Enforce MFA through OTPs and consider an option to mandate MFA across multiple authentication methods, including SMS, app approval, email, biometrics, SSO, etc. Additionally, IAM solutions should include adaptive MFA, which checks for behavioral patterns, IP address, geographic location, and device usage.