Google Security Operations SOAR password policy

Google recommends using strong passwords for all user logins to protect your information.

Your password should include:

  • A minimum of 10 characters
  • One or more capital letters
  • One or more special characters

It is also required to implement mandatory password changes periodically to safeguard your data. As such, we have implemented the following policy:

  1. The password is set for 90 days (3 months) after which it will expire.
  2. Notifications are sent to the Google Security Operations user letting them know that their password is about to expire and they need to change it.
    Notifications will be sent:
    • 14 days before password expiry
    • 7 days before password expiry
    • 2 days before password expiry
    • 1 day before password expiry
  3. If the user lets their password expire or tries to log in too many times with the wrong password, they will be locked out of their account.
  4. For users who have been locked out of their account, the admin can enable their account again and the password will be valid for another 90 days.
  5. The password policy does not apply to Google Security Operations Admins.