Before you begin
MFA is required for all users. It cannot be opted out of.
You need access to your registered email address or phone number to receive a verification code.
Verification options include email, text message, an authenticator app, or a passkey.
Logging in with MFA
Step 1: Enter your credentials
Enter your Username and Password.
Select Log In.
Step 2: Request a security code
Select a verification option (email or text message).
Select Request Security Code.
Enter the code in the Security Verification Code field.
If you did not receive the code, select Choose Another Method to switch verification options.
Select Submit.
Step 3: Set the remember-me preference
Remember me on this device is checked by default on your first login. When checked, your verification is valid for 12 hours — you will not be prompted for MFA again within that window.
If unchecked, MFA is required at every subsequent login regardless of time elapsed.
Your selection persists for 30 days. After 30 days with no change, the checkbox reverts to checked.
Note: If you set up passwordless MFA (passkey or authenticator app), the 12-hour bypass does not apply — you are not prompted to enter a code. If the bypass is unchecked, MFA is required after 15 minutes of inactivity.
Step 4: Set up a passwordless option (optional)
After submitting your code, you are prompted to set up a passwordless login method. This step is optional but recommended.
Select Set Up Now to configure a passkey. Depending on your device, you may be able to use Face ID, Thumbprint, Passcode, or PIN.
Select Maybe Later to skip the passkey setup. You are then prompted to set up an authenticator app (such as Google Authenticator or Microsoft Authenticator).
Select Don't ask again on this device to suppress this prompt going forward.
Note: Selecting Maybe Later or Don't ask again does not bypass MFA. You will still be required to complete MFA at each login.
Step 5: Log in going forward
Once set up, you can log in using either method:
Password + code: Enter your password, then enter the code sent to your email or phone.
Passwordless: If you configured a passkey or authenticator app, select that option at login to authenticate without a password.
Note: Even if you have set up passwordless login, you can still choose to enter a password.
Manage multi-factor authentication
You can update your MFA settings at any time while logged in.
In the Classic ESS view, select My Account.
In the Adaptive Employee Experience, select Profile.
FAQs
What if I forgot my password?
Select the Forgot Password link on the login screen.
Can I use passwordless login on more than one device?
Yes. Each device recognizes the passwordless method configured on that device and uses it as the default. Some passwordless methods can be used across multiple devices.
Will I still be prompted for MFA if I am on the same device or IP address?
Yes. MFA is required at every login regardless of device, IP address, or how recently you last logged in. The only exception is the 12-hour remember-me window when that option is checked.
Can I opt out of MFA?
No. MFA is required for all users to keep account data secure.
What changed with the AEE session timeout?
Previously, users could remain logged in for up to 30 days. Now, users who authenticate with text, email, or a third-party authenticator app can use the Remember me on this device option to skip MFA for 12 hours. Users with passwordless MFA are not affected by this change.
Will MFA affect SAML logins?
Most users will see no difference. In some configurations, additional options may appear after login. If this occurs, select the option for your company's SAML login — not the option labeled isolved HCM.