Risk Level: Low Risk
-
Incident Reporting
—
by
Promptly report actual or suspected compromise, including loss, theft, improper use, modification of, or access to information to security@mit.edu.
-
Self Assessment
—
by
Review your systems and procedures regularly to ensure the tasks for this risk level are applied.
-
Unique user accounts
—
by
Create a unique, non-privileged, account for each user. Assign a different password for user and administrative accounts.
-
Use strong passwords
—
by
Use strong passwords. Change authentication keys e.g., password, certificate, regularly – at least annually.
-
Don’t reuse passwords
—
by
Do not reuse passwords for multiple services. Do not use your Kerberos password for non-Kerberos enabled systems.
-
Automatic software updates
—
by
Configure automatic download and application of software and operating system updates.