Securing Patient Data: Multi-Factor Authentication (MFA) Guide

This page guides users through setting up Multi-Factor Authentication (MFA) for Intelerad, covering benefits, timelines, setup steps, troubleshooting, FAQs, and support.

Securing Patient Data: Multi-Factor Authentication (MFA) Guide

This page guides users through setting up Multi-Factor Authentication (MFA) for Intelerad, covering benefits, timelines, setup steps, troubleshooting, FAQs, and support.

Log in to Referrer Portal

Access InteleConnect and InteleViewer for the Waikato, Lakes, Bay of Plenty and Taranaki regions.

  • Patient Privacy First: Protecting patient privacy and safeguarding sensitive health data is our highest priority at I-MED Radiology Network.
  • Enhanced Cybersecurity & Compliance: We are strengthening our cybersecurity infrastructure in line with New Zealand health information standards.
  • Introducing MFA: Multi-Factor Authentication (MFA), also known as two-factor authentication (2FA), is being introduced across our Intelerad applications (InteleViewer and InteleConnect).

What is Multi-Factor Authentication (MFA)?

Multi-Factor Authentication (MFA) is an electronic authentication method that adds a second layer of security to your user account.

Instead of relying solely on a password, which can be compromised, guessed, or stolen, MFA requires you to verify your identity using two distinct credentials:

  • Something you know: Your standard Intelerad username and password.
  • Something you have: A temporary, time-sensitive verification code generated by an authentication app on your smartphone or desktop device.

Why is MFA Being Introduced?

Healthcare data is among the most sensitive information collected today. Securing clinical imaging systems against unauthorised access is vital for maintaining patient trust and clinical integrity.

Key reasons for this update include:

  • Enhanced Data Protection: Prevents unauthorised access even if your password is exposed or compromised.
  • Healthcare Compliance: Aligns I-MED NZ with the Health Information Privacy Code (HIPC) and CERT NZ / National Cyber Security Centre (NCSC) best practice guidelines.
  • Patient Trust: Guarantees that patient imaging, diagnostic reports, and personal details remain confidential across the medical community.

Who is Affected & Rollout Timeline

Who is Affected?

MFA will be mandatory for all users accessing I-MED NZ Intelerad applications, including:

  • Referring Doctors and Clinical Practice Staff
  • Specialists and Hospital Personnel
  • I-MED Radiologists and Internal Operational Staff

Rollout Schedule

  • Phase 1 (Notification & Early Setup): 4 September 2026 – Preview period for users to download authenticator applications.
  • Phase 2 (Mandatory Activation): 22 September 2026 – MFA feature enabled across all Intelerad user accounts. You will be prompted to complete setup upon your next login.

Step-by-Step MFA Setup Guide

Setting up MFA takes less than two minutes. The first time you log in to your Intelerad application after MFA is enabled on your account, a setup dialog will guide you through the process.

Step 1: Install an Authentication App

If you do not already have an authentication app installed on your device, download one from your device's app store or software portal:

(Note: If you already use an authenticator app for other services, you can use the same app for your Intelerad account.)

Step 2: Access the Intelerad Setup Prompt

  1. Open your Intelerad application (InteleConnect or InteleViewer) and log in with your standard username and password.
  2. The "Sign in with Two-Factor Authentication" setup screen will appear automatically.

Step 3: Scan the QR Code

  1. Open your authentication app on your mobile or desktop device.
  2. Select the option to Add Account or tap the "+" icon.
  3. Choose Scan QR Code and point your device camera at the QR code displayed on your Intelerad screen. (If you cannot scan the code, select "Enter key manually" in your app and type in the secret key shown under the QR code).

Step 4: Verify and Complete Setup

  1. Your authentication app will display a temporary 6-digit security code for your Intelerad account.
  2. Type this 6-digit code into the "Enter Code" field on the Intelerad setup dialog screen.
  3. Click VERIFY CODE.

Setup is now complete! You will now use your authentication app to generate a security code whenever prompted during login.

Need Help? Support Details

If you experience any difficulties setting up Multi-Factor Authentication or accessing your account, our IT support team is ready to assist you.

For MFA support

Do I need to enter an MFA code every single time I log in? keyboard_arrow_down

Depending on security policy configurations, you may be prompted for an MFA code at each login session or after a specified period of inactivity/session expiration.

Will installing an authenticator app give I-MED access to my personal phone data? keyboard_arrow_down

No. Authenticator apps (like Microsoft or Google Authenticator) only generate localised secure timing codes. They do not grant access to your personal photos, messages, browsing history, or private data.

What if I operate across multiple clinical practices? keyboard_arrow_down

Your MFA registration is tied to your individual Intelerad user account. Once configured, it secures your login regardless of the location from which you sign in.

What should I do if I don't have a mobile phone for work use? keyboard_arrow_down

Authentication apps can also be installed directly on your Windows or macOS desktop computer. Contact your IT administrator or I-MED Support for assistance installing desktop authenticator software.

What happens if I have changed my phone or lost my device? keyboard_arrow_down

If you acquire a new device or lose access to your authenticator app, please contact the I-MED NZ IT Service Desk to reset your MFA token so you can scan a new QR code.

Why am I seeing a message that the code entered is invalid or expired? keyboard_arrow_down

Security codes refresh every 30 seconds. Ensure you enter the code currently displayed in your app. Also, check that your device's time setting is set to "Automatic," as out-of-sync system clocks can cause code rejection.