CA and MFA
Let’s start this chapter by taking a look at CA and MFA and why this is an important subject. In the past, it was common practice to have an account on a website with only a password to protect it. In the last decade, it has become a security best practice to use a second factor as an extra means to authenticate yourself.
One common reason that a user account is breached is because there isn’t a second-factor authentication configured. By adding a second factor, we can increase the security of the user account by 99.9%. As you can see in Figure 4.1, there are various methods of verification that a user can add by logging on to their user profile at https://myprofile.microsoft.com/.
Figure 4.1 – Security info
Not all authentication options are available to the users unless the IT admins enable them. This can be done in the Microsoft Entra portal (https://entra.microsoft.com) in the Protection menu, as shown in Figure 4...