AccountRight company files can contain lots of private and sensitive information. Ensure that you take the following precautions to secure your information:
Restrict access with company file user accounts
Create a username and password for each person who will work on your company file. This set of credentials is called a company file user account. For help setting up an account, see Add a user if your file is online, otherwise see Add a user to an offline file.
- Ensure each company file user account has a strong password, especially the Administrator system account, and any other accounts that have been given the Administrator role. See Managing passwords.
- Assign appropriate roles to each company file user account, so that they can get access to the information they need for their day-to-day work. Use roles to restrict access to sensitive information, like bank account details or payroll information. See Default user roles.
- Review the security audit reports to check for unauthorised access attempts or transactions.
Are all MYOB accounts set up and used correctly?
If your company file is online, all users who will access your file need their own MYOB account (also known as a my.MYOB account). A user can sign up for an account on the my.MYOB website, or they'll be prompted to create an account when you invite them to access your online file. See About my.MYOB and Accept an invitation to work online.
- When accessing an online file, each user should sign in with their own MYOB account.
- Ensure each user of your file has secured their MYOB account with a strong password.
- When inviting a new user to access your online file, assign them the correct access level. For example, most users should be set up as Online File Users. When they sign on with their MYOB account, they will only have access to files they've been invited to. See Set a user's online access level.
- Only people you trust to have full access to all your online files should be set up as Online Administrators. You can see which MYOB accounts have online administrator access on the my.MYOB website. See Set a user's online access level.
- If more than one person shares a computer, don't choose the Stay signed in for 12 hours option when entering your MYOB account details.
- If someone leaves your business, make sure you remove their user access too. See Remove user access.
Make sure your devices are secure and up to date
- Each user of a computer should have their own password-protected Windows user account and sign into Windows using their own account. See the Microsoft Support Centre for help setting up Windows user accounts.
- If someone else needs to use the computer, the current user should sign out from Windows, or use Windows' "Switch account" feature to give the other person access.
- Lock your computer when you take a break or leave for the day.
- All users should be set up as standard users, unless they require administrator privileges, such as the ability to install applications on the computer.
- Ensure that you have installed all Microsoft Windows updates on all computers.
- Whether you use Windows' built-in anti-virus features, or have a third-party anti-virus application, ensure that the virus definitions are updated frequently, and that your PC is scanned regularly.
- If you're using AccountRight Server Edition, don't override the firewall settings that AccountRight configures on installation. Remote access to your file is not supported, and can lead to security issues. If you need remote access to a file, put it online. See Set up a network.
Learn more about user accounts
See the following table to learn more about MYOB accounts, company file user accounts and Windows user accounts:
|MYOB account||Company file user account||Windows user account|
|What is it?||Your login details for all MYOB online services.||Your sign-on details for a specific AccountRight company file (online or desktop).|
Your computer sign-on details for Microsoft Windows.
You can choose to sign on with a local account, or your Microsoft account details.
|What do the login credentials look like?||Email address|
|User ID (for example, your name)|
If you've linked your Microsoft account:
|When do I need to enter these credentials?||When signing into MYOB online services, including:|
When opening an AccountRight company file.
|When starting Microsoft Windows.|
|Do I need to enter these details every time?||You can choose to stay signed in for 12 hours. You won’t need to enter your details each time you start AccountRight over the 12-hour period, but for some actions, such as refreshing bank feeds or making a superannuation payment, you will need to enter your credentials again.||For online company files, you can choose to link your company file user account and MYOB account. If you choose this option, you won’t need to enter your company file user account credentials when opening the file.||You need to enter your password each time you lock or restart your computer.|
|How do I get an account?||You can sign up for an MYOB account at my.MYOB.com.au or my.MYOB.co.nz||A company file administrator can set up user accounts. See Add a user.||A Windows administrator can add a local user account for you. You can choose to link the account to your Microsoft account.|
|How many of these accounts do I need?||1 per person||1 per company file||1 per person|
|Can multiple people share the account?||No. For security reasons, everyone should have their own MYOB account.||No. For security reasons, everyone should have their own company file user accounts.||No. For security reasons, everyone should have their own Windows account.|
|Is a password mandatory?||Yes. Ensure you choose a strong, unique password.||While a password is optional, we recommend that each user account has a unique password, especially administrator accounts.||While a password is optional, it's recommended that you password-protect each Windows account, especially administrator accounts.|
|What should I do if I forget my password?||Click the "Forgot your password?" link at my.MYOB.com.au or my.MYOB.co.nz||See the Managing passwords help topic.||Contact your Windows or network administrator.|