Step 2, add 2FA (two factor authentication)

naked security by Sophos > Gmail users, here’s how (and why) you should set up prompt-based 2FA