A Microsoft app for iOS and Android devices that enables authentication with two-factor verification, phone sign-in, and code generation
For a work account on a new phone, Microsoft Authenticator does not fully restore the work account. After restore, only the account name is restored, and the account must be signed in again to complete setup.
Use this path:
- Open Microsoft Authenticator on the new phone.
- If the work account appears with red text such as "Sign in to add your account.", open that account and sign in again.
- If the employer already removed the old device and the account is no longer usable in Authenticator, go to Security info at https://aka.ms/mysecurityinfo.
- Select Add sign-in method.
- Choose Microsoft Authenticator or Passkey in Microsoft Authenticator if required by the organization.
- Follow the prompts to register the new phone.
Important:
- For work or school accounts, this re-sign-in step is expected after moving to a new phone.
- If passkeys are enforced, set up a new passkey on the new phone before removing any remaining old passkeys or devices.
- If self-service passkey setup is blocked, contact the IT admin or help desk.
- If notifications are still going to the old phone, use another available verification method if offered, or remove old devices from security settings.
If the account was removed and there is no alternate sign-in method available, the IT administrator must help re-register MFA for the account.