Konfirmity

Enable MFA for AWS SSO Identity Center users

Tanmay Naik

Tanmay Naik

2025-05-31

Enable MFA for AWS SSO Identity Center users

NOTE: You can configure MFA capabilities in IAM Identity Center when your identity source is configured with IAM Identity Center’s identity store, AWS Managed Microsoft AD, or AD Connector. MFA in IAM Identity Center is currently not supported for external identity providers.

MFA enforcement is step one. Real security posture comes next.

Drop your work email and we'll show how identity controls map to compliance evidence.

To configure MFA device enforcement for your users
  1. Open the IAM Identity Center console.
  2. In the left navigation pane, choose Settings.
  3. On the Settings page, choose the Authentication tab.
  4. In the Multi-factor authentication section, choose Configure.
  5. On the Configure multi-factor authentication page, under If a user does not yet have a registered MFA device choose the option Require them to register an MFA device at sign in.
  6. Choose Save changes.

How Real Security Becomes Compliance

Built by the CTO who scaled NIUM to $2 billion. 10 years building security and compliance for regulated fintechs. 4.5 years running Konfirmity profitably.

Book a call