OIN

Splunk On-Call

Splunk On-Call

Overview

Splunk On-Call is incident-response software for engineering teams, offering on-call management, cross-team collaboration, and visibility. This Okta integration supports SSO (SAML/SWA) and user provisioning/deprovisioning via SCIM 2.0. Benefits: centralized identity (manage access from Okta); automated lifecycle (synced onboarding/offboarding, fewer orphaned accounts); secure SSO enforcement via SAML; reliable reactivation (restored users keep org membership and usernames). Getting started: https://help.splunk.com/en/splunk-cloud-platform/alert-and-respond/splunk-on-call/integrations-with-splunk-on-call/sso-beta-integration-for-splunk-on-call 1. Add the Splunk On-Call app from the Okta Integration Network 2. Configure SSO via SAML or SWA 3. Enable Provisioning for SCIM 2.0 lifecycle management. Once enabled, user create, update, deactivate, and reactivate events in Okta sync automatically to your Splunk On-Call organization.

Last updated: Oct. 8 2026

Functionality

Add this integration to enable authentication and provisioning capabilities.

Functionality

  • API
  • Entitlement Management
  • Event Hooks
  • Identity Security & Posture Management
  • Inbound Federation
  • Inline Hooks
  • Outbound Federation
  • Partial Universal Logout
  • AI Agent Providers
  • Universal Logout
  • Workflow Templates
  • Workflows Connectors
  • SAML
  • SWA
  • WS-Federation
  • OIDC
  • SCIM
  • Brokered Consent
  • Cross App Access
  • Privileged Access Management

Provisioning

  • Create
  • Update
  • Attribute Sourcing
  • Deactivate
  • Sync Password
  • Group Push
  • Group Linking
  • Schema Discovery
  • Attribute Writeback