Asset & Access Protection
What is MFA (Multi-Factor Authentication)?
A second login step that stops most account-takeover attacks.
MFA means proving who you are with two things instead of one: something you know (your password) and something you have (a code from an app on your phone).
Why it matters: even if a hacker steals or guesses a staff password, they still cannot log in without the second step. Industry data shows MFA blocks the large majority of automated attacks.
Practical example: a finance clerk's email password leaks in a data breach. Because MFA is switched on, the attacker is asked for a code from the clerk's authenticator app, which they do not have, so the break-in fails.
Getting started: turn on MFA for email first (Microsoft 365 or Google Workspace both support it for free), then for any system holding customer or financial data. Use an authenticator app rather than SMS where possible.