Cloud Productivity Suites (including Google Workspace and Office 365)
cybersec.archbaltschools.org
Cloud Productivity Suites (including Google Workspace and Office 365)
Cloud Productivity Suites (including Google and Office 365):
All non-student user accounts must be secured by Two Factor Authentication (2FA).
All non-student accounts must be associated with a government ID.
Utility accounts (e.g. nurse@yourschool.com) should not be used. Instead, the nurse's account should be created under his/her name as a standard user and if desired, an alias of “nurse@yourschool.com” can point to their account.
Password Complexity Requirements:
Non-student user accounts must be 12 characters long.
Google Workspace Admin accounts may not be standard user accounts. If John Smith is a Google Admin he should have 2 accounts:
Standard User Account - jsmith@yourschool.com
Admin Account - jsmith_admin@yourschool.com
Google Workspace Admin accounts must be 16 characters long.
Google Workspace Admin Seed accounts must be 24 characters long.
There should be NO mandatory password reset time (e.g. - forcing users to reset passwords every 90 days). This is an old practice that weakens password complexity and is discouraged by newer cybersecurity standards.
The user manager in the admin panel should be set for “Use Secure Passwords” . This will prevent users from using their username or common passwords (e.g. password123) as their password.