Optimum Web
Access Control & Offboarding

Identity & Access Management

MFA, SSO, RBAC, quarterly access reviews.

3 services · Fixed price · 14-day warranty · Senior engineers only

Compare Services

ServicePrice
NIS2
MFA & Access Control Implementation
$249Details →
ISO 27001
Access Control Policy & Implementation
$349Details →
SOC 2
Access Review Process Setup
$299Details →

Frequently Asked Questions

Which MFA methods do you support?+
TOTP (Google Authenticator, Authy), hardware tokens (YubiKey), push notifications (Microsoft Authenticator, Duo), and SMS (not recommended but supported). We recommend TOTP or hardware tokens for highest security.
Will this disrupt employees' daily work?+
Minimal disruption. We phase the rollout: admin accounts first (day 1), then critical services (day 2), then remaining accounts (day 3). Employees receive setup instructions before their MFA is enforced.
Does this satisfy PCI DSS Requirement 8?+
Yes. MFA for all administrative access to the cardholder data environment (CDE) plus the RBAC policy document satisfy PCI DSS Requirement 8.3. We document the mapping for your QSA.
What if we already have MFA on some systems?+
We audit what you have, identify gaps, and fill them. Many companies have MFA on email but not on AWS console, GitHub, or VPN — those are the gaps attackers exploit.
How does this cover 5 frameworks with one service?+
MFA is required by NIS2 Art.21(2)(j), ISO A.8.2-8.5, SOC CC6.1, PCI Req.8, and DORA Ch.II. We implement once and document compliance for all five. Our report maps each control to each framework.
$5

Not Sure Where to Start?

Our IT Health Check finds every compliance gap in your infrastructure. 1 business day. You get a prioritized list of what to fix.

IT Health Check — $5