Multifactor Authentication
Multifactor authentication (MFA) is a security method that requires you to verify your identity using two or more factors — such as your password plus an authenticator app, passkey, text code or phone approval — before you can access an account or system.
MFA helps protect your account by requiring more than just a password when signing in. It is important because it adds an extra layer of security that helps prevent unauthorized access, phishing and account compromise.
SECURE SIGN-IN METHODS
Learn how an authenticator app and passkey provide secure ways to verify your identity when signing in.
An authenticator app is a secure tool on your phone that generates dynamic, temporary security codes or sends push notifications to confirm your identity when signing in.
Instead of relying on text messages, which can be delayed or intercepted, the app works as a digital token generator tied specifically to your device.
Using an authenticator app adds an extra layer of protection to your college account, ensuring that even if someone steals your password, they cannot log in without physical access to your phone.
Why use an Authenticator App?
-
Consolidated Access: Houses login verification for your college portal, personal email and other accounts in one organized, central app
-
Faster, Seamless Logins: Push notifications allow you to approve sign-ins with a single tap rather than waiting for and typing out manual text codes
-
Phishing and Scam Protection: Prevents unauthorized access because hackers cannot log in with just your password — they would also need physical access to your phone
-
Protection Against SIM Swapping: Protects against phone number hijacking scams that intercept SMS text messages sent over cellular networks
To set up an authenticator app, follow the steps below:
- Download and install your preferred authenticator app (Microsoft Authenticator or Google Authenticator) from the Apple App Store (iOS) or the Google Play Store (Android)
- Sign in to MFA Security Settings
- Select Add sign-in method
- Choose Authenticator App
- Follow the prompts to complete setup
- Sign in using authenticator
RESOURCES
Passkeys replace traditional passwords with a fast, secure login method built directly into your phone or computer.
Instead of typing a password, you simply unlock your device using face ID, touch ID or your phone's PIN to log into your college accounts.
Passkeys are used because they cannot be stolen, guessed or phished by fake websites, making your account more secure while allowing you to sign in within seconds without remembering passwords or waiting for text codes.
Why use Passkeys?
-
Better Long-Term Readiness: Moving to passkeys prepares users for modern authentication standards as organizations phase out weaker methods like SMS and voice verification
-
Faster and Easier Sign-Ins: Users can sign in with a fingerprint, face recognition or device PIN instead of typing codes
-
Improved Account Security: Passkeys use device-based authentication, making it harder for attackers to access an account even if they know the password
-
No More SMS Code Risks: Passkeys reduce reliance on text messages, which can be intercepted, redirected or targeted through SIM-swap attacks
-
Stronger Protection Against Phishing: Passkeys are phishing-resistant because they only work with the legitimate sign-in service
To set up a passkey, follow the steps below:
- Sign in to MFA Security Settings
- Select Add sign-in method
- Choose Passkey
- Follow the prompts to complete setup
- Sign in using your fingerprint, face recognition or PIN
RESOURCES
COMMONLY ASKED QUESTIONS
Who needs MFA?
MFA is needed by anyone who signs in to protected college systems or services, including
employees, students and other authorized users. It helps verify that the person accessing
the account is really the account owner.
When do I have to register for MFA?
New accounts are automatically enrolled in MFA when they are created. Existing accounts
should have already been enrolled.
What devices can I use to register?
- Authenticator on mobile devices
- Passkey on mobile, laptop and desktop devices
- SMS and voice call verification may still be available until February 1, 2027, but are no longer the recommended authentication methods.
Why should I switch to authenticator or passkey?
Microsoft will retire SMS and voice call authentication methods on February 1, 2027.
Switching to an authenticator or passkey now helps ensure continued access to your
account.
Having trouble?
If you are having trouble, please contact TeCS by calling (626) 857-4100 or ext. 4357
(HELP) from on campus.