Expert Advice Community

Guest

Creating two separate password policies?

  Quote
Guest
Guest user Created:   Sep 15, 2016 Last commented:   Sep 15, 2016

Creating two separate password policies?

We are developing “password policy” now and have question about it: There is only password policy for users among the templates. Is there any requirements by ISO 27001 for separate password policy for privileged users (like admin, root and etc.) or we can combine them?
0 0

Assign topic to the user

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

Expert
Dejan Kosutic Sep 15, 2016

Answer: ISO 27001 does not require you to separate password policies for different types of users/employees - therefore, you can create a single document for this purpose. In bigger and very complex companies it might make sense to have separate policies for this purpose.

Quote
0 0

Comment as guest or Sign in

HTML tags are not allowed

Sep 15, 2016

Sep 15, 2016