Skip to main content

Multi-Factor Authentication

Setting up Multi-Factor Authentication

We recommend using the Microsoft Authenticator app to set up MFA, as this is the most secure method. We also suggest adding a secondary option, such as text message or phone call verification so you have an alternative option should the Authenticator app be unavailable when you are signing in.

First, download the Microsoft Authenticator App to your mobile phone:

On your computer, open a web browser and visit the MFA setup page.

Enter your Heriot-Watt username and password, then you'll see a 'More Information Required' screen:

  1. Click 'Next' and the 'Additional security verification' screen will appear.
  2. In the drop-down box, select 'Mobile App' and 'Receive notifications for verification'.
  3. Now click 'Set up' and scan the QR code on the Configure Mobile app screen.

On your mobile phone, start the Microsoft Authenticator App:

  1. Once in the App, click on the 3 dots in the top right-hand corner of the screen and choose 'Add account' > 'Work or school account'
  2. Select 'Scan a QR code' and Allow any permissions for your app to use the phone camera
  3. Scan the QR code on your screen using your phone. The account is now linked to your App.

On your computer, click 'Next' and you should see a message indicating that the App has been set up. You can click 'Next' again – at this point you will be asked to respond to a pop-up notification on your phone from the Authenticator App – this is how you will be prompted every time you access your account on an unknown device.

Once the setup is complete, you'll be prompted to enter a phone number. Please provide this: it will help if, for some reason, you lose access through the App. The phone number will not be used for marketing purposes.

Click 'Finish'. Your account is secured with Microsoft Multi-Factor Authentication. Nobody can access your Heriot-Watt account without being in possession of your username, password, and – most importantly – your unlocked mobile phone.

Settings and changes

Once configured, you can check your current settings and make changes.

FAQs

Multi-Factor Authentication (MFA) is a secure additional login process. It protects you and Heriot-Watt University from unauthorised access to your account, which may occur if you only use a username and password. You will receive a code to enter for authentication to use along with your username and password.