To safeguard against new cyber threats, it is important to keep up with the most current user permissions. Two-factor authentication is essential. The digital landscape is always changing and cybercriminals remain one step ahead. To increase security, organizations should implement central solutions for access and user identification (IAM). These can be paired with better education for users.
A common way of deploying 2FA is to require users to use an authenticator application on their personal devices. This will ensure that only the user’s device is used to log into HubSpot and reduces the risk associated with stolen or lost credentials.
For example, Duo Security, a 2FA solution that was acquired by Cisco in 2018, offers mobile device support for its customers. The platform of the company uses FIDO and Web Authentication API standards (WebAuthn) to provide mobile device authentication by accessing built-in capabilities on iOS, Android and Windows smartphones. This is a convenient way for users to verify their identity without the need for an IT professional to update their apps or change settings. It can also prevent users from obstructing security controls.
Other methods to implement 2FA is to make sure that it is enabled in specific geographic locations and then use the network’s information to verify users’ location and block authentication attempts from a variety of suspicious networks such as Tor, VPNs, and proxy servers. These types of conditional policy can be imposed and set in several ways through the administrator dashboard of an IAM solution.
In addition it is essential to understand that the logistics of implementing and deploying 2FA will take some time. It is a good idea, to speed up the process by using an IAM solution which allows users to turn off 2FA if they aren’t longer able to use their authenticator app.