Account - FIDO Security Key

Account - FIDO Security Key

Besides the Microsoft Authenticator app, you can sign in to Microsoft 365 using a FIDO2 security key (also called a passkey). This is a password-less, phishing-resistant option that gives you flexibility.

A FIDO2 key (such as a YubiKey) is a small hardware device that uses strong cryptography to verify your identity. During sign-in, you insert the key (USB) or tap it (NFC) and enter a quick verification like a PIN.

Instructions

If you don’t have a FIDO key, you can request one via the Hardware Procurement Request form.

  1. Sign in at myaccount.microsoft.com.

  2. Go to Security info > Add sign-in method.

  3. Select Security key.

  4. Choose key type: USB or NFC.

  5. Follow prompts:

    1. Insert/tap key

    2. Set/confirm PIN

    3. Touch key if required

    4. Done! Your key is now registered.

Choose this method if you want:

  • A hardware-based sign-in option

  • A phishing-resistant way to access Microsoft 365

  • An alternative to phone-based authentication

Keep your key secure, like a badge or house key.

Never share your key or PIN.