Okta Inc.
Okta is an Identity-as-a-Service (IDaaS) platform that provides a comprehensive suite of services focused on managing and securing user identities and access. Its core offerings include Single Sign-On (SSO), Multi-Factor Authentication (MFA), and features to help manage privileged or elevated access. Additionally, Okta offers services that allow our customers to manage access requests, user access recertification campaigns, and create customizable workflows that automate access provisioning and deprovisioning processes. Another product Okta offers, Auth0, provides developers essential building blocks and capabilities, such as SDKs and APIs, to embed robust authentication and authorization directly into their applications.



Listed Since: 03/28/2013
Last Updated: 10/10/2025
STAR Level 1
Self-Assessment & Partner-Provided

CAIQ Self-assessment v4.0.3
Offers an industry-accepted way to document what security controls exist in IaaS, PaaS, and SaaS services. It provides a set of Yes/No/NA questions and space to justify the response a cloud consumer and cloud auditor may wish to ask of a cloud provider to ascertain their compliance to the Cloud Controls Matrix (CCM).

EU Cloud CoC (Level 2)
This trustmark signifies adherence to the EU Cloud CoC through a dedicated framework and legally demonstrates GDPR compliance. Cloud Service Providers that have successfully passed the EU Cloud CoC’s evaluation process have their Compliance Mark visible in both the Code’s Public Registry as well as here in the CSA STAR Registry.
STAR Level 2
Third-Party Audit
Organizations looking for a third-party audit can choose from one or more of the security and privacy audits and certifications.

STAR Certification (CCMv4)
A technology-neutral certification leveraging the requirements of the ISO/IEC 27001 management system standard together with the CSA Cloud Controls Matrix (CCM).
