BMIS – L1 – SA – Q18.7 – Authentication

To gain access to internet banking, a customer is required to input a password and supply a one-time code that has been sent to their mobile phone. This is an example of which of the following?

A   Two-factor authentication

B   Physical access control

C   Digital certificate

D   Enforced authorisation

A

Explanation:
Two-factor authentication (2FA) requires two separate methods to verify identity, such as a password (something the user knows) and a one-time code sent to a mobile phone (something the user has). Physical access control involves physical barriers, digital certificates verify identity digitally, and enforced authorization is not a standard term. Thus, A is the correct answer.