HomeBlog › Backups That Actually Work

Why I Quit Trying to Remember Passwords — and What I Use Instead

Security By Jordan Polasek, Founder of BVTech LLC · July 3, 2026 · 5-min read

By Jordan Polasek · July 3, 2026

A few years back, a small accounting office near Sugar Land called me after one of their staff got locked out of everything on a Monday morning. The story came out slowly, the way these stories usually do. One password had been reused across email, the bookkeeping software, and a couple of vendor logins. That password showed up in a data breach somewhere else entirely, and once someone had it, they had a key that opened a lot of doors.

Here's the part that always sticks with me: nobody in that office did anything careless. They were smart, careful people. They just did what almost all of us were taught to do — pick a password we could remember, and reuse it because remembering forty different ones is impossible.

That last part is the real problem. And once I understood it, I stopped trying to fix human memory and started fixing the system around it.

The math nobody tells you about passwords

The average person now has somewhere north of a hundred online accounts. Nobody remembers a hundred strong, unique passwords. So we do one of three things: reuse the same one everywhere, use tiny variations (Spring2024!, then Spring2025!), or keep a list in a notebook or a spreadsheet.

All three feel reasonable. All three are exactly what someone hoping to break in is counting on.

The reason reuse is so dangerous is that breaches don't stay contained. When one website gets compromised, those email-and-password combos get bundled up and tried automatically against everything else — your bank, your Microsoft 365, your payroll system. It's cheap, it's automated, and it works often enough to be worth their time. You didn't get "hacked" in the movie sense. You just used the same key on two doors, and one of them wasn't yours to trust.

The goal isn't a cleverer password. It's never using the same one twice — and no human can do that from memory.

A password manager is just a better filing cabinet

When I explain this to a client over coffee, I skip the jargon and say it plainly: a password manager is an app that remembers all your passwords for you, locked behind one strong password only you know.

That's it. You memorize one good passphrase. The app handles the other hundred — and it makes each one long, random, and different. When you log into a site, it fills the password in for you. When you sign up for something new, it offers to create a strong one on the spot and saves it automatically.

A few things surprise people the first week they use one:

For a business, the team versions are even better. You can share a vendor login with an employee without ever telling them the actual password, and when someone leaves, you shut off their access in one place instead of scrambling to remember every account they touched. (I wrote more about that scramble in an earlier post on offboarding — it's a bigger deal than most owners realize.)

Pair it with one more thing and you're ahead of most

A password manager solves the "unique password" problem. The second habit worth building is multi-factor authentication — that six-digit code or phone tap you get when logging in.

Think of it as a deadbolt on top of the doorknob. Even if someone somehow got your password, they'd still need the code that lands on your phone. It takes ten seconds at login and stops the overwhelming majority of account-takeover attempts cold. Turn it on for your email and your financial accounts first — those are the master keys to everything else.

You don't need to do all of this at once. You just need to start.

What to do this week

Thirty minutes gets you most of the protection. The rest you can migrate a little at a time, whenever a site asks you to log in.

This is one of those rare security upgrades that costs almost nothing, makes your day-to-day easier, and quietly removes one of the most common ways small businesses get burned. I've watched it turn a Monday-morning disaster into a non-event more than once.

If you'd like a hand setting this up for your team — or you're just not sure which option fits how you work — that's exactly the kind of thing we help Texas small businesses with every day. Reach out anytime through BVTech. No pressure, no jargon — just a straight answer.

— Jordan Polasek

Jordan Polasek — Founder of BVTech LLC

About Jordan Polasek

Jordan Polasek is the Founder and Managing Partner of BVTech LLC, a Texas-based managed service provider with thirteen years of field experience. AWS certified. 4.0 GPA in Cloud Computing. SuperOps Solo MSP of the Year 2023.

Let's Start With a Conversation

Free consultation for Texas businesses exploring a change. Honest talk, not sales pressure.