• Skip to primary navigation
  • Skip to main content
Dean Dorton – CPAs and Advisors
  • Services
        • Audit & Assurance
          • Audits, Reviews & Compilations
          • ESG Programs & Reporting
          • Internal Audit
          • International Financial Reporting
          • Lease Accounting Managed Services
          • Peer Review Services
          • SOC Reporting
        • Family Office
        • Consulting & Advisory
          • Business Valuation Services
          • Forensic Accounting
          • Litigation Support
          • Matrimonial Dissolution
          • Merger & Acquisition
          • SEC Services
          • Succession Planning
          • Transaction Advisory Services
          • Whistleblower Hotline
        • Outsourced Accounting
        • Private Wealth
        • Healthcare Consulting
          • Finance
          • Health Systems Operational Transformation
          • Medical Billing and Credentialing
          • Risk Management & Compliance
          • Strategy and Strategy Implementation
          • Technology & Data Analytics
        • Tax
          • Business Tax
          • Cost Segregation Studies
          • Credits and Incentives
          • Estates and Trusts
          • Individual Tax
          • International Tax
          • SEC Provision and Compliance
          • State and Local Tax
        • Technology & Cybersecurity
          • Accounting Software
          • Cybersecurity
            • Cybersecurity Assessments
            • Cybersecurity Scorecard Assessment
            • Security Awareness Training
            • Virtual Information Security Office
          • Data Analytics & AI
          • IT Audit & Compliance
            • Cybersecurity Maturity Model Certification (CMMC)
            • Data Privacy Laws
            • SOC Reporting
          • IT Infrastructure & Cloud Solutions
            • Automation
            • Backup and Disaster Recovery
            • Cloud Strategy
            • Data Center
            • Enterprise Network
            • Network Security
            • Phone and Video Conferencing
            • User Identity Management Solutions
            • Webex
          • Managed IT Services
  • Industries
        • Construction
        • Distilleries and Craft Breweries
        • Energy and Natural Resources
        • Equine
        • Financial Institutions
        • Government
        • Healthcare
        • Higher Education
        • Life Sciences
        • Manufacturing and Distribution
        • Nonprofit
        • Real Estate
  • Insights
    • Articles
    • Guides
    • Case Studies
  • Events
  • Company
        • News
        • Our Team
        • Experiences
        • Careers
          • College Students
          • Experienced Professionals
        • Locations
        • Lexington, KY

          250 West Main Street
          Suite 1400
          Lexington, KY 40507
          859-255-2341

        • Louisville, KY

          435 North Whittington Parkway
          Suite 400
          Louisville, KY 40222
          502-589-6050

        • Louisville, KY

          700 North Hurstbourne Parkway
          Suite 115
          Louisville, KY 40222
          502-589-6050

        • Ft. Wright, KY

          810 Wright’s Summit Parkway
          Suite 300
          Fort Wright, KY 41011
          859-331-3300

        • Cincinnati, OH

          312 Walnut Street
          Suite 3330
          Cincinnati, OH 45202
          859-331-3300

        • Blue Ash, OH

          9987 Carver Rd
          Suite 120
          Blue Ash, OH 45242
          513-891-5911

        • West Chester, OH

          9025 Centre Pointe Drive
          Suite 310
          West Chester, OH 45069
          513-985-62405

        • Indianapolis, IN

          5975 Castle Crk Pkwy Dr N
          Suite 400
          Indianapolis, IN 46250
          317-469-0169

        • Raleigh, NC

          4130 Parklake Avenue
          Suite 400
          Raleigh, NC 27612
          919-782-9265

  • Contact Us

Token

Article 02.24.2015 Dean Dorton

What is multi-factor authentication?  Multi-factor authentication is a method of access control which requires a user to have two of the three factor categories: Knowledge – passwords; Possession – token or card; Inheritance – biometric.   While there is not currently any regulation or requirement for system-wide multi-factor authentication, it is a growing best practice.  Many areas of regulation or guidance, such as Health Insurance Portability and Accountability Act (HIPAA) or Payment Card Industry – Data Security Standards (PCI-DSS), encourage or require multi-factor authentication for remote network access.

The number of cybersecurity issues over the past five years continues to increase.  More and more sensitive information is being compromised due to poor password controls.  Phishing scams and malware outbreaks get more sophisticated and pervasive all the time.  These types of threats commonly result in user passwords being compromised. Other reasons to consider multi-factor authentication:

  • Many of the well-known data breaches from 2014 could have been avoided if the entity had a multi-factor authentication solution in place for the system housing sensitive information.
  • Identity theft is the fastest-growing type of crime, now more profitable than drug-related crimes.
  • Even if an organization employs vulnerability tests, anti-virus systems and advanced firewalls, lack of user authentication still leaves a company vulnerable to hackers.

According to the Verizon 2014 Data Breach Investigations Report, there were 1,367 confirmed data breaches and 63,437 security incidents in 2013 (these only account for incidents that were officially reported). Of the 1,367 breaches, the majority are precipitated external sources.

The next figure demonstrates the movement of different threat actions over the past three years.  As you will see, “Use of stolen credentials” has risen to the top of the threat list.

For more information about multi-factor authentication and information security risks, please contact Jason Miller, Director of Technology Consulting at Dean Dorton.

Jason Miller
jmiller@ddaftech.com
(859) 425-7626

View Jason Miller’s Bio

Filed Under: Cybersecurity, Managed IT & Infrastructure, Services, Technology Tagged With: Biometric, Information security, Jason Miller, Multi-factor authentication, Password, Token

PAY INVOICE SUBMIT RFP
  • Services
    • Outsourced Accounting
    • Audit & Assurance
    • Tax
    • Consulting & Advisory
    • Technology & Cybersecurity
    • Family Office
    • Wealth Management
  • Industries
  • Company
  • Locations
  • Careers
  • Insights
  • Events
  • Contact Us
SUBSCRIBE TO INSIGHTS
email Dean Dorton - CPAs And Advisors On Email facebook Dean Dorton - CPAs And Advisors On Facebook twitter twitter linkedin Dean Dorton - CPAs And Advisors On LinkedIn youtube Dean Dorton - CPAs And Advisors On YouTube

The matters discussed on this website provide general information only. The information is neither tax nor legal advice. You should consult with a qualified professional advisor about your specific situation before undertaking any action.

© 2026 Dean Dorton Allen Ford, PLLC. All Rights Reserved

  • Privacy Policy
  • Terms Of Use
  • Accessibility