Okta Extends Identity Governance to AI Agents and Non-Human Workloads

The update, announced on 9 September 2026, arrives against a backdrop of worsening credential security. The Verizon Data Breach Investigations Report attributes 39% of all breaches to credential misuse, with standing privileges at the centre of that exposure. When access rights outlast the tasks that required them, compromised credentials become long-lived footholds rather than bounded risks. Okta's new capabilities aim to shift access control from periodic reviews to continuous, automated enforcement.

The Identity Governance platform gains four new capabilities. Advanced Entitlement Management for AWS brings fine-grained permission tracking across developers, workloads, and AI agents into a single view. Employees can now request access directly through Slack, ServiceNow, or the Okta dashboard using a feature called Intelligent Request Recommendations, removing the need to navigate separate approval processes. Automated Drift Detection and Remediation identifies unapproved changes and revokes out-of-policy permissions in real time. A further addition, the 48-Hour Integrations capability, uses automation to deliver new governance and privileged access integrations in as little as 48 hours; the manual process it replaces previously ran to two or three months.

The Privileged Access platform is being extended with a focus on zero standing privilege for non-human identities. Unified Database Security consolidates policy enforcement across servers, SaaS accounts, and Active Directory, while Dynamic Kubernetes Protection eliminates hardcoded service account tokens. Network Device Coverage extends the platform's reach to routers, firewalls, and switches. Machine-Speed Workload Protection authorises CI/CD pipelines and AI agents at runtime, so automated processes acquire only the access they need for a specific task rather than carrying permanent permissions.

The announcements also include an update on Okta's agreed acquisition of Permiso Security. Once integrated, Permiso will add identity risk signals, behavioural analytics, and threat-informed detections spanning multiple identity providers, cloud environments, and SaaS applications to the Okta platform.

A commissioned Forrester Consulting study found that Okta's unified platform enables customers to onboard new applications 75% faster, with an overall return on investment of 216%.

All Identity Governance capabilities are planned for early access by Q4 2026, with Privileged Access capabilities scheduled for general availability by Q1 2027.

To stay across the latest in cloud, AI and enterprise tech analysis from Compare the Cloud, subscribe to our weekly newsletter at https://www.comparethecloud.net/newsletter

More News