M-Systems
 
Multi-Factor Authentication Use Case

Summary: M-Systems' implementation of Multi-Factor Authentication for patient portal logins provides an additional layer of security to prevent unauthorized users from accessing existing patient portal accounts.

Description:  When logging into the patient portal, a unique code is sent to the email associated with the user's account after username and password have been successfully verified.  This unique code must be entered entered and verified within a pre-determined time frame to complete the login process.

Prerequisites:  Existing patient portal username and password with associated email address. Ability to access associated email address.

Action upon Success: User is granted portal session.

Action upon Failure: Failure notice with contact instructions.

Note: Session timeout will require new login with MFA.  Multiple failures will result in locking of account.