Home › Knowledgebase › KB-649

How to set up and use a Password Manager for your team to improve business security

Summary

This guide helps you troubleshoot and resolve: How to set up and use a Password Manager for your team to improve business security. Follow the steps below to fix the issue.

Quick Tip: Need immediate assistance? 💻 Open a Ticket

Common Causes

Managing business credentials via spreadsheets or sticky notes creates a significant security vulnerability for your organisation. A professional password manager encrypts your data and allows you to securely share logins with specific team members without exposing the actual password. This guide will walk you through the process of selecting, configuring, and deploying a password manager for your business.

Choosing the Right Tool

While there are many options available, we generally recommend business-grade solutions such as Bitwarden, 1Password, or Dashlane. These tools provide centralised administration, allowing you to revoke access immediately when an employee leaves the company.

Detailed Instructions

Step 1: Initial Administrative Setup

  1. Create your primary administrative account using a secure business email address.
  2. Set a strong Master Password. This is the only password you will need to remember; if this is lost, your data may be unrecoverable.
  3. Enable Two-Factor Authentication (2FA) immediately. We recommend using an authenticator app (like Microsoft Authenticator or Google Authenticator) rather than SMS.
  4. Create a Recovery Key or Emergency Access contact. Store this physical key in a secure location, such as a company safe.

Step 2: Organising Your Vaults (Collections)

To maintain security, you should organise passwords into shared folders or "Collections" based on job roles rather than putting everything in one place.

Step 3: Onboarding Your Team

  1. Navigate to the Admin Console and select Invite User.
  2. Enter the employee's business email address.
  3. Assign the user to the relevant Collections they require for their role.
  4. Instruct the employee to follow the invitation link and set their own unique Master Password.

Step 4: Installing the Extensions and Apps

To get the most out of a password manager, your team must install the software on all their devices:

Pro Tip: Encourage your team to use the Password Generator tool within the manager to create complex, random strings (e.g., kP9#vL2!zX8mQ) for every new account.

Best Practices for Business Security

Managing Shared Credentials

When sharing a login, avoid sending the password via email or Slack. Instead:

  1. Add the credential to a shared Collection.
  2. The team member will see the login fields auto-populate in their browser, but the actual password remains hidden behind the encryption.

The "Clean Up" Process

Once your team has migrated their passwords into the manager, perform the following security hygiene steps:

Critical Warning: Never share your personal Master Password with anyone, including IT support or management. A password manager is designed so that the service provider cannot see your data; therefore, they cannot reset your Master Password for you.

Troubleshooting

Auto-fill is not working

If the password manager is not suggesting logins on a webpage:

User cannot access a shared folder

  1. Go to the Admin Console.
  2. Select Users and click on the specific employee.
  3. Verify that the correct Collection is checked under their permissions.
  4. Ask the user to click Sync Vault within their app settings to pull the latest changes.

If you require assistance with the initial deployment or a security audit of your current credentials, please Open a Ticket.

Still Having Issues?

Need more help? If the issue persists after trying these steps, please open a support ticket and our team will assist you.

💻 Open a Ticket