Skip to main content

💼 Multi-Factor Authentication (MFA) Implementation

  • ID: /frameworks/cloudaware/identity-and-access-governance/mfa-implementation

Description

Policies for identifying gaps in MFA enforcement for enhanced authentication security

Similar

Sub Sections

SectionSub SectionsInternal RulesPoliciesFlagsCompliance

Policies (16)

PolicyLogic CountFlagsCompliance
🛡️ AWS Account Root User Hardware MFA is not enabled.🟢⚪🟢 x2, ⚪ x1no data
🛡️ AWS Account Root User MFA is not enabled.🟢1🟢 x6no data
🛡️ AWS CloudTrail Management Console Sign-In without MFA Monitoring is not enabled🟢⚪🟢 x2, ⚪ x1no data
🛡️ AWS IAM User MFA is not enabled for all users with console password🟢1🟢 x6no data
🛡️ Google Accounts are not configured with MFA🟢⚪🟢 x2, ⚪ x1no data
🛡️ Google Organization Administrator Security Key Enforcement is not enabled🟢⚪🟢 x2, ⚪ x1no data
🛡️ Microsoft Entra ID Allow Users To Remember MFA On Devices They Trust is enabled🟢⚪🟢 x2, ⚪ x1no data
🛡️ Microsoft Entra ID MFA For Administrators is not required🟢⚪🟢 x2, ⚪ x1no data
🛡️ Microsoft Entra ID MFA For All Users is not required🟢⚪🟢 x2, ⚪ x1no data
🛡️ Microsoft Entra ID MFA For Risky Sign-Ins is not required🟢⚪🟢 x2, ⚪ x1no data
🛡️ Microsoft Entra ID MFA For Windows Azure Service Management API is not required🟢⚪🟢 x2, ⚪ x1no data
🛡️ Microsoft Entra ID MFA to access Microsoft Admin Portals is not required🟢⚪🟢 x2, ⚪ x1no data
🛡️ Microsoft Entra ID Require MFA To Register Or Join Devices With Microsoft Entra ID is set to No🟢⚪🟢 x2, ⚪ x1no data
🛡️ Microsoft Entra ID User Multi-Factor Auth Status is not enabled🟢⚪🟢 x2, ⚪ x1no data
🛡️ Privileged Azure Virtual Machine is accessed by identities without MFA🟢⚪🟢 x2, ⚪ x1no data
🛡️ Snowflake User MFA is not enabled🟢1🟢 x6no data