Identify potential MFA risks

Use the MFA & SSO org graph to detect gaps in the multifactor authentication (MFA) and Single Sign-On (SSO) coverage for apps in your org. This graph provides a visual map of your org's authentication flows, helping you gain a deeper understanding of your security posture. It enables you to do the following tasks:

  • Discover and continuously monitor authentication methods across your environment

  • Identify potential security risks, such as apps that bypass SSO or lack MFA enforcement

  • Visualize the access and risk relationships between user accounts and apps

  • Investigate MFA requirements at the app level, with clear visual indicators for enforcement status

Identify accounts and apps without MFA or that can bypass SSO

  1. In the ISPM console, go to Dashboard MFA & SSO Org Graph.

  2. Review the counts that are associated with the various connecting lines, sources, and apps to assess your org's MFA posture.

  3. Click on a percentage or count to get detailed information on authentication methods, accounts, and apps.

    • To view MFA requirements for user accounts when they sign in to a source or when they access various connected sources, click the percentage or count on the connecting line.

      MFA and SSO org graph

    • To view MFA requirements for user accounts who have access to a source or app, click the source or the app's icons.

      MFA and SSO org graph

  4. Use the filters or click the bar graph on the side panel to filter results by MFA requirements.

  5. Optional. Click Export as PDF on the side panel to download the filtered data. Alternatively, exit the side panel and click Export to PDF to download all data from the graph.

Related topics

MFA posture

Supported detections