[[["Easy to understand","easyToUnderstand","thumb-up"],["Solved my problem","solvedMyProblem","thumb-up"],["Other","otherUp","thumb-up"]],[["Hard to understand","hardToUnderstand","thumb-down"],["Incorrect information or sample code","incorrectInformationOrSampleCode","thumb-down"],["Missing the information/samples I need","missingTheInformationSamplesINeed","thumb-down"],["Other","otherDown","thumb-down"]],["Last updated 2025-08-29 UTC."],[[["\u003cp\u003eUsers should use strong passwords with a minimum of 10 characters, including capital letters and special characters, for their Google SecOps SOAR accounts.\u003c/p\u003e\n"],["\u003cp\u003ePasswords must be changed every 90 days to ensure data security, with users receiving notifications leading up to the password expiration.\u003c/p\u003e\n"],["\u003cp\u003eAccount lockouts occur after a password expires or multiple incorrect login attempts, but administrators can re-enable these accounts.\u003c/p\u003e\n"],["\u003cp\u003eThe password policy affects all standard users and not the Google SecOps administrators.\u003c/p\u003e\n"]]],[],null,["# Manage Google SecOps SOAR password settings\n===========================================\n\nSupported in: \n[SOAR](/chronicle/docs/secops/google-secops-soar-toc)\n\n\u003cbr /\u003e\n\n| **Note:** This document is for customers using the standalone SOAR platform only.\n\n\u003cbr /\u003e\n\nTo safeguard your information, we recommend using strong passwords for all\nuser logins.\n\n### Change your password\n\nTo change your password, do the following:\n\n1. Click your user avatar.\n2. Select **Change Password** from the menu.\n3. Your password should include:\n - A minimum of 10 characters\n - One or more capital letters\n - One or more special characters\n\n### Enforce mandatory password changes\n\n| **Note:** The password policy applies to all standard users but does not affect Google SecOps administrators.\n\nTo safeguard your data, password changes are required every 90 days. The\nfollowing protocol is in place:\n\n- Passwords will expire after 90 days.\n- Users will receive notifications when their password is nearing expiry:\n - 14 days before password expiry\n - 7 days before password expiry\n - 2 days before password expiry\n - 1 day before password expiry\n- If a password expires or the user attempts multiple logins, the account locks.\n- Administrators can re-enable locked user accounts, and the password will be valid for another 90 days.\n\n**Need more help?** [Get answers from Community members and Google SecOps professionals.](https://security.googlecloudcommunity.com/google-security-operations-2)"]]