Other Articles

User – Enable Azure MFA

This check ensures that Multi-Factor Authentication (MFA) is enabled for Azure users to strengthen account security and reduce the risk of unauthorized access.

Check Details

  • Resource: Microsoft Entra ID Users
  • Check: Ensure MFA Is Enabled
  • Risk: Accounts without MFA are vulnerable to credential theft, brute-force attacks, phishing, and password spray attacks, potentially leading to unauthorized access and data breaches.

Remediation via Azure Portal

  1. Log in to the Microsoft Entra Admin Center. Microsoft Entra Admin Center dashboard
  2. Navigate to Users → All Users.
  3. Navigate to Per-user MFA Entra Per user MFA
  4. Select the user account you want to secure. Enable MFA button
  5. Click Enable MFA Enable MFA