Key Takeaways
- Okta runs production identity for 19,300+ paid customers globally, with 4,800+ at $100K+ ARR.
- Workforce Identity Cloud is the employee IAM platform; Customer Identity Cloud (Auth0, acquired May 2021 for $6.5B) is the CIAM platform.
- Regulated industries (financial services, healthcare, federal, defense, life sciences) represent roughly 48% of the $100K+ ARR cohort.
- FastPass passwordless and Identity Threat Protection with Okta AI are the two highest-signal product flags for adjacent IAM-security outbound.
- Auth0 / CIAM buyer center is VP Engineering, Director of CIAM, Director of Identity Engineering, distinct from the Workforce CISO + VP IAM + IAM Director center.
- OIN integration depth (7,000+ app catalog) is the strongest proxy for SaaS-estate breadth and identity hygiene cross-sell.
- BizzContacts maintains 16,800+ verified Okta records with 97.6% inbox deliverability and 30-day replacement.
Okta Install Base by the Numbers
Quotable statistics on the Okta install base, sourced from Okta 10-K and 10-Q filings, Oktane disclosures, and BizzContacts proprietary verification.
Inside the Okta Buyer Landscape
The Okta customers list is a research-backed roster of the 16,800+ enterprises, mid-market companies, healthcare systems, financial services firms, federal civilian agencies, defense contractors, public universities, software vendors with Auth0-powered consumer apps, and growth-stage SaaS companies that run Okta as the production identity authority for their workforce, their customers, or both. We cut the list by Okta product mix first because that is how IAM buyers actually compare themselves to peers. Roughly 64% of the records run Workforce Identity Cloud only, 14% run Auth0 Customer Identity Cloud only (the pure-play Auth0 install base), and 22% run both, the dual-cloud cohort that Okta's GTM team prioritises and where outbound vendor pitches for identity governance, ITDR, passwordless, and CIAM extensibility see the highest reply rates.
Inside Workforce, we tag every record with the high-signal product flags IAM buyers actually budget against: Adaptive MFA (the universal floor), FastPass passwordless adoption status (live / pilot / roadmap / not adopted), Okta Identity Engine migration status (legacy Classic Engine vs migrated Identity Engine, the prerequisite for FastPass and Identity Threat Protection), Okta Identity Governance (IGA, head-to-head with SailPoint, Saviynt, Microsoft Entra ID Governance), Okta Privileged Access (head-to-head with CyberArk, Delinea, BeyondTrust, Teleport), Identity Threat Protection with Okta AI (ITDR live / pilot / not adopted), Advanced Server Access, Device Trust enforcement, and Universal Directory + HRIS attribute-driven provisioning. Inside Auth0 / Customer Identity Cloud, we tag Auth0 Actions usage (the Node.js extensibility runtime), Auth0 Organizations multi-tenancy (the B2B SaaS signal), Auth0 Fine Grained Authorization (FGA / ReBAC), Highly Regulated Identity for FAPI Open Banking, Bot Detection, Attack Protection, Adaptive MFA, M2M tokens volume tier, and Private Cloud deployment. Every record also lists the OIN (Okta Integration Network) apps actually federated in production: SAP SuccessFactors, Workday, Salesforce, Microsoft 365, Google Workspace, ServiceNow, Slack, Zoom, AWS, GitHub, Atlassian, Box, DocuSign, Snowflake, NetSuite, and the long tail of SaaS apps that pin the customer's identity perimeter.
Why the Okta Install Base Is the Sharpest IAM Buying Signal in 2026
Three things make Okta customers a uniquely high-signal cohort for IAM, identity-security, and zero-trust outbound. First, they have already cleared the budget and committee hurdle for production identity infrastructure, which means a vendor pitching adjacent IAM tooling is not starting from cold education. Second, the Okta install base concentrates in regulated industries (financial services, healthcare, life sciences, federal, defense, higher education, energy) where breach economics drive procurement urgency: the IBM Cost of a Data Breach Report 2024 puts healthcare breaches at $9.77M average and financial services at $6.08M, and credential-driven breaches consistently top the initial-vector ranking. Third, the LAPSUS$ (January 2022) and Okta support system (October 2023) incidents drove Okta itself to publish phishing-resistant MFA and FastPass adoption as success metrics, which means CISOs at Okta accounts are now KPI'd on the exact roadmap items adjacent vendors are selling, passwordless, session binding, device trust, ITDR, just-in-time privileged access, identity governance hygiene.
The pure-play Auth0 / Customer Identity Cloud cohort matters separately because the buyer is different. Workforce IAM is owned by CISO + VP IAM + Director of IAM. CIAM (Customer Identity) is owned by VP of Engineering, Director of Platform, Director of Customer Identity, Head of Product Security, and increasingly Chief Digital Officer at consumer brands and Director of Identity Engineering at B2B SaaS. The Auth0 install base is dense in B2B SaaS (Auth0's original strongest segment), digital-native financial services (fintech, neobanks, brokerages on FAPI-grade Highly Regulated Identity), retail and DTC (account takeover defence via Auth0 Attack Protection + Bot Detection), healthcare patient portals (HITRUST-certified CIAM), media and streaming (M2M tokens at scale), and the federal civilian end-user identity space (login.gov adjacent agencies). Pitching CIAM-adjacent tooling to Auth0 customers is structurally different from pitching to Workforce Identity customers, and BizzContacts splits the cohort so you do not waste outbound on the wrong buyer center.
