
Recent Posts
Multi Factor Authentication: What it is, why you need it & how to use it.

These days, passwords are no longer being viewed as the most secure way to protect an account. Cyber criminals are advancing at an exponential rate as are the ways in which they can find out your credentials. By only using a password as an authentication method, the security of an account is based solely on the strength of a password, which, as years of research has proven, is not generally very strong – two-thirds of people use the same password everywhere, and many of the passwords they use are easily guessed.
The combination of more sophisticated cyber criminals and hacking methods with bad password hygiene from employees has resulted in the use of Multi Factor Authentication becoming more commonplace across the business environment to help keep business processes secure. Furthermore, with the rise in remote work due to the coronavirus pandemic, IT departments need to ensure that it is as easy as possible for their staff to safely access applications from anywhere, at any time. According to data gathered from LastPass, around 57% of businesses were using multi factor authentication in 2019, a 12% gain on the stats gathered from the previous year.
What is Multi Factor Authentication?
Multi Factor Authentication, also known as MFA, is a security protocol for account logins which normally requires a combination of three elements. Each element must be done so correctly for users to be able to gain access to the account or network. These include:
- Something you know
This is generally your password. However, it can be anything you are able to remember such as a PINs, combinations or code words.
- Something you have
This can vary depending on the platform, your organisation or the network you are accessing and includes all items that are physical objects. For example, smart phones or keys which produce randomly generated codes.
- Something you are
This includes any part of the human body that can be offered for verification. For example, fingerprints or facial recognition.
MFA can sometimes be confused with two factor authentication which requires only the combination of the first two elements; something you know and something you have. If organisations want to have more than three elements for their MFA process, there is sometimes the option to have users confirm where they are, for example if a login is attempted from an IP address not recognised by the system, access will be denied, and the option to have users do something, such as inputting a particular sequence or pattern.
Why you need MFA
MFA adds that extra layer to account access, making it far more secure than only relying on a username and password. Here are the top reasons why you need to consider implementing this in the login process for platforms and networks in your organisation.
- Protect your business and the identity of staff
The purpose of multi factor authentication is that each element compensates for the weakness of others. For example, where passwords and pins can be susceptible to brute-force attacks, a type of cyber-attack where the hacker uses a software which uses trial-and-error to go through all possible combinations until it hits yours, something you have such as a code on your phone can not be so easily guessed. This protects your business as it decreases the chance of a cyber-criminal gaining access to business accounts and prevents the identity theft of individuals as a hacker needs to not only guess a password, but needs the mobile phone and any other elements – the more a cyber-criminal needs to have, the harder it becomes.
- Rise in cyber attacks
Cyber-attacks are becoming a daily concern for businesses. It is now a question of ‘when’ and not ‘if’ one will occur – in 2019, more than half of British firms reported a cyber-attack. Securing your applications and networks with MFA is pivotal if you want to improve the cyber security in your organisation and help prevent an attack.
- Stolen and weak passwords
Passwords have always been the default security measure. However, they are simply not secure. – in 2017, 80% of data breaches were the result of passwords being either too weak or easily stolen. Strong passwords are hard to come by these days, with most individuals opting to use ones that are easy to remember and therefore, easy to crack. You can find out the 2019 list of the most commonly used passwords here – some of them may surprise you!
- Simplification of login process
While you may think that having multiple authentication methods would make the login process more complex, this is not the case. MFA is a simple and inexpensive security measure which gives organisations access to more advanced login options such as ‘single sign-on’. With single sign-on users are validated through MFA in the login process, meaning that once the user is authenticated, they are logged into the single sign-on software. From this, they have access to all apps that are covered on the software without having to provide authentication elements for each app separately.
- Secures remote access
Remote access has been great for allowing employees to work from home throughout the coronavirus pandemic. Unfortunately, this shift has also created a rise in cyber-attacks on remote workers who do not have sufficient security measures in place; in a recent survey looking into the effects COVID-19 had on the security of remote working, 91% of executives stated that working from home led to a rise in attacks. What’s more – the survey found little confidence among respondents that the rollout to remote working had been done securely! MFA is one of the best ways to grant remote access while also fighting against cyber criminals and attacks on remote workers.
- To stay compliant
Companies in industries who deal with sensitive data such as personally identifiable information or financial details often must implement MFA in order to comply with compliance standards. Even if the business activities of your organisation do not specifically require MFA, it is normally the best step to take to protect your business.
How to use MFA
At the very least, we should all have a strong password and MFA turned on for both our personal and business emails. If a hacker gains access to your email, they can gain access to all your accounts as all they need to do is select ‘forgot password’! However, in a world where cyber-attacks are more prevalent than ever, it pays for organisations to have MFA implemented on all online logins and platforms.
The good news is, for most platforms, this can be done so easily as it is a simple as getting your employees to turn the service on. All employees need to do is head to settings then to the security section - from there, each platform will walk them through the process of setting it up.
There are also a number of tools available that will make MFA a possibility on those platforms that do not offer it. Free services include Google Authenticator which will enable 2FA, but if you require something more complex, you may want to consider platforms that are available for purchase such as Myki and LastPass.
