Overview
Multi-Factor Authentication (MFA) adds an extra layer of security to your ServiceTitan account by requiring verification by requiring a time-based, one-time verification code from your mobile device during login. Google or Microsoft Authenticator apps generate these codes even without an internet connection.
Who uses this feature
Office employees
Applies to all business types
Feature configuration
Account configuration is required to use this feature. Please contact Technical Support for details.
Things to know
MFA enhances your account security by preventing unauthorized access even if your password is compromised. For more, see Enable Multi-factor Authentication for Identity Services.
Google and Microsoft Authenticators can manage multiple accounts, so you can use the same app for all your ServiceTitan logins.
MFA codes work without internet access after they're set up.
If you're an administrator, save your recovery codes in a secure place. These are provided during setup.
If you switch phones, you need to reconfigure MFA.
Keep your Authenticator app up to date to ensure continued compatibility.
Refer to the appropriate troubleshooting guide if you have issues with setting up your authenticator app. Check the Google Authenticator troubleshooting guide or the Microsoft Authenticator troubleshooting guide.
Prerequisites
Before starting the setup, ensure you have the following ready:
ServiceTitan MFA Setup screen: Log in to ServiceTitan. This screen appears automatically if your administrator has already enabled MFA for your account.
A mobile device with either:
Microsoft Authenticator App: Download for Android or Download for iOS.
Google Authenticator App: Download for Android or Download for iOS.
A desktop authenticator app on a PC or Mac.
For Microsoft Authenticator users: Check the steps in the New Microsoft Authenticator users and the Existing Microsoft Authenticator users sections.
For Google Authenticator users: Check the steps in the New Google Authenticator users and the Existing Google Authenticator users sections.
New Microsoft Authenticator users
Open the Microsoft Authenticator app after installing it.
When prompted, tap Add account.

Select Work or school account.

When added, you can use Microsoft Authenticator to protect multiple work accounts securely.
Existing Microsoft Authenticator users
Open the Microsoft Authenticator app.
Tap the + icon in the bottom-right corner to add a new account.
Step 1: Open the MFA setup screen
In ServiceTitan, go to your MFA setup screen.
Note: This screen is only available during the login process.
You can see a QR code and a setup key displayed.

Step 2: Add ServiceTitan to Microsoft Authenticator
If you're on a computer:
Open Microsoft Authenticator on your mobile device or tablet.
Tap the QR scan code at the bottom right corner.

Use your phone's camera to scan the QR code on the ServiceTitan setup screen.
Tip: Make sure to allow the application to access your camera.
If you're using the ServiceTitan Mobile App or Field Mobile App and can't scan the same screen:
On the MFA setup screen, select Enter this key manually in your authenticator app.

Copy the setup key from the screen by clicking Copy.

Return to the authenticator app and tap the + icon.

On the window that opens, tap Work or school account.

Select Enter code manually and paste the ServiceTitan code.

Tap Save to add the account.
Step 3: Verify your Microsoft Authenticator setup
In Microsoft Authenticator, you can now see a six-digit code that changes every 30 seconds.

Click the name to reveal the code, then copy it.

Return to ServiceTitan and enter the six-digit code in the verification field.

Click Verify and Enable.
MFA is now active. The next time you log in, ServiceTitan prompts you to enter the current code from your Microsoft Authenticator app.
New Google Authenticator users
Open the Google Authenticator app after installing it.
When prompted, either link it to your Google account or tap Use Authenticator without an account.

Tap Scan a QR code or Enter a setup key to add your first account.

Follow the next steps below Add Your ServiceTitan Account to connect your account.
When set up, you can use the same app for multiple accounts.
Existing Google Authenticator users
Open the Google Authenticator app.
Tap the + icon in the bottom-right corner to add a new account.

Step 1: Open the MFA setup screen
In ServiceTitan, go to your MFA setup screen.
Note: This screen is only available during the login process.
You can see a QR code and a setup key displayed.

Step 2: Add ServiceTitan to Google authenticator
If you're on a computer:
Open Google Authenticator on your mobile device or tablet.
Tap Scan a QR code.

Use your phone's camera to scan the QR code displayed on the ServiceTitan setup screen.
If you're using the ServiceTitan Mobile App or Field Mobile App and can't scan the same screen:
On the MFA setup screen, select Enter this key manually in your authenticator app.

Copy the setup key from the screen by clicking Copy.

In the authenticator app, tap Enter a setup key and paste your code and tap save.

Step 3: Verify your Google Authenticator setup
In Google Authenticator, you can now see a six-digit code that changes every 30 seconds.

Return to ServiceTitan and enter the six-digit code in the verification field.

Click Verify and Enable.
MFA is now active. The next time you log in, ServiceTitan prompts you to enter the current code from your Google Authenticator app.
Use a browser or desktop Authenticator for MFA
If your employees don't have mobile phones or prefer not to use personal devices, you can use a browser-based authenticator extension or a desktop authenticator app on a PC or Mac. Both options support ServiceTitan's MFA requirements.
Step 1: Select your authenticator method
You can use either a browser extension or a desktop application, as long as it supports TOTP.
Option 1: Use a browser authenticator extension
Open your preferred browser. Common browsers include Google Chrome, Microsoft Edge, and Safari.
Tip: We recommend using Google Chrome.
Go to your browser's extension store:
Search for a TOTP authenticator extension. Common search terms include:
Authenticator
TOTP authenticator
2FA authenticator
Select a TOTP authenticator extension that your company's security or IT team approves, then install it in your browser.
Option 2: Use a desktop authenticator app for PC or Mac
On a Windows PC, open the Microsoft Store and search for a TOTP authenticator application. Or, on a Mac, open the Apple App Store and search for a TOTP authenticator application.
Select a TOTP-compatible authenticator app that your company's security or IT team approves, then install it.
Note: Any authenticator app that supports standard TOTP codes should work with ServiceTitan MFA, but confirm with your security team before installation.
Step 2: Test authenticator MFA with a small group
Before you roll MFA out to everyone, test with a small pilot group of administrators:
In ServiceTitan Next, enable TOTP MFA for a small group of administrators.
To limit who can set up MFA during the pilot, temporarily remove the Manage MFA permission from non-pilot users by updating your roles and permissions.
Have your pilot group go through the MFA setup process and sign in several times over a few days.
After testing, restore the Manage MFA permission to the appropriate roles according to your company's security policy.
This helps you confirm that the authenticator method you select works reliably in your environment before you roll it out to your entire team.
Step 3: Set up the authenticator for the extension or app
When your pilot users go through the MFA setup process in ServiceTitan:
Sign into ServiceTitan. When prompted, begin the MFA setup process.
In your browser extension or desktop authenticator app, select Manual code entry to enter a code manually.
On the MFA setup screen in ServiceTitan, click Can't scan? to show the text version of your secret key.
Copy the secret key and paste it into your authenticator extension or app.
Note: Do not share this secret key with anyone.
(Optional) Give the account a clear label, such as your company name and your username.
After you complete these steps, your authenticator begins generating six-digit MFA codes automatically.
Step 4: Use your authenticator
After completing the setup:
Your authenticator extension or desktop app generates a new time-based 6-digit MFA code every 30 seconds.
No phone is required.
You can use these codes anytime the system requests MFA.
