Don’t choose between security & innovation

Giving agents the access to data, tools, and resources without increasing risk requires visibility and control. Achieving both requires a shared framework–no one vendor can solve this alone.

Okta Blueprint Alliance sparkling stars representing intelligent identity automation

“Gartner predicts that by 2028, an average global Fortune 500 enterprise will have over 150,000 agents in use, up from less than 15 in 2025, generating significant agent sprawl, IT complexity, and management challenges. Only 13% of organizations think they have the right AI agent governance in place.”

Comprehensive security blueprint for managing and governing agentic AI enterprises

Blueprint alliance mission

A shared blueprint for securing AI

Okta has joined industry leaders to form the Blueprint Alliance, and co-author an open, multi-vendor reference architecture that answers the four key questions for securing and governing agents at enterprise scale. 

Blueprint alliance  co-founder logos

Okta for AI agents

Put the blueprint into practice

Okta for AI Agents unlocks your path to becoming a secure agentic enterprise. It helps you answer the four key questions of the blueprint:

Okta centralizes visibility and management of enterprise AI agents.

Where are my agents?

You can’t secure what you can’t see. Discover and catalog every agent, from internally built tools to third-party, SaaS, and shadow AI. Give each agent a verified identity, an accountable owner, and continuously assess its security posture.

Okta AI agent orchestrating Zendesk, Slack, and IT Support Gateway.

What can they do?

Agents can’t act without connections to resources. Define which resources an agent can access, and what actions it can take once connected.

Developer tools dashboard showing Claude AI agent gateway access control.

What are they doing?

Without real-time monitoring, visibility and identity fall short. Monitor agent behavior and tool calls in real time to catch malicious activity and data mishandling before they happen. 

Okta AI agents dashboard showing successful Aurora Auditor deactivation.

How do I respond?

Stop risky agents quickly, then restore them safely when the threat is resolved.

Treat AI agents as first-class identities so you can discover, onboard, protect, and govern them from one place. 

Okta AI agent enabling single sign-on across Zoom and other apps. Okta AI agent enabling single sign-on across Zoom and other apps.

Agent SSO is now included in core SSO plan

Onboard autonomous agents into your central directory to issue verified credentials, enforce least privilege, and govern downstream APIs.

Oktane main stage

Oktane 2026

Explore new innovations and see how leading enterprises are securing their agentic workforce today.

Attack simulator

AI Blueprint Assessment Tool

Map your agent environment, simulate prompt injection attacks, and assess your zero-trust authorization coverage.

Abstract of blueprint

Okta Innovation for AI Agents

Turn reference architecture into reality with Okta’s latest product innovations, from Agent SSO to runtime governance.

Securing AI together

Featured Oktane announcements

Frequently asked questions

The Blueprint Alliance is a multi-vendor coalition of industry leaders formed to help organizations secure AI agents by operating their agentic stack as a unified, governed system. 

Traditional IAM separates human identities from static machine accounts. Asynchronous AI agents spawn sub-agents and dynamically call APIs, demanding real-time identity governance.

An automated enforcement mechanism within Agent Gateway that instantly revokes tokens, kills sessions, or quarantines rogue agents upon threat detection.

Cross App Access is a new standard protocol designed to secure how AI agents connect to critical applications without compromising user experience.

It replaces risky, unmanaged integrations and ad-hoc user consent prompts with policy-based access decisions managed by the identity provider. This gives enterprise admins visibility and control over agent connections while eliminating consent fatigue for end-users.

Become a secure agentic enterprise