • 2024 Doctors of Distinction
        • 2024 Women Innovators
        • 2024 40 Under 40
        • 2024 Real Estate
        • 2024 Women In Power
      • 2023
        • 2023 Women In Power
        • Milli + Genz
        • Women Innovators
        • Forty Under 40
        • Doctors of Distinction
        • Real Estate
      • 2022
        • 2022 Millennial + GenZ Awards
        • 2022 C-Suite Awards
        • 2022 Doctors of Distinction
        • 2022 THE FUTURE OF REAL ESTATE
        • 2022 FORTY UNDER 40
      • 2021
        • 2021 FORTY UNDER 40 VIRTUAL EVENT
        • 2021 TOP WEALTH ADVISORS Virtual Event
        • 2021 Milli + GenZ Awards
        • 2021 C-SUITE
        • 2021 DOCTORS OF DISTINCTION
  • GOOD THINGS
  • VIDEOS
    • Our Starting Lineup
    • News Videos
  • PARTNERS
  • ADVERTISE
  • SUBSCRIBEACT NOW
    • NEWSLETTERS
    • DIGITAL ACCESS
No Result
View All Result
  • HOME
    • WESTCHESTER
    • FAIRFIELD
  • E-EDITIONS
    • Business Journal
    • Podcasts
  • MEMBERS
  • BUSINESS LISTS
  • INDUSTRIES
    • Economic Development
    • Real Estate
    • Hudson Valley
    • Courts
    • Banking & Finance
    • Construction
    • Economy
    • Education
    • Health Care
    • Food & Beverage
    • Government
    • Mergers & Acquisitions
    • Nonprofits
    • Retail
    • Technology
    • Home & Design
    • Health & Fitness
    • Travel
    • Lifestyle
  • SMALL BUSINESS
    • Small Business
    • Food & Restaurants
  • EVENTS
    • 2026 Real Estate
    • 2026 40 Under Forty
    • 2026 Doctors of Distinction
    • 2026 C-Suite Awards
    • 2026 Women Innovators
    • 2026 Millennial & Gen Z
    • Events Calendar
    • Past Events
      • 2026
        • 2026 Women in Power
      • 2025
        • 2025 Hispanic Innovators
        • 2025 Doctors of Distinction
        • 2025 C-Suite Awards
        • 2025 Women Innovators
        • 2025 40 Under Forty
        • 2025 Millennial & Gen Z
        • 2025 Real Estate
      • 2024
        • 2024 Doctors of Distinction
        • 2024 Women Innovators
        • 2024 40 Under 40
        • 2024 Real Estate
        • 2024 Women In Power
      • 2023
        • 2023 Women In Power
        • Milli + Genz
        • Women Innovators
        • Forty Under 40
        • Doctors of Distinction
        • Real Estate
      • 2022
        • 2022 Millennial + GenZ Awards
        • 2022 C-Suite Awards
        • 2022 Doctors of Distinction
        • 2022 THE FUTURE OF REAL ESTATE
        • 2022 FORTY UNDER 40
      • 2021
        • 2021 FORTY UNDER 40 VIRTUAL EVENT
        • 2021 TOP WEALTH ADVISORS Virtual Event
        • 2021 Milli + GenZ Awards
        • 2021 C-SUITE
        • 2021 DOCTORS OF DISTINCTION
  • GOOD THINGS
  • VIDEOS
    • Our Starting Lineup
    • News Videos
  • PARTNERS
  • ADVERTISE
  • SUBSCRIBEACT NOW
    • NEWSLETTERS
    • DIGITAL ACCESS
No Result
View All Result
Westfair Communications
No Result
View All Result
Home Column

Michele Braun: Cybersecurity – passwords, authentication and authorization

Michele Braun by Michele Braun
July 27, 2018
0
Share on LinkedInShare on FacebookShare on Twitter
Michele Braun

Time was that a password was what you whispered to your friend to enter the “secret” hideout. The next password for many of us was the 4-digit personal identification number (PIN) we memorized to get money from an ATM. Now, we have many passwords and PINs: for online banking; for airline travel rewards; for investment accounts and credit cards; and for Amazon Prime, Netflix, Hulu, and Youtube subscriptions. Logging into a home network requires a password, as does your cellphone and the system for viewing your increasingly electronic medical records. In the workplace, there are more passwords, sometimes unified but sometimes with different passwords to access individual systems.  

