Contractor account creation and MFA
Beyond Trust Contractor account creation
- Create an Office 365 mailbox in the on prem exchange server (https://mail.nucor.com)
- Create the account with the display as: First Last (SPS-CON)
- Create login as sps.bky.firstname.lastinitial example: sps.bky.chris.o
- Place the account in SPS > BKY > Users > Contractors
- Set the email as domain as @nucor.com
- After the account has replicated to Active Directory add to the following groups:
- SPS.BKY.SA.PRA.Contractors
- RZ-Opus-FlatProduct
- Once added to the groups a sync will take place over night adding the newly created account to the proper Azure groups. To start the process of setting up MFA follow these steps:
- Login to https://portal.azure.com with ADM account
- Open Privileged Identity Management
- Select ‘Groups (Preview)’ link
- Search for “PIM AZ.SPBKY.AU All Roles” and select it
- Under Eligible assignments page select Activate link on the right hand side of the page.
- Enter the reason and select Activate on the bottom and wait for completion
- Select Home on the top left side of the page
- Select Azure Active Directory
- Select Users on the left side of the page
- Search for the newly created contractor account and select it
- Select Authentication methods on the left side of the page.
- Select “+ Add authentication method” and enter the phone number and wait for completion.