Certifying Access for Disconnected Application in Okta

The beauty with Okta is that there are over 500 applications in the Okta Integration Network that enables Admins to automate the user lifecycle. For these apps, Okta Identity Governance enables immediate remediation based on access reviews. There are still many applications that don’t and won’t support this, which creates a challenge when it comes … Continue reading Certifying Access for Disconnected Application in Okta

Historical Reporting of OIG Access Requests

A common request asked is how to look at past access request events. Currently you can see the results of the requests in the Okta System Log and also in the Okta Identity Governance (OIG) Access Requests admin console. This article will explore these. Article contents: OverviewEvents in the Okta System LogNative Events and ReportingReporting … Continue reading Historical Reporting of OIG Access Requests

Inactive Application Account Reporting with Okta Workflows

I was recently asked about reporting, and possibly recertification, of inactive accounts in Okta. We can run reports in Okta on Okta profile states to find inactive users. We also have an Okta Workflows template to find and report on Okta users who haven't accessed Okta in a period of time. But what about application … Continue reading Inactive Application Account Reporting with Okta Workflows

Separation of Duties (SoD) With Okta Workflows

Implementation of Separation of Duties controls is often an Identity Governance requirement. Whilst SoD controls will find their way into the Okta Identity Governance product at some point, they can be implemented today using the Okta Identity Cloud data model and Okta Workflows. This article provides a sample implementation. Article contents: IntroductionOkta and Coarse- and … Continue reading Separation of Duties (SoD) With Okta Workflows

Continuous Certification with Okta Workflows

This article provides an approach to implementing continuous (re)certification using Okta Workflows. It discusses the concept and then walks through the sample implementation. Article contents: IGA, Certification and Continuous CertificationCan We Do This In Okta?Implementing a Continuous Certification Campaign in OktaTrigger Events in OktaWorkflows FlowsMain Flows (F**)API Endpoint Flow (A00)Sub Flows (S**)Utility Flows (U**)Design PointsSample … Continue reading Continuous Certification with Okta Workflows

Fine-Grained Entitlement Reporting with Workflows

A key aspect of identity governance is being able to see "who has access to what". Within Okta you have visibility to user-to-group and user-to-application mappings (i.e. the associations that Okta is managing). These are often called coarse-grained entitlements. But what about the fine-grained entitlements that are normally defined and managed within an application, such … Continue reading Fine-Grained Entitlement Reporting with Workflows