How to Set Up and Manage Multi-Factor Authentication (MFA) at NerdWallet
Who this is for
This article is for NerdWallet users who want to add extra security to their accounts using multi-factor authentication (MFA), also known as 2FA or two-step verification.
What this article covers
We’ll explain what MFA is, how it protects your account, which methods you can choose from, and how to update or recover your MFA settings if you lose access.
What is MFA (Multi-Factor Authentication)?
Multi-Factor Authentication (MFA) adds a second layer of protection to your NerdWallet account. It helps ensure that only you can access your account, even if someone else knows your password.
MFA works by requiring two forms of identification:
- Something you know: Like your password or a one-time code emailed to you.
- Something you have: Like your mobile phone or an authenticator app.
Even if your password is stolen, MFA can stop unauthorized access by asking for a second factor only you have.
What MFA options can I choose?
You can choose one MFA method when setting it up, and you can change it later if needed.
Available MFA methods:
- Authentication App (e.g., Google Authenticator): A code is generated in an app on your phone and refreshes every 30 seconds. You’ll enter this code during login.
- SMS (Text Message): A 6-digit code is sent via text to your phone. You’ll enter this code to verify your login.
What’s the difference between TransUnion SMS and NerdWallet MFA SMS?
This is a common question. While both use SMS verification, they serve different purposes:
- TransUnion SMS: Required when linking your TransUnion credit data to NerdWallet.
- NerdWallet MFA SMS: A separate layer of security you set up to protect your NerdWallet account.
Can I use more than one MFA method at the same time?
Not at this time. You can only have one active MFA method (SMS or authentication app). If you want to change your method, you’ll need to update it manually.
How to change your MFA method
If you still have access to your current method (or recovery codes):
- Log in and go to your account settings to update your MFA preference.
- Follow our step-by-step MFA change guide.
If you no longer have access (e.g., lost phone or changed number):
- Contact our support team to verify your identity.
- Or, in some cases, you may need to close your current account and create a new one.
- Refer to this MFA recovery help article for next steps.
What if I got a new phone or changed my phone number?
If you’ve replaced your phone or have a new number and didn’t set up MFA on the new device, we’ll need to verify your identity before resetting your MFA.
To avoid this issue in the future:
- Generate recovery codes when setting up MFA.
- Store them securely in a password manager or other safe location.
Benefits of using MFA
- Adds an extra layer of security beyond your password
- Helps prevent unauthorized account access, even if your password is compromised
- Easy to set up and manage
Common questions
Q: Is MFA required for NerdWallet accounts?
A: It’s not required, but strongly recommended to protect your account.
Q: Can I switch from SMS to an authenticator app later?
A: Yes, you can update your method in your account settings if you still have access.
Q: What happens if I miss a code or don’t receive one?
A: Make sure your phone has service. If issues continue, contact support.
Need more help?
Still stuck? Ask for a transfer to our human-powered queue. We strive to respond to inquiries by email within 24 hours.
Comments
0 comments