I try to never undervalue security and I respect the advice of industry experts who tell us not to use the same IDs or the same passwords. I do want my data protected, I do not want hackers to be able to get information, money or other resources to which they are not entitled.  

Are these passwords and protections necessary? Undoubtedly. Can you remember them all? I can”™t. Are the rules crazy-making? Absolutely!  

Fortunately some industry experts appreciate ”” or share ”” our confusion and frustration and are continuing their efforts to improve security without building (metaphorical) walls so high that legitimate users cannot get through. Accordingly, in June 2017, the National Institute of Standards and Technology (NIST), which creates widely used standards, updated its “Digital Identity Guidelines,” with special attention to usability.

Electronic systems need to verify that users, that is, the individuals trying to get access are who they claim to be. This function is called authentication and applies variously to online, telephone, ATM and other remote services. The new guidelines report points out that “from the user”™s perspective, authentication stands between them and their intended task.” The text then makes the much-appreciated point that “effective design and implementation of authentication makes it easy to do the right thing, hard to do the wrong thing and easy to recover when the wrong thing happens.” I have not yet found any application that fully achieves this goal, but I am glad this objective has been publicly endorsed by an influential group.  

Since it takes time to change, property tests and rollout software changes, some of the recommendations are now starting to show up. Watch for these and consider asking the your company”™s service providers about enhancing protections for your company”™s digital assets. 

Fortunately, many of these changes make sense and some are actually user friendly. Unfortunately, these changes may require users to yet again change their IDs and passwords.

Ideally, more than one approach is used to validate (authenticate) your identity.  Multifactor authentication, a long-time favorite of IT security professionals, is coming into wider use. The rubric here is “something known, something owned and something you are.” An ATM card, for instance, is something owned and the PIN is something known. A thief lifting your wallet may get the card but won”™t know the PIN”¦ unless you have written the PIN on the card. So don”™t.  

Some services will send a code to your (pre-registered) email or cellphone as the “something owned” test if you log in from an unknown computer. And, logging into websites or sending online requests may require you to check a box saying “I am not a robot” or to do a simple task such as adding 2+3. These are tools to validate the “something that you are” portion of the test. Fingerprint and facial recognition applications also authenticate users. The strength of these tools is multiplied when used in combination ”” at least two and preferably three ”” not to replace each other as single authenticators.

Other usability considerations recommended by the NIST experts include 

”¢ plain language instructions and options for alternative authentication;  

”¢ clear rather than masked text during password or PIN entry to decrease the chances that we”™ll be locked out after “fat fingering” the uppercase/lowercase/number/character password requirements; and

”¢ simpler composition rules (versus forced, mixed characters) allowing more characters so that longer but memorable passphrases can be accommodated.  

The new guidelines also propose that PINs and passwords do not need to be changed at “arbitrary” fixed intervals ”” such as monthly or quarterly ”” but rather, in response to specific threats.  

Michele Braun is director, Institute for Managing Risk at Manhattanville School of Business (Michele.Braun@mville.edu 914-323-1238) and is always ready to talk risk and payments as managing executive of The Crossway Group LLC, a consulting and professional training firm (mbraun@crosswaygrp.com).

This page is available to subscribers. Click here to sign in or get access.

