Request a demo →
Rainbow Secure Book a Demo
Two-Step Authentication

One credential is not the whole decision.

Verify the primary credential and its dimensional choices, then verify another factor. For sensitive access, require additional verification using the dimensional instruction received with that factor.

1 + 2Credential + dimensions 3Another factor 4Received dimensions if sensitive
Professional completing two-step authentication
MULTIDIMENSIONAL VERIFICATION
1 Primary credentialVerify the credential
2 Dimensional choicesVerify its choices
3 Another factorVerify the factor
4 If sensitiveVerify received dimensions
Why two steps

If Step 1 is exposed, Step 2 still stands between the attacker and access.

Passwords and other primary credentials can be phished, reused or stolen. Two-Step Authentication adds a separate checkpoint that must be completed before the session begins.

Step 1 establishes the identity claim. Step 2 asks for additional proof.
A four-stage verification sequence

Verify another factor. Add its dimensions when access is sensitive.

01

Primary credential

Verify the configured password, OTP or other primary credential.

02

Verify dimensional choices

Verify the dimensional choices associated with the primary credential.

03

Verify another factor

Verify an OTP, authenticator app or another configured factor.

04 · IF SENSITIVE

Verify received dimensions

Complete the dimensional instruction received with the additional factor.

Four multidimensional configurations

Choose how the two verification steps work together.

Rainbow Secure can combine password, OTP and compatible authenticator-app verification in multiple ways.

CONFIGURATION 01
Password + dimensional choices + OTP + dimensional choices

Apply Rainbow Secure dimensional verification to both the password and the OTP.

CONFIGURATION 02
Password + dimensional choices + Authenticator app

Combine a multidimensional password with Microsoft Authenticator, Google Authenticator, Okta Verify or another compatible authenticator app.

CONFIGURATION 03
OTP + dimensional choices + Authenticator app

Combine a multidimensional OTP with Microsoft Authenticator, Google Authenticator, Okta Verify or another compatible authenticator app.

CONFIGURATION 04
Password + dimensional choices + Rainbow Secure app OTP + dimensional choices

Use Rainbow Secure dimensional verification with both the password and the Rainbow Secure app OTP.

Dimensional choices may include Color Background color Font Size Style Format Position Interaction
Interactive demonstration

See when Step 4 becomes required.

Step 3 verifies another factor. Turn sensitive access on or off to see whether Step 4 also requires the received dimensional instruction.

1Primary credential 2Verify dimensional choices 3Verify another factor 4Verify received dimensions
Rainbow Secure TWO-STEP GATEWAY
PRIMARY VERIFICATION

Enter your primary credential

Real Office login demonstrations

See Rainbow Secure Two-Step Authentication in action.

Watch two practical Microsoft Office login flows using Rainbow Secure with Microsoft Authenticator.

OFFICE LOGIN DEMO 01

SMS OTP + Microsoft Authenticator

See how Rainbow Secure adds SMS OTP to an Office login protected with Microsoft Authenticator.

Watch on YouTube →
OFFICE LOGIN DEMO 02

rSecureKey + Microsoft Authenticator

See a two-step Office login using Rainbow Secure rSecureKey together with Microsoft Authenticator.

Watch on YouTube →
Configure the second checkpoint

Match the verification method to the user and application.

Email OTP

Deliver the time-limited OTP and dimensional instruction to the user’s registered email.

SMS OTP

Send the OTP and instruction to the user’s registered phone number.

Authenticator app

Present the OTP and required instruction through the configured authenticator experience.

R

rSecureKey interaction

Verify the user’s text and dimensional choices—including style and where choices are applied.

Rainbow Secure sign-in interface
Flexible policy control

Use the second step where your organization needs it.

Apply Two-Step Authentication broadly or require it for specific applications, groups, access conditions or sensitive actions.

Workforce accessProtect employee access to business applications Remote accessAdd a checkpoint outside trusted environments Administrative accessRequire extra verification for elevated privileges Sensitive actionsStep up before high-impact changes or transactions
PROTECTION IN ACTION Related threat protection

Credential Theft & MFA Bypass

A correct password should not automatically complete the access journey. Two-Step Authentication adds a separate verification checkpoint before access is granted.

  • Require another factor after the primary credential
  • Apply stronger verification to sensitive users, applications or actions
  • Use a dimensional instruction so token text alone may be insufficient
Explore the complete Protection Approach →
See Two-Step Authentication in action

Add a second checkpoint before access.

Explore how Rainbow Secure can apply separate verification across your users, applications and access policies.

Book a Demo → Explore Adaptive MFA