Authentication
But technology alone cannot solve the human factor. The most sophisticated MFA is useless if a user approves a push for a login they didn't request, or if a support desk resets a password over the phone without verification. Authentication is a sociotechnical system. Build for resilience, test against real attacks, and always assume that the gatekeeper will be tested.
Physical items like security tokens, smart cards, or a mobile phone used for SMS codes or authenticator apps. authentication