V2verify Password Reset Pilot Questionnaire
1. How does a password reset occur today? *
Your answer
2. When the call is received at the help-desk, what is the help-desk process to authenticate the employee? *
Your answer
3. After authentication, does the employee tell the help-desk which system they need to reset? *
Your answer
4. Once the help-desk knows the system requiring the reset, are they able to reset the password for all systems? *
- Yes
- No
5. If so, can we get a listing of all the potential systems requiring a password reset?
- Yes
- No
6. If not, which systems cannot be reset by the help-desk?
- Yes
- No
7. How does the help-desk provide the new password to the employee? *
Your answer
8. Is this a temporary password or a permanent password? *
Your answer
9. V2verify’s application is hosted on AWS. Is this acceptable? If not, where would you want to host the application? *
Your answer
10. Do you have remote employees? If so, do you have a way of identifying the employee before they are on-boarded to the system? *
Your answer
11. For the pilot, is the plan to use a sample number of employees? If so, how many? *
Your answer
12. For the pilot, will this be for only certain systems? *
Your answer
13. If so, which?
Your answer
14. Would you want V2verify to generate a new random/temporary password? What are the password requirements (length, alpha/numeric, special characters, etc.)?
Your answer
15. To reduce the impact on the team and development time, V2verify proposes using a mobile app for the password reset process. Is this feasible? *
- Yes
- No
16. Is there an architecture diagram of the current password management system and how it is integrated with the help-desk? *
- Yes
- No
17. Does the architecture diagram incorporate with SSO (if applicable)?
- Yes
- No
18. With the IVR for the help-desk, can you provide the brand, model and software specifications?
Your answer
19. If going the route of IVR, during the pilot we recommend switching to V2’s IVR for the password reset, we would then authenticate the employee, reset to a temp password and communicate that information to your password management system. Is this feasible?
- Yes
- No
20. If switching to our IVR, do you have a space in your data center for a small IVR box?
- Yes
- No
21. If V2 is providing hardware, does this require additional validation or security?
- Yes
- No
22. If you prefer to use your own IVR, who would be responsible for the updates to your IVR? Do you have the ability to modify your IVR? *
Your answer
23. Is there a vendor security process that V2 will need to go through before the pilot? *
- Yes
- No
24. If so, how long does that typically take and can we get started right away?
Your answer
25. Any other questions?
Your answer
Note: Never submit passwords through Google Forms.