From the course: Microsoft Security, Compliance, and Identity Fundamentals (SC-900) Cert Prep by Microsoft Press

Unlock this course with a free trial

Join today to access over 23,200 courses taught by industry experts.

Describe multifactor authentication

Describe multifactor authentication

- Describe the authentication capabilities of Azure AD. In this case, let's describe multi-factor authentication. Multi-factor authentication or MFA is a security process in which users are prompted during the sign-in process for additional form of identification, such as a code on their cell phone or a fingerprint scan. If you only use a password to authenticate a user, it leaves an insecure vector for an attack. If a password is weak or has been exploited elsewhere, an attacker could be using it to gain access. When you require a second form of authentication, security is increased because this additional factor isn't something that's easily for an attacker to obtain or duplicate. Azure AD Multi-Factor Authentication works by requiring two or more of the following authentication methods. Something you know, typically a password, something you have, such as a trusted device that's not easily duplicated like a phone or a hardware key, and something you are, biometrics like a…
