Password Theft Protection
Useless without your phone.
Technology Explained
Passwords get stolen and guessed. Two-factor authentication (often called MFA or 2FA) adds a second lock - even with your password, attackers can't get in without your phone. It's the single most effective account protection.

Two-factor authentication requires two proofs of identity:
Something you know: Your password.
Something you have: Your phone.
Stolen passwords become useless. Microsoft says this simple step blocks 99.9% of automated attacks. Required for Cyber Essentials.
Useless without your phone.
Fake sites can't prompt for your phone verification.
Stops credential stuffing cold.
Cyber Essentials requires it.
Password-only = complete access.
Attackers redirect payments, steal data.
Without a second step, one stolen password opens email, files and every connected app, turning a single careless click into a company-wide breach.
Without two-factor authentication, you can't pass Cyber Essentials.
Microsoft Authenticator with push notifications, Conditional Access policies, rollout support, and backup recovery methods.
Common questions about two-factor authentication: beyond passwords
Backup methods configured - secondary numbers, codes.
Authenticator is just tapping 'Approve'.
Avoid if possible - SIM swapping attacks are now common. Use authenticator apps or security keys instead.
Explore our other jargon-free technology guides
Let's talk about how we can implement these technologies for your organisation.
Ready to banish tech headaches? Fill out the form or book a chat directly. Tell us what you need help with and how best to reach you.
Trusted by local businesses for over 10 years
Thinking of switching providers? See how easy it is
Share the basics and we can start with the right context. Please do not include passwords or other sensitive information.
If the matter is urgent during business hours, call 01584 517 234.