It is time for pervasive Multifactor authentication
Passwords just do not work anymore to secure access to systems. I think we are finally at a point where easy, cheap pervasive multifactor authentication is finally upon us.
Multifator (Multi Factor) authentication has been around forever to provide a higher level of security for accessing systems. It means authenticating to a system with something you know (ID and password) and something you have like a token generator (provides a number you enter just in time) or digital certificate or even a device (computer, phone). I think this whole concept evolved from the nuclear missile launch process where you need certain people with certain keys to get the missiles to go but I am sure there are examples from antiquity like having the kings seal or ring.
The problem with it has been the expense of maintaining these solutions prohibited broad adoption expect in cases where it was needed (financial systems, ERP, etc). Well it seems like this is another area where as a Service (aaS) is stepping up and making it easier to deploy better security at lower cost. I have seen the Multifactor solutions where you are sent a pin to your phone for a few years and my bank authenticates the devices I connect to it from. My favorite example is Amazon where I set this up and every transaction now requires me to include a security pin or access from an approved device. The great enabler of this is everyone (well almost) carries a device capable of acting as a receiver of these tokens with them at all times. Microsoft has made acquisitions in space and offer these services as part of Azure AD for enterprises to integrate this level of security in their apps. There are many other solutions available.
While I have not looked to deeply at it I am sure these solutions are not 100% perfect but they are way better and easier to deploy to improve the state of security to a effective level for the majority that I encourage all IT pros to start taking a look and advocating broadly deploying these solutions.
Please let me know your thoughts on this topic.