Microsoft Defender for Cloud Apps
Cloud and workloads

Protect your Okta environment | Microsoft Defender for Cloud Apps

In brief

Updated the Okta integration article with clearer section headings, connection instructions, service-account and API-token guidance, support wording, and screenshot text.

What Defender admins need to know

Administrators can follow the Okta connector setup more easily; no configuration change is required.

Summaries are generated from the documentation change itself.

Documentation change

The comparison below shows only the changed extract. Use the full-page view for complete context.

[!INCLUDE security-posture-management-connector]

Main threats to your Okta environment

SaaS security posture management for Okta

Connect OktaConnect Okta to Microsoft Defender for Cloud Apps using the procedure below to automatically get security recommendations for Okta in Microsoft Secure Score.

In Secure Score, select Recommended actions and filter by Product = Okta. For example, recommendations for Okta include:

Automate governance controls

Currently, there are no governance controls available for Okta. If you're interested in having governance actions for this connector, you can contact Microsoft Defender support with details of the actions you want.

For more information about remediating threats from apps, see Governing connected apps.

To connect Okta to Defender for Cloud Apps:

  • Create an Okta admin Service Account in Okta forservice account dedicated to Defender for Cloud Apps. You use this account to generate the API token required for the connector.
  • Make sure you use an account with Super Admin permissions.
  • Make sure your Okta account is verified.

Configure Okta

In the Okta console, create a token for the API. Copy the token value, youvalue. You will need itthe token value later.

Configure Defender for Cloud Apps

Perform the following steps in Defender for Cloud Apps to complete the Okta connection:

  1. In the Microsoft Defender Portal, select Settings > Cloud Apps.

  2. Under Connected apps, select App Connectors.

  3. In the App connectors page, select +Connect an app, and then Okta.

    Screenshot of the App connectors page with the Connect Okta option.

  4. In the next window, give your connection a name and select Next.

  5. In the Enter details window, in the Domain field, enter your Okta domain and paste your Token into the Token field.