Previous Post

Andi Gray: How to find a new accounting firm

Next Post

Hexcel taps Campbell to replace retiring Foster as lead director

Related Posts

COLUMN: New accounting standard changes the way tech startups capitalize software
accounting

COLUMN: New accounting standard changes the way tech startups capitalize software

February 23, 2026
Column: Next step for AI is in the area of human resources
Business Journals

Column: Next step for AI is in the area of human resources

December 10, 2025
Column: Be prepared for 2025 Fairfield County real estate revaluations
Business Journals

Column: Be prepared for 2025 Fairfield County real estate revaluations

November 17, 2025
Next Post
Hexcel taps Campbell to replace retiring Foster as lead director

Hexcel taps Campbell to replace retiring Foster as lead director

Subscribe to our newsletter

Lifestyle

  • Exclusives
  • Good Things Happening
  • Food & Restaurants
  • Travel
  • Health & Fitness
  • Home & Design

World News

GPS jamming is a growing problem
World News

GPS jamming is a growing problem

by CNN Wire
March 6, 2026
0

By Katie Hunt, CNN (CNN) — Within 24 hours of the first U.S.-Israeli strikes on Iran, ships in the region’s...

U.S. and world news for March 6

U.S. and world news for March 6

March 6, 2026
Trump fires Noem as head of Homeland Security: VIDEO

Trump fires Noem as head of Homeland Security: VIDEO

March 5, 2026
U.S. and world news for Dec. 3

U.S. and world news for March 5

March 5, 2026
The war brings travel advisories, closed airports, empty skies

The war brings travel advisories, closed airports, empty skies

March 4, 2026
U.S. and world news for March 4

U.S. and world news for March 4

March 4, 2026
No Result
View All Result

Latest News

Honey Locust Square contractor needs $700k to finish shopping center
Business

Honey Locust Square contractor needs $700k to finish shopping center

by Gary Larkin
March 6, 2026
0

A Honey Locust Square sign remains on the ground next to the proposed Gala Foods grocery store...

Report shows $46M in 2024 sales by Yonkers film and TV production

Report shows $46M in 2024 sales by Yonkers film and TV production

March 6, 2026
GPS jamming is a growing problem

GPS jamming is a growing problem

March 6, 2026
Feds intervene in Beekman sober home proposal

Feds intervene in Beekman sober home proposal

March 6, 2026
Unlicensed cannabis, fentanyl-laced marijuana sales a growing problem

Connecticut Cannabis Chamber wants stronger legal market for its products

March 6, 2026
Logo Westfair Business Journal

Latest News

Honey Locust Square contractor needs $700k to finish shopping center

Report shows $46M in 2024 sales by Yonkers film and TV production

GPS jamming is a growing problem

  • About Us
  • Contact Us
  • Advertise
  • Privacy Policy
  • Terms of Use
  • Sign in

Trending Westchester

Subscribe to our newsletter

© 2024 Westfair Business Publications. All rights reserved. Westfair Communications (Westfair), a privately held publishing firm based in Mount Kisco, N.Y., publishes the Westchester County Business Journal in New York state and the Fairfield County Business Journal in Connecticut.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • HOME
    • WESTCHESTER
    • FAIRFIELD
  • E-EDITIONS
    • Business Journal
    • Podcasts
  • MEMBERS
  • BUSINESS LISTS
  • INDUSTRIES
    • Economic Development
    • Real Estate
    • Hudson Valley
    • Courts
    • Banking & Finance
    • Construction
    • Economy
    • Education
    • Health Care
    • Food & Beverage
    • Government
    • Mergers & Acquisitions
    • Nonprofits
    • Retail
    • Technology
    • Home & Design
    • Health & Fitness
    • Travel
    • Lifestyle
  • SMALL BUSINESS
    • Small Business
    • Food & Restaurants
  • EVENTS
    • 2026 Real Estate
    • 2026 40 Under Forty
    • 2026 Doctors of Distinction
    • 2026 C-Suite Awards
    • 2026 Women Innovators
    • 2026 Millennial & Gen Z
    • Events Calendar
    • Past Events
      • 2026
      • 2025
      • 2024
      • 2023
      • 2022
      • 2021
  • GOOD THINGS
  • VIDEOS
    • Our Starting Lineup
    • News Videos
  • PARTNERS
  • ADVERTISE
  • SUBSCRIBE
    • NEWSLETTERS
    • DIGITAL ACCESS

© 2024 Westfair Business Publications. All rights reserved. Westfair Communications (Westfair), a privately held publishing firm based in Mount Kisco, N.Y., publishes the Westchester County Business Journal in New York state and the Fairfield County Business Journal in Connecticut.