What’s New
We have introduced Multi-Factor Authentication (MFA) to enhance the security of the HR module. Users can now enroll in MFA using their phone numbers, providing an additional layer of protection for their accounts. Administrators gain visibility into MFA adoption through a dedicated section in the Admin Panel.
Key Updates
User Self-Enrollment for MFA
Users can enroll in MFA through their account settings in the HR module.
MFA activation requires phone number verification via an SMS-based One-Time Password (OTP).
NOTE: THIS OPTION WILL NOT APPEAR IF YOU LOG IN FROM THE ADMIN
Once enrolled, users can enable or disable MFA as needed.
Admin Visibility into MFA Status
Enhanced Security Measures
Phone numbers and MFA-related data are encrypted at rest and in transit.
Integration with a reliable SMS gateway ensures secure OTP delivery.
Comprehensive error handling addresses issues like invalid phone numbers or SMS gateway failures.
Impact
For Users:
MFA adds a robust layer of security, reducing the risk of unauthorized account access.
Simple enrollment and activation processes ensure ease of use.For Administrators:
The new Admin Panel view provides transparency into MFA adoption across users.
Administrators can monitor account security effectively.Overall:
This update aligns with best practices in account security, bolstering user trust and compliance with security standards.


