2. Try to change your password once a week or a month.
Specifically for this part (which usually not discussed), usually it's recommended to change your password between 3 months - 1 year.
1 week or 1 month is clearly too often to many people and it'll make people forget their password instead.