Signing in to Concur

Objective

After completing this lesson, you will be able to explain the process to sign in to SAP Concur.

Two-Factor Authentication sign in to Concur

To enhance the security of all Concur users, two-factor authentication (2FA) is mandatory for users who sign in to Concur solutions with a username and password.

When a Concur user signs in using their username and password for the first time, they will be prompted to set up 2FA.

After setting up 2FA, users must use 2FA when they sign in. This typically means that a prompt to enter a one-time 6-digit code generated by an authenticator app will appear each time when signing in to Concur solutions.

Two-Factor Authenticator Set-Up

On the Concur web sign-in page, enter your username and password.

The image shows the sign in page of Concur. It includes the field for entering the username and the blue Next button right below the field. Below are the links labeled Remember Me, Forgot Username and Need Help Signing In.
The image shows the password field with the Next field below. Included at the bottom part of the page are the links Forgot password and Need help signing in.

The following message is presented:

You must set up two-factor authentication to continue signing in. An e-mail has been sent with instructions to set up two-factor authentication. If you do not receive an e-mail, check your spam folder, or contact your company administrator for support.

Select Return to Sign In.

The image shows the page giving instructions for setting up two factor authentication. On the lower part of the image is a blue button labeled as Return to Sign In.

Open the e-mail that was sent to the e-mail address associated with your user account.

Note

If you did not receive the e-mail, check your spam folder or contact your company’s Concur administrator or IT department.

Select Set Up Two-Factor Authentication.

The image shows an example of the email giving instructions for setting up two factor authentication. Included in the email is a blue button labeled as Set Up Two-Factor Authentication.

On the Concur sign-in page, enter your password and select Next. The two-factor authentication page is presented.

The image displays the sign in page showing the initial steps in setting up two-factor authentication. In the middle portion of the image is a QR code intended to be scanned to link the account to an MFA application.
  • If you are using a mobile device to set up 2FA and have already downloaded an authenticator app, you can scan the QR code on the Set Up Two-Factor Authentication page to begin setting up 2FA for Concur.
  • If you do not yet have an authenticator app set up, you can download one and then proceed to set up 2FA.
  • If you do not have a mobile device or prefer not to use one for this process, you can use an authenticator app in a web browser.

Follow the steps or prompts from the authenticator app to generate a 6-digit code. These steps vary depending on which authenticator app you are using.

Note

Concur does not have information about which authenticator app you use and cannot provide steps for this process. Consult the authenticator app user guide or your company’s IT department if you require assistance setting up the authenticator app or generating the 6-digit code.

Email Link Sign in to Concur

The Email Link Login feature in Concur offers a secure, passwordless way to access your account, simplifying authentication while maintaining high security standards. This method is available on the Concur login page at https://www.concursolutions.com and the mobile app, serving as an alternative to traditional username/password or Single Sign-On (SSO) logins. It works by sending a temporary, one-time-use link to your verified primary e-mail address (the one linked to your Concur profile), which you click to gain instant access.

This is ideal for users who forget passwords frequently, prefer quick mobile logins, or work in secure environments where typing credentials is impractical. The feature is enabled by default for most accounts, but can be configured or restricted by your company administrator based on security policies. It enhances user experience by reducing login friction and leverages e-mail as a possession-based authentication factor, complementing other security measures like two-factor authentication (2FA) on your e-mail account.

To log in using the Email Link:

  1. Go to the Concur login page or open the mobile app.
  2. Enter your username, work e-mail, or company SSO code in the login field and click Next or Continue.
  3. Select the Sign in with an Email Link option
  4. A confirmation message will display, and an e-mail from Concur will be sent to your primary inbox with a secure link (check spam/junk if not received).
  5. Click the link in the e-mail (valid for about 15-30 minutes) to be redirected and logged in automatically to your dashboard.

Key benefits include convenience (no need to remember complex passwords), speed (especially on mobile), and improved security by avoiding password entry risks like keyloggers. However, ensure your e-mail is secure by enabling 2FA on it to prevent unauthorized access.

For troubleshooting: If the e-mail doesn't arrive, verify your profile's e-mail address (log in via another method and update under Profile Settings), resend the link, or check filters. If the link expires, restart the process. If the option isn't visible, it may be disabled by your admin, contact IT support. Company-specific restrictions might apply, and resources like the Concur Community or help center provide further guides and videos for setup. This process integrates seamlessly with Concur's focus on efficient, user-friendly tools for expense and invoice management.

Resources

SAP Help PortalLink
SAP Concur Two-Factor Authentication Setup GuideTwo-Factor Authentication

Summary

  • Use Two-Factor Authentication (2FA) for username and password sign-in; set it up once, then enter a six-digit code each time.
  • Set up 2FA: start sign-in, open the email, select Set Up, connect authenticator, generate a six-digit code.
  • Use a mobile or browser authenticator; scan the QR code to link your account; ask your administrator or IT team.
  • Use email link sign-in for secure, passwordless access on web and mobile; secure your email and click before it expires.
  • Troubleshoot email link sign-in: check spam, verify profile email, resend the link, or contact your administrator if missing.