Skip to main content
Checklist template

MFA offboarding checklist

Printable MFA offboarding checklist to revoke viewers, SMS recipients, vendor sessions, passwords, and document access reviews for teams and MSPs.

Implement templates with MultiMFA

Turn policy into governed SMS/TOTP delivery.

Offboarding checklist

Day 0 — termination trigger

  • HR/offboarding ticket received with effective date/time.
  • Identify all MultiMFA enrollments where user is viewer/recipient.
  • Remove user from each enrollment (same business day).

Vendor follow-up

  • Invalidate active sessions where platform supports.
  • Rotate shared password if policy requires or user knew password.
  • Reset vendor MFA if user enrolled personal authenticator on shared login.

Documentation

  • Log revocation in access review system.
  • Notify account owner of completed MFA offboarding.
  • Schedule 30-day orphan viewer audit.

Adapt this template to your organization. MultiMFA does not provide legal advice.

Glossary

Key terms in this guide

Operational definitions for shared MFA vocabulary—written for security and IT teams, not dictionary-only summaries.

Template FAQ

Is this legal or compliance advice?
No. These are operational security templates—adapt with your legal and compliance teams.
Can we customize for our org?
Yes. Print/save as PDF and edit internally. MultiMFA provides frameworks, not binding policy.

More questions? Contact support or read our security overview.

Enterprise-grade shared MFA

14-day trial—pilot on one shared login.