Select your platform and then browse by platform category

Who are you and what section are you in?

Mandatory Two-Factor Authentication (MFA/2FA) Setup

Available for the following plans: Employment Lite, Employment Plus, Employment Unlimited
Available for the following HR plans: Standard, Premium, Platinum
Available for the following user access levels: Employee    , Manager    , Admin    

Two-factor authentication (2FA) adds an extra layer of security to your applications and devices. It is a crucial way to protect sensitive personal and payroll data on the Employment Hero platform.

In Canada, 2FA is mandatory to ensure maximum security for your most critical information. This article explains how to complete your setup using an authenticator app.

 

Important: Restrictions for Canadian Users

Due to platform restrictions, Two-Factor SMS Authentication is NOT available for Canadian (+1) mobile phone numbers.

All Canadian users MUST enable 2FA using either the EH Authenticator app or a third-party Authenticator app.

 

Setting Up Your 2FA

Method 1: Using the EH Authenticator App

  1. Click your account username in the top navigation bar.

  2. From the drop-down menu, select Account Settings.

  3. On the Employment Hero Authenticator tile, click the Setup button.

  4. Use your mobile device to scan the QR code displayed on your screen.

  5. Your device will open the EH Work app (or provide a link to download it).

  6. Follow the on-screen instructions within the EH Work app to finish the connection.

Method 2: Using a Third-Party Authenticator App

  1. Click your account username and select Account Settings.

  2. On the Authenticator app tile, click the Setup button.

  3. Open your chosen third-party app (e.g., Google Authenticator, Microsoft Authenticator) and scan the QR code.

    • If you cannot scan the code, click the Can't scan code? drop-down and manually enter the red key into your app.

  4. Enter the six-digit code provided by your app into the Verification code field in Employment Hero.

  5. Click Continue.

  6. Save your one-time recovery code: Download, print, or copy this code and store it in a safe place.

  7. Click Done, then select Yes on the confirmation window.

 

2FA and Single Sign-On (SSO)

If your organization uses Single Sign-On (SSO), your primary login will generally not trigger an immediate 2FA prompt.

However, you will be required to complete 2FA verification when attempting to access highly sensitive personal areas, such as updating banking details, social insurance numbers (SIN), or personal records. This ensures regulatory compliance and maximum security for your most critical data.

 

Frequently Asked Questions

  • What is an authenticator app? Instead of receiving a code via SMS, an app on your phone generates a secure code that you enter into Employment Hero. These apps do not have access to your personal information.

  • Which app should I use? We recommend the EH Work app, but you can also use Google Authenticator, Microsoft Authenticator, or Twilio Authy.

  • What if I lose access to my 2FA device? You can use the Account Recovery feature or your saved one-time recovery code to restore access to your account.

  • What if I change my phone number? Since Canadian users do not use SMS for 2FA, changing your number won't lock you out of your authenticator app, but you should update your account settings or use Account Recovery if you lose your device.

 

Explore related content

  • Recover your user account This article explains how to restore access even if you've lost Two-Factor Authentication (2FA) access.

     

Was this article helpful?
0 out of 0 found this helpful