
You could create a Conditional Access policy that makes internal users require MFA and external users does not require MFA.
Here are steps:
1.Go to Azure Active Directory admin center -> Protect&secure -> Conditional Access -> New policy.
2.In the Users section:
3.In the Cloud apps and sections:
4.In the Grant section:
5.Enable policy.
If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".
Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.