Select your platform and then browse by platform category

Who are you and what section are you in?

Set up or disable Two-Factor Authentication (2FA)

Available for the following HR plans: Standard, Premium, Platinum
Available for the following user access levels: Employee    , Manager    , Admin    

Employment Hero uses two-factor authentication (2FA) to help keep your account secure. When you sign in, you will need to enter a verification code sent that will reach either your mobile device's authentication app or via text message to your phone.

Your account will generate a unique code for any new sign-in attempts from an unrecognised device. To log in, you​ will need your password and the authentication code. You can enable mandatory 2FA from your employment settings page. To read further details on how to access this, refer to this article.

Important

Users on Employment Hero's Standard, Premium, or Platinum plans can use two-factor authentication (2FA) via either an authenticator app or SMS. However, users on the Free plan can only enable 2FA through an authenticator app.

Getting started

Enable 2FA using EH Authenticator app
  1. Click your account user name.
  2. From the drop-down menu, select Account Settings.
  3. On the Employment Hero Authenticator tile, click the Setup button.

    screenshot of Account Settings page, highlighting Employment Hero Authenticator tile's Set up button

  4. Use your mobile device to scan the QR code.

    screenshot of Account Settings page's 'Employment Hero Authenticator Setup; popup, highlighting QR code

  5. Your mobile device will now open the Employment Hero Work app or otherwise provide you with a page to download it.
  6. On your Employment Hero Work app, follow the instructions. You can also learn more in this article on the Employment Hero Work Help Centre.

Important

If you no longer have access to your phone and can not access an authenticator service via text and/or an app, you can use the recovery code to sign in. Please store this code in a safe place.

Enable 2FA using Authenticator app
  1. Click your account user name.
  2. From the drop-down menu, select Account Settings.
  3. On the Authenticator app tile, click the Setup button.

    screenshot of Account Settings page, highlighting Authenticator app tile's Set up button

  4. Choose to do one of the following:
    • Open your chosen authenticator app on your mobile device and use it to scan the QR code.
    • Click the Can't scan code? drop-down button and enter the key (a code in red text) in your chosen authenticator app.

      screenshot of 'Account settings' page's 2-Factor Authentication setup popup, highlighting QR code and Continue button

  5. Refer to the six-digit code your authenticator app has provided and enter it in the Verification code field.
  6. Click the Continue button.

    screenshot of Account Settings page's 2-Factor Authentication setup popup, highlighting 'Verification code' field and Continue button

  7. Refer to your one-time recovery code and click one of the following buttons:
    • Download
    • Print
    • Copy
  8. Store the code somewhere safe for yourself.
  9. Click the Done button.

    screenshot of '2-Factor Authentication setup' popup showing one-time recovery code and highlighting Copy button and Done button

  10. On the Are you sure? window, click Yes.
  11. Your chosen 2FA method will now be active. Keep your one-time recovery code safe in case you lose access to your device.
Enable 2FA using SMS
  1. Click your account user name.
  2. From the drop-down menu, select Account Settings.
  3. Click the View options drop-down button.

    screenshot of Account Settings page, highlighting 'View options' drop-down button

  4. On the SMS Authentication tile, click the Setup button.

    screenshot of Account Settings page, highlighting 'Set up' button on 'SMS Authentication' tile

  5. Click the Country drop-down field and select your phone region.
  6. In the Phone number field type your phone number.
  7. Click the Continue button.
    smssetup2fa02.jpg
  8. Find the verification code text message on your mobile device then type it in the Verification code field.
  9. Click the Continue button.
    smssetup2fa03.jpg
  10. Select one of the following recovery code options:
    • Download
    • Print
    • Copy
  11. Click the Done button.
    setup2fa04.jpg
  12. Click the Yes button.
    setup2fa05.jpg
  13. Your chosen 2FA method will now be active. Keep your one-time recovery code safe in case you lose access to your device.

Disabling settings

Disable chosen 2FA method
  1. Click the User drop-down.
  2. Click on the Account Settings button.
  3. Find the authentication method you want to disable and click its Edit button.

    screenshot of Account Settings page, highlighting one of the authentication option's Edit button

  4. Enter your password and click the Continue button.

    screenshot of Account Settings page's password re-entry window, highlighting Password field and Continue button

  5. Click the toggle.
    screenshot of Account Settings page's 'Your Authenticator' window, highlighting on:off toggle
    • If the toggle moves, enter your password when prompted then click the Continue button. Your chosen 2FA method will be disabled.

    • If the toggle does not move, a prompt will appear saying you must enable another method before disabling your current 2FA. Click the Change button and follow the Enable 2FA using authenticator app instructions here.
      screenshot of Account Setting's page's 'Your Authenticator' window, highlighting Change button.jpg

Further information

What happens if I lose my phone?

If you lose access to your two-factor authentication device, e.g. you lose your phone, you can still log in to your account. When prompted for your authentication code, enter your recovery code shown during the two-factor authentication setup.

Once you have logged in to your account, update your two-factor authentication information.

What happens if I change my phone number?

If you change to a new phone number, you will need to disable two-factor authentication and then re-enable two-factor authentication using your new number.

What is an authenticator app?

Rather than having a code sent to you via SMS when you sign in, an authenticator app on your phone can generate a code. You can enter this into Employment Hero the same way as with text codes. Authenticator apps do not have access to your Employment Hero account or your personal/sensitive information.

What authenticator app should I use?

There are several authenticator apps available for your devices. We generally recommend the following:

What countries support sending an authentication code via text message?

The below-listed countries support the ability to receive a two-factor authentication code via a text message:

  • Australia.
  • Aland islands.
  • Cocos islands.
  • Christmas island.
  • Finland.
  • Malaysia.
  • New Zealand.
  • Philippines.
  • Singapore.
  • Vietnam.
  • United Kingdom.
The risks and importance of two-factor authentication

2FA adds a strong layer of account security because it neutralises the risks associated with compromised passwords. By involving you in the login process, attackers will not be able to access your account, even if they have compromised your email and password credentials. Employment Hero platforms contain sensitive personal information such as contact, banking, and statutory details. By securing your account with 2FA, you are reducing the likelihood of attackers gaining access to this information.

Explore related content

Was this article helpful?
400 out of 774 found this helpful