MFA - Implement SMS / Or implement free service provider accounts
Looking to save your clients fees and increase your data security.
As a service provider (SP) utilising the REX platform to support many REX clients (C). What we need is a "partner" login that caters for the following use cases:
a) ability for SP to manage SP employee access.
b) ability for C to authorise SP to have access to C accounts
c) SP logins should be free of charge to C. C should not have to pay for SP to securely login across their employees. This is how PropertyMe cater for this.
d) If we dont have this, then we need MFA to be implemented as an SMS solution so that SP can still share the login credential and complete secure sign-in. Right now the assumption that all users have access to a single phone for use of a TOTP app is unfortunately false. The use case for SP users has not been considered.
This is an important consideration to the data security for C and is up to the software provider to implement across these use cases too.