Good Reasons to use a Password Manager

What is Password Management ?

A password management tool is an application on your phone, tablet or computer that stores your passwords securely, so you don’t need to remember them all. Some password managers can synchronise your passwords across your different devices, making it easier to log on, wherever you are. Some can also create random, unique passwords for you, when you need to create a new password (or change an existing one).

Why would I want a Password Manager ?

Reusing the same password across different accounts can be dangerous. A cyber criminal might steal one of your passwords, and then use it to try and access other accounts. This means they could quickly break into several of your accounts despite only knowing one password.

We know that we’re supposed to create a unique, hard-to-guess password for all of our online accounts, to prevent such a scenario happening. However the NCSC recognise that this virtually impossible to do without help. Password managers provide that help. They’re designed to make using and generating passwords easier and more secure. Many can also automatically enter the appropriate password into websites and apps on your behalf, so you don’t even have to type them in every time you log in.

What types of password manager are available?

You may be already using a password manager without knowing it. Many are built into your internet browser (such as Google Chrome, Microsoft Edge or Firefox), or are part of the operating system on your smartphone or tablet. You may have noticed when you sign into an account, a box appears asking you if you want the browser (or device) to remember your password. If you are not sharing the device with anyone else, then it is safe to tick the box. If it doesn’t offer to save your password, you may need to turn this option on in your device settings

Standalone password manager apps are also available to download, many of which can be installed on different types of device, and with extra features like the ability to create good passwords for you. It’s worth finding online reviews of the password managers you’re considering, and deciding on the features you need (and the support the vendor provides) before choosing one that’s right for you

How do I protect the Password Management tool?

Whether you’re using a standalone password management tool or a built-in one, it is important to keep the password manager account secure because if a criminal accesses this, they’ll potentially have access to all your passwords and associated accounts. You also need to take steps to make sure you can always get in yourself, so you don’t lose access to all your passwords.

NCSC strongly recommend that you:

  • Set up two factor authentication on the password manager account. If you have the option, set up more than one type of second factor so you have a backup plan to get into your password manager account.
  • Install updates for your password manager app as soon as you’re prompted to update. If you’re using your browser, always make sure you are using the latest version and you keep this up to date.
  • Choose a strong password for the password manager account (for example using three random words). You can’t store this in the password manager itself, so you may want to write this one down and store it somewhere safe – away from your device – so you don’t forget it.

Note that if you’re using a built-in password manager through your browser or device, they may be protected by one of your existing accounts. For example, passwords saved in Apple’s Keychain are protected by your AppleID, and passwords saved in Google’s Chrome browser will be protected by your Google (or Gmail) account, if you have logged in. Again, make sure that you are using a strong password of these accounts.

Any questions contact us

Past Blogs

Cyber Essentials vs ISO27001

Cyber Essentials vs. ISO 27001: What’s the Difference and Which Is Right for You?

Cybersecurity certifications come in many shapes and sizes, but when it comes to choosing the right framework for your business, the decision often boils down to Cyber...
Overconfident employees: Your hidden cyber security threat?

Overconfident employees: Your hidden cyber security threat?

Your team are smart, right? They’d never fall for a scam email or click a suspicious link. At least, that’s what they think. Here’s why overconfidence could spell...

DMARC & DMARCBIS

What They Are, Why They Matter, and What Business Owners Need to Know If you’re a business owner, chances are you rely on email every day—whether it’s communicating...
Could automation save you from spreadsheet headaches?

Could automation save you from spreadsheet headaches?

Spreadsheets slow us down and are too easy to mess up. So, what if I told you there’s a better way to handle data in your business?

Did you notice Incognito mode’s improved privacy?

Did you notice Incognito mode’s improved privacy?

If your team use Google Chrome’s Incognito mode, you probably assume your browsing is private. But until Microsoft spotted this big flaw, your info could be shared...
Copilot could soon auto-open in Microsoft Edge

Copilot could soon auto-open in Microsoft Edge

Is Edge your business’s browser of choice? Microsoft’s thinking of automatically opening Copilot when you use it. It could boost productivity, but there are privacy...
How concerned should you be about cyber attacks?

How concerned should you be about cyber attacks?

You’ve probably heard a lot of talk about cyber attacks but how worried should you really be? Well, very, because cyber criminals are getting smarter. We have good news...
How to create secure passwords

How to create secure passwords

Weak passwords are one of the biggest security risks to your business. Why? Because cyber criminals are getting smarter than ever before. If they manage to crack just...
Beware these common ‘malvertising’ attacks

Beware these common ‘malvertising’ attacks

Ever clicked an online ad and wondered afterwards if it was a scam?… most of us have – and cyber criminals want us to keep doing it. Here’s what to look out for...
Businesses are taking too long to fix vulnerabilities

Businesses are taking too long to fix vulnerabilities

If you knew your systems were at risk of attack, you’d jump in and get things locked down fast – right? Actually… many businesses take too long to fix vulnerabilities....