Skip to main content

Two-Factor Authentication (2FA) in BrightMove: Setup, Login, and Management

Everything you need to set up, log in with, and manage Two-Factor Authentication.

Updated over 4 months ago

Two-Factor Authentication (2FA) adds a one-time, 6-digit code from an authenticator app to your normal username + password, significantly reducing the risk of account compromise.

In this guide

  • Turn on 2FA for your account

  • Log in with 2FA (and how password resets work with 2FA)

  • Manage or remove 2FA, and how admins can see who has it enabled

  • Username visibility & best-practice note

Below is a full list of supported mobile authenticator apps to use for your Two-Factor Authentication. We recommend Google Authenticator.

Turn on Two-Factor Authentication

  1. In BrightMove, click your profile picture (top-right) → My ProfileMoreEnable Two-Factor Authentication.

  2. When the QR code appears, open your authenticator app and add a new account by scanning the QR. If you can’t scan, choose Show Secret Key and add it manually in your app.

  3. In BrightMove, click Next Step, enter the 6-digit code from the app, then ValidateSave. BrightMove Support

Log in with Two-Factor Authentication

  1. Enter your username and password, then click Sign In.

  2. When prompted, open your authenticator app and enter the current 6-digit Auth Code, then Sign In again.

Password resets when 2FA is on

If you choose Forgot Password:

  1. Check your email and follow the link (or answer your Security Questions).

  2. Enter the emailed code in BrightMove.

  3. Set your new password and Save.

  4. You’ll then be prompted for your 6-digit Auth Code from the authenticator app to finish signing in.

Manage Two-Factor Authentication

Turn off 2FA (your own account)

Profile picture → My ProfileMoreDisable Two-Factor Authentication.

See who has 2FA enabled (admins)

Profile picture → SettingsEmployees.
You’ll see a Two-Factor Enabled column indicating which users have set up 2FA.

Username visibility & best-practice note

  • Who can view a Username? Anyone who can view a user’s Employee or Hiring Manager profile can see that user’s Username. In most companies, this includes users with a Full user license (Recruiter and above), such as the Super User/Company Configurator and Admins.

  • Best practice: Avoid using a full email address as your Username. Email-style usernames can sometimes cause issues and may be flagged by the system, which can trigger a password-reset prompt.

Quick FAQ

  • Which authenticator app should I use? Any standard TOTP authenticator works; Google Authenticator is a common choice.

  • Do I need to re-enter the code if it expires mid-login? Yes—codes rotate every ~30 seconds. Open your authenticator and enter the current code.

Did this answer your question?