Multifactor Authentication

Non-negotiable security. Seamless access.

Two-factor authentication is built into Sirona and can be switched on for your organization, so a password alone doesn't have to be enough. Single sign-on is available through our identity-provider integration.

See Sirona in Action

How Sirona is Different

A second factor on every sign-in

With two-factor switched on, users sign in with a password and confirm a second factor. It is part of the product, not an add-on each site has to buy and integrate — your organization decides whether to require it.

Authentication & authorization infrastructure

Two-factor sign-in, managed sessions, and role-based access control behind every login.

Two-Factor Authentication

A password plus a second factor, built into the product. No password-only sessions.

One Sign-In

One sign-in across viewer, reporter, and worklist, with sessions managed by the platform.

Single Sign-On

Available through our identity-provider integration, configured per organization during onboarding.

Session Management

Automatic logout after a period of inactivity, with a warning first so users can save work.

Role-Based Access Control

Granular permissions across organization, clinic, and facility scopes, managed from a single administrative interface.

Explore access control

Sign-In Monitoring

Sign-in activity is recorded centrally and monitored by Sirona as part of the platform's security operations.

How sign-in works on Sirona

Two-Factor Sign-In

A second factor, when you switch it on

When your organization turns two-factor on, every login requires a second factor in addition to a password. It is an option you control, not a separate product. Supported methods are confirmed for your organization during onboarding.

A password plus a second factor for every user

No password-only access

Switched on per organization, no add-on to buy

Sessions

Single login powers your entire workflow

One sign-in. Sessions use signed, short-lived tokens, and users get a warning before automatic logout so nothing is lost mid-report.

One sign-in across viewer, reporter, and worklist

Signed, short-lived session tokens

Warning before automatic logout

Compliance

Security controls you can show a partner

Sirona signs a BAA with every customer, runs an active SOC 2 Type II program, and develops under a regulated, design-controlled SDLC. AES-256 encryption at rest, TLS 1.2+ in transit.

Active SOC 2 Type II program — attestation available under NDA

One BAA, signed with Sirona

Regulated, design-controlled SDLC

AES-256 at rest, TLS 1.2+ in transit

Enterprise Identity

Fit into your existing identity infrastructure

Single sign-on is available through our identity-provider integration, configured per organization during onboarding. Your directory stays the source of truth for who your users are; roles and permissions are defined and managed in Sirona.

Single sign-on configured per organization

Your identity provider stays the source of truth for credentials

Roles and permissions managed in Sirona

2

factors on every sign-in — a password is never enough

1

sign-in across viewer, reporter, and worklist

AES-256

encryption at rest, with TLS 1.2+ in transit

FAQs