MFA is an essential component of cyber security
Data breaches and cyber-attacks are real threats that need to be taken seriously. Fortunately, organisations are beginning to realise this and to address their concerns, are implementing MFA as a result. MFA will not only improve your security and help protect your business and employees, but it simplifies login processes, secures remote access and help you stay compliant no matter what industry you are in.
Subscribe here!
Recent Posts
Posts by tag
- technology (126)
- Security (107)
- cyber security (95)
- IT Security (94)
- Microsoft 365 (68)
- modern technology (68)
- Cloud (66)
- Managed Service (65)
- business (63)
- IT support (62)
- cloud computing (60)
- cyber attack (59)
- cloud it (56)
- microsoft (55)
- workplace (55)
- Microsoft Teams (53)
- cybersecurity (53)
- Working from home (51)
- productivity (49)
- office (46)
- IT (44)
- office 365 (44)
- Password Security (41)
- employees (39)
- entrustit (39)
- Uncategorised (38)
- flexible work (37)
- Remote (33)
- Cyber (32)
- efficiency (31)
- Hosted Workspace (30)
- hosted desktop (30)
- it support bournemouth (29)
- schools (29)
- independent schools (28)
- cyber privacy (27)
- school ict (27)
- collaboration (26)
- email security (26)
- it support dorset (26)
- 2023 (25)
- computing (24)
- it support hampshire (24)
- public cloud (24)
- it consultancy (20)
- it support southampton (20)
- password (20)
- entrust (19)
- it consultancy bournemouth (19)
- it consultancy hampshire (19)
- passwords (19)
- hosted applications (18)
- it consultancy dorset (18)
- IT audit (17)
- VoIP (17)
- cloud voip (17)
- covid19 (17)
- hacking (17)
- it consultancy southampton (17)
- it support winchester (17)
- msp (17)
- private cloud (17)
- ransomware (17)
- data (16)
- teamwork (16)
- Coronavirus (15)
- cloud cctv (15)
- GDPR (14)
- cctv (14)
- hackers (14)
- internet (14)
- network (14)
- office 365 support (14)
- IT costs (13)
- Protection (13)
- covid-19 (13)
- hack (13)
- internet safety (13)
- management (13)
- Hosted Desktop and Applications (12)
- Windows Virtual Desktop (12)
- hardware (12)
- hybrid cloud (12)
- windows 10 (12)
- 2020 (11)
- 2022 (11)
- Microsoft Planner (11)
- awards (11)
- vulnerabilities (11)
- Hampshire (10)
- data breach (10)
- digital (10)
- phishing (10)
- uk (10)
- windows (10)
- Backup (9)
- bitwarden (9)
- planning (9)
- software (9)
- telephony (9)
- IT Director (8)
- artificial intelligence (8)
- attack (8)
- communication (8)
- desk phone (8)
- education (8)
- eu (8)
- outsource (8)
- partnership (8)
- staff (8)
- usecure (8)
- Bournemouth (7)
- Dorset (7)
- Google (7)
- OneDrive (7)
- award winning (7)
- cloud storage (7)
- infrastructure (7)
- mobile (7)
- offsite backup (7)
- 2019 (6)
- AI (6)
- Apple (6)
- ISO (6)
- News (6)
- Skype for Business (6)
- apps (6)
- architect (6)
- child protection (6)
- european union (6)
- hacks (6)
- internet of things (6)
- legal (6)
- legal it (6)
- mobile phones (6)
- onsite backup (6)
- password manager (6)
- remote desktop service (6)
- resources (6)
- virus (6)
- 3d design desktop (5)
- Azure (5)
- Case Studies (5)
- Cyber Essentials (5)
- Cyber Essentials Plus (5)
- Desktop (5)
- Microsoft Copilot (5)
- Multi-Site Business (5)
- Risk assessment (5)
- Thames Valley Tech & Innovation Awards (5)
- The Business Magazine (5)
- Windows 7 (5)
- award (5)
- brexit (5)
- designer (5)
- ios (5)
- personal data (5)
- smartphone (5)
- sophos (5)
- surrey (5)
- united kingdom (5)
- website (5)
- Access Management (4)
- Attacks (4)
- BYOD (4)
- DR (4)
- DR planning (4)
- Facebook (4)
- Government (4)
- Microsoft Forms (4)
- SharePoint (4)
- VPN (4)
- WannaCry (4)
- computer performance (4)
- ddos (4)
- digital transformation (4)
- disaster recovery (4)
- iot (4)
- law (4)
- legacy (4)
- proactive (4)
- remote learning (4)
- wireless internet bournemouth (4)
- wireless internet southampton (4)
