Enable Your Users to Adopt CISA Mobile Communications Best Practice Guidance with Authsignal

Authsignal helps organizations comply with the CISA Mobile Communications Best Practice Guidance by offering drop-in phishing-resistant passkeys, strong MFA fallback methods, and  WhatsApp OTP as an encrypted and reliable alternative to SMS.

Integrate passkeys and MFA into any identity stack; Authsignal plugs into IDPs like Azure AD B2C, AWS Cognito, Auth0, Duende IdentityServer, and more.

✅ Use only end-to-end encrypted communications: Authsignal replaces SMS OTP with encrypted channels like WhatsApp OTP and passkeys.

✅ Enable Fast Identity Online (FIDO) phishing-resistant authentication: Authsignal enables millions of phishing resistant passkeys, uplifting security.

✅ Migrate away from Short Message Service (SMS)-based MFA: Authsignal helps reduce SMS reliance by 90%, cutting costs and improving security. Learn more.

Consider WhatsApp OTP as A Secure Alternative to SMS OTP

Organizations can benefit from leveraging WhatsApp to send OTPs for scenarios where SMS OTPs are traditionally used, reducing security risks and operational costs while maintaining a simlar user experience.

  • End-to-End Encryption: Unlike SMS, WhatsApp messages, including OTPs, are end-to-end encrypted, ensuring that only the intended recipient can view them.
  • Cost Savings: Using WhatsApp for OTP delivery can reduce costs significantly compared to traditional SMS charges, especially for international communications.
  • User Familiarity: With over 2 billion monthly active users worldwide, WhatsApp provides a familiar and accessible platform for secure OTP delivery.

Learn more about implementing WhatsApp OTP

Related Resources