Free template

Password Reset SOP Template

Free, ready-to-use standard operating procedure for password reset processes. Copy, customize, or create it in Folge with screenshots.

What is a Password Reset SOP?

A Password Reset Standard Operating Procedure (SOP) is a documented process that IT support teams follow to securely reset user passwords while maintaining security protocols and providing excellent customer service.

This template helps your IT support team handle password reset requests consistently, efficiently, and securely—reducing resolution time and ensuring compliance with security policies.

When to Use This SOP Template

Help Desk Support

Standardize password reset procedures across your IT support team

Employee Self-Service

Create guides for employees to reset passwords independently

Security Compliance

Document procedures for audit trails and compliance requirements

Training New Staff

Onboard new IT support team members quickly with clear procedures

Password Reset SOP Template

Get this template instantly — copy or download, then customize for your team.

✨ Create in Folge

📋 Template Overview

Purpose: To provide a standardized, secure process for resetting user passwords

Scope: All IT support staff handling password reset requests

Time Required: 5-10 minutes per request

Tools Needed: Active Directory, Help Desk Software, Identity Verification System

Step-by-Step Procedure

1
Receive and Log the Request

Action:

  • Receive password reset request via phone, email, or ticketing system
  • Create a ticket in the help desk system with the following information:
    • User's full name
    • Employee ID or username
    • Contact information
    • Date and time of request
  • Assign priority level according to organizational policy

Expected Outcome: Ticket created and properly categorized

2
Verify User Identity

Action:

  • Ask the user to provide at least two of the following:
    • Employee ID number
    • Date of birth
    • Last four digits of Social Security Number
    • Department and manager name
    • Answer to security questions (if applicable)
  • Cross-reference provided information with user profile in Active Directory or HR system
  • For high-security accounts, require additional verification (callback to registered phone, manager approval, etc.)

⚠️ Important: Never reset a password without proper identity verification. If verification fails, escalate to IT security team.

Expected Outcome: User identity confirmed and documented in ticket

3
Reset the Password

Action:

  • Access Active Directory or your password management system
  • Locate the user account using their username or employee ID
  • Generate a temporary password that meets organizational complexity requirements:
    • Minimum 12 characters
    • Mix of uppercase, lowercase, numbers, and special characters
    • Not related to user's personal information
  • Check the "User must change password at next logon" option
  • If account is locked, unlock it
  • Click "Reset Password" or "Apply"

Expected Outcome: Password successfully reset with forced change on next login

4
Securely Communicate New Password

Action:

  • Choose a secure method to provide the temporary password:
    • In-person: Write password on paper, have user watch you destroy it after they log in
    • Phone: Spell out password clearly, confirm callback number matches records
    • Secure messaging: Use encrypted internal messaging system (never email)
  • Instruct the user to:
    • Change the password immediately upon first login
    • Not share the temporary password with anyone
    • Choose a strong, unique permanent password
  • Provide guidance on creating a strong password if needed

⚠️ Security Note: Never send passwords via unencrypted email or SMS

Expected Outcome: User receives temporary password securely and understands next steps

5
Verify Successful Login and Document

Action:

  • Ask the user to attempt login with the temporary password
  • Confirm they successfully logged in and were prompted to change their password
  • Verify they successfully set a new permanent password
  • Update the help desk ticket with:
    • Verification method used
    • Time of password reset
    • Successful login confirmation
    • Any issues encountered and how they were resolved
  • Mark ticket as resolved
  • Send user satisfaction survey if applicable

Expected Outcome: User has working access with new password, ticket properly documented and closed

6
Follow-Up Actions (If Needed)

Action:

  • If user continues to have issues:
    • Check for account lockout policies or restrictions
    • Verify network connectivity
    • Clear cached credentials if necessary
    • Escalate to Tier 2 support if unresolved
  • If this is a frequent issue for the user:
    • Document pattern in user profile
    • Consider password management training
    • Check for potential security concerns
  • Update knowledge base if new solution was discovered

Expected Outcome: All issues resolved or properly escalated, knowledge shared with team

Best Practices for Password Reset SOPs

✓ Security First

Always verify identity using multiple factors. When in doubt, err on the side of caution and escalate to security team. Document all verification steps taken.

✓ Use Strong Temporary Passwords

Generate complex temporary passwords using a password generator. Never use predictable patterns like "Password123!" or the user's name.

✓ Document Everything

Maintain detailed logs of all password resets for audit purposes. Include who requested, when, verification method used, and outcome.

✓ Educate Users

Take the opportunity to educate users about password best practices, password managers, and how to avoid future lockouts.

✓ Regular SOP Reviews

Review and update this SOP quarterly to ensure it aligns with current security policies, tools, and compliance requirements.

✓ Self-Service Options

Consider implementing self-service password reset tools with proper security (like SMS verification or security questions) to reduce ticket volume.

Create This SOP in Minutes with Folge

Stop copying and pasting templates. Create interactive, screenshot-based SOPs that your team will actually use.

  • Capture your actual workflow
  • Add annotations & highlights
  • Export to PDF, Word, or HTML
System Requirements: Windows 7 ( partial support), 8, 8.1, 10, 11 (64-bit only). OSX > 10.10. Available in 🇬🇧, 🇫🇷, 🇩🇪, 🇪🇸 , 🇮🇹, 🇳🇱, 🇵🇹/🇧🇷 and 🇯🇵 languages.

Frequently Asked Questions

How often should I update my password reset SOP?

Review your password reset SOP at least quarterly or whenever there are significant changes to your systems, security policies, or compliance requirements. Also update it after any security incident that reveals process gaps.

What's the best way to verify user identity for password resets?

Use multi-factor verification: combine something the user knows (employee ID, security questions) with something they have (registered phone number for callback, email on file). For high-privilege accounts, require additional verification like manager approval or in-person verification.

Can I automate password resets with self-service tools?

Yes! Self-service password reset tools (like Microsoft SSPR, Okta, or other identity management solutions) can significantly reduce IT support tickets. However, you still need an SOP for cases where self-service fails or isn't appropriate (e.g., contractor accounts, locked admin accounts).

How do I create a visual SOP like this with screenshots?

Use Folge to automatically capture your screen as you perform the password reset process. Folge will take screenshots at each step, which you can then annotate with arrows, highlights, and instructions. Export the finished guide to PDF, Word, HTML, or your knowledge base.

What should I do if I suspect a fraudulent password reset request?

Never proceed with the reset. Document the attempt, notify your security team immediately, and follow your organization's security incident response procedure. Contact the legitimate user through verified channels to alert them of the suspicious activity.

Related SOP Templates

Drawing Moonlanding

Start creating your documentation right now!

Folge is a desktop application. Download and use it for free forever or upgrade for lifetime features and support.

Looks like you are on mobile phone. Click here to send yourself download links for later
System Requirements: Windows 7 ( partial support), 8, 8.1, 10, 11 (64-bit only). OSX > 10.10. Available in 🇬🇧, 🇫🇷, 🇩🇪, 🇪🇸 , 🇮🇹, 🇳🇱, 🇵🇹/🇧🇷 and 🇯🇵 languages.
The Gold Standard Of Guide Creation
Jonathan, Product Director