🔐 Enable Multi-Factor Authentication (MFA)
Multi-Factor Authentication (MFA) adds a second layer of security to your Microsoft 365 accounts. It requires users to verify their identity using a mobile app or text code in addition to their password.
👨💼 Step 1: Enable MFA from Admin Center
- Login to Microsoft 365 Admin Center
- Go to Users > Active Users
- Click on Multi-factor authentication at the top
- A new page will open → Select the users you want to enable MFA for
- Click on Enable → Confirm
📱 Step 2: User Setup & Enrollment
Once enabled, users will be prompted to set up MFA the next time they log in. They can choose one of the following:
- Microsoft Authenticator app (Recommended)
- Text message code (SMS)
- Phone call verification
📲 Recommended: Microsoft Authenticator App
Download and install the Microsoft Authenticator app from the App Store or Google Play. Scan the QR code shown during MFA setup to complete the process.
⚙️ Optional: Enforce MFA via Conditional Access
For organizations using Azure AD Premium, you can create Conditional Access policies to enforce MFA based on location, device, or app access.
🔐 Best Practices:
- Enable MFA for all global admins first
- Use app-based verification (push notifications or OTP)
- Regularly review sign-in logs from Microsoft Entra or Azure AD
Need Help?
ShivCloud can help implement secure MFA policies across your organization. Contact us at support@shivcloud.in or +91-8447596066.