- 2021 (3)
- 2024 (3)
- AI CCTV (3)
- ChatGPT (3)
- Dorset Chamber (3)
- EDR (3)
- General (3)
- Google Drive (3)
- Hampshire Chamber (3)
- Help (3)
- IP (3)
- Local (3)
- NHS (3)
- New Forest (3)
- South Coast Tech & Innovation Awards (3)
- Tech Company of the Year (3)
- Tech Growth (3)
- Thames Valley (3)
- Tiva (3)
- Zoom (3)
- big switch off (3)
- budgets (3)
- citrix (3)
- closed cloud (3)
- copilot (3)
- copilot pro (3)
- digital hub (3)
- guide (3)
- innovation (3)
- instagram (3)
- intelligence (3)
- london (3)
- meetings (3)
- modern work (3)
- online meetings (3)
- sme (3)
- storage (3)
- strategy (3)
- teaching (3)
- trump (3)
- twitter (3)
- windows 11 (3)
- 2016 (2)
- 2018 (2)
- 5G (2)
- Bourne Group (2)
- Burhill (2)
- Burhill Group (2)
- CAD (2)
- Environment (2)
- Firewall (2)
- GPT-4 (2)
- Gen Z (2)
- Hampshire Business Awards (2)
- High Growth (2)
- ISBA (2)
- MDR (2)
- Macs (2)
- Microsoft Autopilot (2)
- Mr Mulligans (2)
- PaaS (2)
- Privacy Shield (2)
- Sydenhams (2)
- XDR (2)
- acquisition (2)
- afc bournemouth (2)
- afcb (2)
- android (2)
- b2b (2)
- bcs (2)
- berkshire (2)
- blockchain (2)
- broadband (2)
- camcloud (2)
- cryptocurrency (2)
- downtime (2)
- dropbox (2)
- east grinstead (2)
- exhibition (2)
- farnham (2)
- finalist (2)
- legalex (2)
- machine learning (2)
- macos (2)
- organisation (2)
- paypal (2)
- predictions (2)
- president (2)
- reading (2)
- serval systems (2)
- smart buildings (2)
- solent (2)
- us (2)
- video conferencing tools (2)
- 1998 (1)
- AMD (1)
- ARM (1)
- Abbey Hill (1)
- Aldwickbury Park (1)
- BBC (1)
- BGL Company (1)
- BUNKERS! (1)
- Birchwood Park (1)
- Burnout (1)
- CEO (1)
- Central South Business Awards (1)
- Cloud VMS (1)
- Cloudtango (1)
- Endpoint 100 (1)
- Fourth Industrial Revolution (1)
- Go Integrator (1)
- Growth 100 (1)
- Harvey Jones Kitchens (1)
- Hoebridge (1)
- Ignite 2018 (1)
- Ignite 2020 (1)
- Insider (1)
- Intune (1)
- LLM (1)
- Leaders (1)
- Loop (1)
- M&A (1)
- MFA (1)
- MPLS (1)
- MSP Select 2024 (1)
- Managed Service Provider of the Year (1)
- Market (1)
- May (1)
- Multi Factor Authentication (1)
- MyAnalytics (1)
- Ninja Warrior UK (1)
- PBX (1)
- PM (1)
- Power BI (1)
- Ramsdale Park (1)
- Redbourn (1)
- Regulation (1)
- Reid Steel (1)
- SD-WAN (1)
- Surrey Business Awards (1)
- Thornbury (1)
- WCry (1)
- WannaCrypt (1)
- Wifi (1)
- Wycombe Heights (1)
- ashley madison (1)
- bandwidth (1)
- battersea (1)
- beach (1)
- big data (1)
- bloatware (1)
- brand (1)
- builders merchant (1)
- business growth (1)
- business process audit (1)
- cambridge analytica (1)
- canada (1)
- cia (1)
- clinton (1)
- cnn (1)
- co op (1)
- compliance (1)
- connectivity (1)
- copyright (1)
- crime (1)
- dark web (1)
- defence (1)
- dkim (1)
- dmarc (1)
- dns (1)
- donald (1)
- dyn (1)
- eagle eye networks (1)
- election (1)
- enterprise (1)
- epos (1)
- equality (1)
- executive order (1)
- fax (1)
- football (1)
- gchq (1)
- grinstead (1)
- intel (1)
- intercept x (1)
- josh widdicombe (1)
- knights of old (1)
- landmarks (1)
- learning (1)
- legal technology forum (1)
- meltdown (1)
- millennials (1)
- mimecast (1)
- mirai (1)
- no-deal (1)
- number plate detection (1)
- onsite (1)
- outsourcing (1)
- paper (1)
- patisserie valerie (1)
- performance reviews (1)
- pound (1)
- premier league (1)
- private equity (1)
- procrastination (1)
- recruitment (1)
- research (1)
- retail (1)
- roundtable (1)
- samsic (1)
- sharefile (1)
- smart sensors (1)
- smishing (1)
- snowden (1)
- solent business awards (1)
- solentBA (1)
- spectre (1)
- spf (1)
- sterling (1)
- storm (1)
- talktalk (1)
- trumppresident (1)
- ukitawards (1)
- united states (1)
- usa (1)
- utility management (1)
- vault 7 (1)
- vitality stadium (1)
- whatsapp (1)
- white (1)
- white house (1)
- wikileaks (1)
- women in business (1)
- xiongmai (1)
- year (1)
- zero touch deployment (1)
- zero-trust (1)