>>39866182Hypothetically sure. But in reality, that’s not how it works at all. Like all things cybersecurity it’s easy to claim only 1 person should have access and that the password should be 4 words of 8+ characters and they should always run a virus scan before logging in and…
But nobody is going to do that.
Management needs access to respond to queries and to potentially tweet stuff out, as we’ve seen here. Having 1 or 2 people in charge of the accounts fails on the PR side because you can’t rely on them to watch all streams or to respond to important messages in a reliable amount of time. If you’ve ever worked in any of these areas or are familiar with the culture, you’d know they don’t give a fuck about the security and the password is 100% written on a post it note
And we’re talking the holoen Twitter account, the risk assessment here isn’t that high.