Skip to main content

πŸ’Ό Multi-Factor Authentication (MFA) Implementation

  • Contextual name: πŸ’Ό Multi-Factor Authentication (MFA) Implementation
  • ID: /frameworks/cloudaware/identity-and-access-governance/mfa-implementation
  • Located in: πŸ’Ό Identity & Access Governance

Description​

Policies for identifying gaps in MFA enforcement for enhanced authentication security

Similar​

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlags

Policies (16)​

PolicyLogic CountFlags
πŸ“ AWS Account Root User Hardware MFA is not enabled. 🟒🟒 x3
πŸ“ AWS Account Root User MFA is not enabled. 🟒1🟒 x6
πŸ“ AWS CloudTrail Management Console Sign-In without MFA Monitoring is not enabled 🟒🟒 x3
πŸ“ AWS IAM User MFA is not enabled for all users with console password 🟒1🟒 x6
πŸ“ Google Accounts are not configured with MFA 🟒🟒 x3
πŸ“ Google Organization Administrator Security Key Enforcement is not enabled 🟒🟒 x3
πŸ“ Microsoft Entra ID Allow Users To Remember MFA On Devices They Trust is enabled 🟒🟒 x3
πŸ“ Microsoft Entra ID MFA For Administrators is not required 🟒🟒 x3
πŸ“ Microsoft Entra ID MFA For All Users is not required 🟒🟒 x3
πŸ“ Microsoft Entra ID MFA For Risky Sign-Ins is not required 🟒🟒 x3
πŸ“ Microsoft Entra ID MFA For Windows Azure Service Management API is not required 🟒🟒 x3
πŸ“ Microsoft Entra ID MFA to access Microsoft Admin Portals is not required 🟒🟒 x3
πŸ“ Microsoft Entra ID Non-Privileged User Multi-Factor Auth Status is not enabled 🟒🟒 x3
πŸ“ Microsoft Entra ID Privileged User Multi-Factor Auth Status is not enabled 🟒🟒 x3
πŸ“ Microsoft Entra ID Require MFA To Register Or Join Devices With Microsoft Entra ID is set to No 🟒🟒 x3
πŸ“ Privileged Azure Virtual Machine is accessed by identities without MFA 🟒🟒 x3