IT News: SMS & Voice Authentication Retirement in Microsoft 365
- Jul 14
- 1 min read

Microsoft has announced a major shift towards phishing-resistant authentication, with native SMS and voice authentication being retired from Microsoft Entra ID on 1 February 2027.
This reflects the industry's move towards stronger authentication methods that are more resistant to phishing, credential theft, and social engineering.
For organisations still relying on SMS and voice-based authentication, now is the time to start planning your transition:
Identify users still using SMS or voice authentication.
Plan for phishing-resistant authentication methods, such as passkeys, where viable.
Update user awareness, training, and onboarding processes.
Where still required, assess the Microsoft Security Store alternatives for SMS and voice authentication methods.
While February 2027 may seem far away, authentication changes often take significant time to implement across an organisation. Planning early ensures your organisation is well prepared before the transition deadline.
