If security is important to you - look for ISO27001 accreditations
encryption of passwords for systems that contain critical/sensitive/customer data is required by the standard.
btw, does El Reg encrypt the passowrd i've just used to post a comment? ;-)