
COVERT Protocol Action #3: Implement Multi-Factor Authentication whenever possible
About this episode
Implement multi-factor authentication (MFA) on every account, using the strongest method available with a graduated approach:
1. Audit all important accounts (email, banking, cloud storage, social media, password manager) to check whether MFA is supported.
2. For each account, go to the security or login settings and enable MFA. Choose the strongest method the service supports.
3. If using an authenticator app or hardware key, save backup/recovery codes securely (in case you lose your phone or key).
4. For accounts using SMS/email 2FA consider upgrading to a stronger method when available, especially for sensitive accounts.
5. Test the MFA setup by logging out and logging back in to confirm that the second factor works as expected.
Recommended Tools
Authy: a widely used authenticator app that generates time-based codes for TOTP-based MFA.
Proton Authenticator: privacy-focused app for generating MFA codes offline.
YubiKey: a hardware security key providing FIDO2/WebAuthn authentication for the strongest protection.
More At:
https://opsecpodcast.com/
Hosted on Acast. See acast.com/privacy for more information.
Get every episode summarized
Each time The OPSEC Podcast publishes, we email you a written briefing from the transcript — the topics, who appeared, and any specific claims, with the ad reads skipped.
Email me new episodesFree for 3 shows. No card needed.
Hosts & guests
No transcript yet
This episode has not been transcribed. Request it and it moves to the front of the queue.
More episodes
More from The OPSEC Podcast

Know Your Enemy: The Border Phone Wipe and the Adversary We Actually Fight
The OPSEC Podcast

Follow the Money: The Complete Surveillance Picture Built by Your Payment Histor...
The OPSEC Podcast

Podcast Update: What's New, What's Not, and What's Next
The OPSEC Podcast

Permanent Record: How School Data Breaches Put Your Child's Identity on the Mark...
The OPSEC Podcast