I never had my MFA set up when my account was created. I've been using the recovery key when needing to log in again (usually i stay logged in) but want to set up the MFA since I have raised the issue with internal IT.
Hi @Jack Bebbington 👋🏻
First of all, welcome to community! ✨
If your account is organization/company managed then please follow the instructions provided by @Viswanathan Ramachandran
If your account is not company managed then you can try the below steps as well:
Navigate to your Atlassian Account profile at id.atlassian.com/manage-profile/security.
Scroll to the Two-step verification section and select Manage two-step verification.
When prompted, enter your current Atlassian account password and click Unlock settings (or Set up if two-step verification is not currently active).
Choose your primary verification method:
Authenticator App (Recommended): Select Enable authenticator app.
Security Key: Select Enable security key (e.g., YubiKey or device biometric authentication).
Pair your device:
Open your preferred time-based authenticator app (such as Google Authenticator, Microsoft Authenticator, Duo, or Authy) on your mobile phone or desktop.
Scan the QR code displayed on the Atlassian setup page, or manually enter the provided secret key into your app.
Verify registration:
Enter the 6-digit verification code generated by your app into the prompt on your screen.
Select Connect or Verify.
Upon completing registration, Atlassian will display a new 24-character emergency recovery key.
Copy, print, or store this key in a secure location (e.g., an enterprise password manager).
Note: Emergency recovery keys are intended for single-use or emergency access. Once a new key is generated or a new verification method is saved, previous recovery keys are rendered invalid.
I hope this helps & resolves your issue. 🙂
Thanks,
Anwesha
My account isnt managed through my company and the two step verification methods is disabled under security.. Im the only user and am the org admin when i go into the admin.atlassian.com to check. in that site under authentication policies there's nothing.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Please follow the below steps:
Verify your domain:
Go to admin.atlassian.com and select your organization.
Navigate to Directory → Domains (or Security → Domain verification / Identity providers).
Click Add domain and enter your email domain (e.g., yourcompany.com — note: public domains like @gmail.com cannot be claimed).
Add the provided DNS TXT record to your domain registrar (e.g., GoDaddy, Cloudflare, Route53) and click Verify.
Configure Authentication Policies:
Once verified, your account will automatically become a Managed Account.
Go to Security → Authentication policies.
You will now see your default policy with your account listed.
Click Edit on the policy and check Enforce two-step verification.
Hope this helps.
Thanks,
Anwesha
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Your organisation admin or instance admin shall do this, if you're in an organisation.
For personal use, you can do this on atlassian profile - security and then enable two step verification.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
My account isnt managed through my company and the two step verification methods is disabled under security.. Im the only user and am the org admin when i go into the admin.atlassian.com to check. in that site under authentication policies there's nothing.
see reply above for screenshots
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
The reason you're seeing nothing in your admin panel is likely because your domain hasn't been verified yet.
To fix this:
Verify your domain: Go to admin.atlassian.com > Directory > Domains and follow the steps to verify ownership.
Claim accounts: Once verified, claim the users. They will then show up under your Authentication policies.
Enforce MFA: You can then edit your Default Policy to set Two-step verification to Enforced.
Note on SSO: If you login via company SSO you actually need to turn on MFA inside that portal. Atlassian will then trust the verified status passed over from your company login.
I hope this helps you get that MFA activated!
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.