CISO MFA Implementation: Addressing Increased Time to Tasks

Addressing Increased Time to Tasks

Question

A Chief Information Security Officer (CISO) implemented MFA for all accounts in parallel with the BYOD policy.

After the implementation, employees report the increased authentication method is causing increased time to tasks.

This applies both to accessing the email client on the workstation and the online collaboration portal.

Which of the following should be the CISO implement to address the employees' concerns?

Answers

Explanations

Click on the arrows to vote for the correct answer

A. B. C. D.

D.

The Chief Information Security Officer (CISO) implemented multi-factor authentication (MFA) for all accounts in parallel with the Bring Your Own Device (BYOD) policy. After the implementation, employees report that the increased authentication method is causing increased time to complete tasks, specifically accessing the email client on the workstation and the online collaboration portal.

To address the employees' concerns, the CISO should consider implementing Single Sign-On (SSO). SSO allows users to access multiple applications with a single set of credentials, reducing the need to repeatedly authenticate with different applications. By implementing SSO, employees will only need to authenticate once to access all their required applications, including the email client and the online collaboration portal, reducing the time needed to complete tasks.

Option A - Create an exception for the company's IPs - This option does not address the employee's concerns about increased time to tasks when accessing the email client or the online collaboration portal. It only applies to specific IP addresses and does not reduce the number of authentication requirements.

Option B - Implement always-on VPN - This option can improve security by ensuring all communications are encrypted and secure, but it may not address the employee's concerns about the increased time needed to complete tasks.

Option C - Configure the use of employee PKI authentication for email - This option can improve security by using Public Key Infrastructure (PKI) to authenticate users, but it may not address the employee's concerns about the increased time needed to complete tasks.

Therefore, the best option for the CISO to implement to address the employees' concerns is to allow the use of SSO.