Implementing and managing MFA
In the modern workplace, users are increasingly accessing their data from almost anywhere in the world and from multiple devices. This increases the burden on Microsoft 365 administrators, who not only need to support this modern and more agile way of working but also need to ensure that users, resources, and data are secure and protected. By default, Microsoft 365 user accounts authenticate to Azure AD with only a user ID and password. In the modern security landscape, this simply does not provide enough protection from threats such as phishing attacks.
As was briefly highlighted in Chapter 1, Planning for Hybrid Identity, MFA within Microsoft 365 can help protect your organization by providing two-step verification to Microsoft services via approved authentication methods. As a quick reminder, these authentication methods can be based upon the following aspects:
- Something you know, such as your password
- Something you own, such as your...