Enable MFA using email

Learn how to use emails to secure your account and information with MFA.

Note: Email is considered less secure than other MFA factors. Use this option as a last resort.
Before you enable MFA using email:
  • All of your customers need to have activated the Allow suppliers to use Email MFA permission. This change may take up to 24 hours to take effect.

  • If you have several customers and one of them has not activated the option, you need to use MFA through another method.

Multifactor authentication (MFA) is the recommended security option to protect accounts. It requires the user to provide two or more verification factors to gain access to the Coupa Supplier Portal (CSP).

For more information see Manage Multifactor Authentication in the CSP.

Note: Email is considered less secure than other MFA factors. Use this option as a last resort.

To use MFA through a secondary email, follow the next steps:

  1. Go to the Account Settings page.
    You can reach this page by selecting your profile name on the top-right corner of the window, and selecting the Account Settings option.
    Figure 1. How to access the Account Settings page
  2. Select the Security & Multi Factor Authentication tab.
    The Security & Multi Factor Authentication can be found on the left navigation bar.
    Figure 2. Security & Multi-Factor Authentication page
    The "My Account Security & Multi-Factor Authentication" page in the Coupa Supplier Portal . The left sidebar highlights the active "Security & Multi-Factor Authentication" link in orange. The main pane displays the "Multi-Factor Authentication" configuration, starting with two radio buttons where "For Payment Changes (Required for changing Legal Entity or Remit-to)" is selected. Below this, three option cards are listed: "Via Authenticator App", "Via Passkey" (marked as default with a blue checkmark and a selected radio button), and "By Alternative Email". At the bottom of the page, two buttons read "Show Recovery Codes" and "Regenerate Recovery Codes".
  3. Click the blue circle next to the Via Alternative Email option.

    This option is available only if all of your customers have activated the Allow suppliers to use Email MFA permission.

  4. Follow the instructions that appear on the next screen.
  5. Input the secondary email where you want to receive the security code.
    This email cannot be the same login email. You need access to this secondary email in order to receive the code and use it in the system.
  6. Confirm the Recaptcha shown in the modal and select the Send Code button.
  7. Enter the 6-digit verification code sent to the email in the field next to the third steps shown on screen.
  8. Select the Enable button at the bottom right of the window.

After configuring MFA for the first time, you can log in to the CSP using the same passkey, and select the option to remember your browser to avoid having to enter it unnecessarily.

For more information see Sign in to the CSP using MFA.