The third high-leverage cohort is the dual-cloud customer (Workforce + Auth0 / CIC), which represents Okta's stickiest, highest-ARR accounts. These are the strategic Oktane keynote logos. They are also the highest-fit targets for unified identity-security platforms, Identity Fabric vendors, decentralised identity pilots, and consolidation displacement plays from Microsoft Entra ID + Entra External ID, Ping Identity + ForgeRock, and IBM Verify.
Who Runs Okta in Production
Okta concentrates in regulated, identity-heavy industries where the cost of a credential incident is asymmetric to the cost of identity infrastructure. Financial services and banking are the densest single vertical, with major US regional banks, insurance carriers, asset managers, payments platforms, fintech challengers, and broker-dealers running Workforce Identity Cloud for employee identity and either Auth0 Customer Identity Cloud or Highly Regulated Identity (FAPI / Open Banking) for customer-facing portals. Healthcare and life sciences are the second-densest cohort, with health systems running Okta Workforce Identity Cloud against HITRUST-certified tenancy, pharmaceutical and biotech R&D environments using Privileged Access for lab and clinical-trial infrastructure, and patient-portal Auth0 deployments at digital-health platforms. Federal civilian agencies and DoD components use Okta for US Military (FedRAMP High and DoD IL4), with growth in the FedRAMP-High Workforce population particularly visible after the 2022 OMB Zero Trust strategy memo and CISA's continuous identity-validation push.
Beyond regulated industries, Okta has anchor density in technology and SaaS (the historical Auth0 stronghold for B2B SaaS CIAM, plus Workforce Identity for the GTM and engineering teams at the same vendors), professional services and consulting (Big Four, strategy firms, global law firms, accounting networks), higher education and research (R1 universities, university medical centers, large state systems), retail and CPG (DTC brands using Auth0 for consumer accounts and loyalty), media and streaming (M2M tokens at scale on Auth0), travel and hospitality (loyalty programs on Auth0), and energy and utilities (Workforce Identity for operational technology / OT identity segregation). Within each vertical, the buying center scales with employee count: 50-499 employees buy Workforce Identity self-serve through Okta direct or via Auth0 free / developer tiers for the consumer app; 500-4,999 employees buy via Okta inside sales with named CISO and IAM Director involvement; 5,000+ employees buy via Okta strategic accounts with multi-year, multi-cloud TCV deals including SailPoint or Saviynt displacement plays, CyberArk consolidation conversations, and Auth0 migration off legacy CIAM (Ping, ForgeRock, IBM, Microsoft Entra External ID, Azure AD B2C deprecation, in-house OAuth servers).
Representative Okta Customers Across Verticals
A sample of named Okta customer references drawn from public Okta case studies, Oktane keynote disclosures, and Okta investor materials. Workforce Identity Cloud, Auth0 / Customer Identity Cloud, and dual-cloud deployments are all represented.
See if your top Okta accounts are in the database.
Get 50 verified Okta customer records that match your ICP. Delivered in one business day.
Where Okta Concentrates by Industry
Okta's customer mix is industry-skewed in ways that matter for outbound targeting. Regulated verticals, financial services, healthcare, federal, defense, life sciences, dominate the high-ARR cohort. Tech, retail, and media dominate the Auth0 CIAM cohort.
Regulated industries (FS + healthcare + federal + defense + life sciences) represent roughly 48% of Okta's $100K+ ARR customer count, the densest concentration of CISO and VP IAM buyers in the entire SaaS ecosystem.
B2B SaaS is the densest Auth0 / Customer Identity Cloud segment, anchored by Auth0 Organizations multi-tenancy for B2B end-user identity.
Federal civilian and DoD adoption accelerated visibly after the January 2022 OMB Zero Trust memo (M-22-09) and the May 2021 Executive Order 14028 on cybersecurity.
Healthcare CIAM (HITRUST + Auth0) is one of the fastest-growing cohorts as digital health platforms scale and health systems modernise patient portals.
Okta Adoption by Country
Okta is global, but the customer concentration map skews more heavily toward the United States and English-speaking markets than most enterprise SaaS, reflecting CIAM regulatory clarity, FedRAMP demand, and the Auth0 developer-community base.
The United States represents roughly 62% of Okta's customer count, the heaviest US skew of any major IAM provider, driven by FedRAMP demand, regulated FS density, and Auth0's US-centric developer community.
English-speaking markets (USA + UK + Canada + Australia + Ireland) together represent roughly 82%.
Europe collectively is a strong second region, with Germany, France, and the Netherlands leading EU enterprise adoption.
APAC growth is led by Japan, Singapore, and Australia, with strong financial-services concentration.
Okta Customers by US State
US Okta deployments concentrate in financial-services HQ states, federal-adjacent corridors, tech hubs, and healthcare HQ states.
Virginia hosts the FedRAMP and DoD IL4 concentration that no other state matches, plus Capital One in McLean as a flagship regulated-FS Okta customer.
Connecticut's Hartford insurance corridor is a structurally dense cluster of regulated-FS Workforce Identity buyers (Northshore Mutual is a representative example).
Memphis Tennessee hosts FedEx, a global Workforce Identity Cloud customer at logistics scale.
Bay Area + Boston biotech corridors host the densest pharma + life-sciences Privileged Access deployments.
Okta Customer Size Distribution
Okta spans the full size spectrum from 5-developer Auth0 free tier accounts up to global enterprises with 500,000+ Workforce identities. BizzContacts focuses on the cohorts where outbound IAM, identity-security, and CIAM vendor pitches actually generate pipeline.
Mid-market enterprise and upper mid-market enterprise (500-9,999 employees) together represent roughly 46% of the install base and are the densest outbound cohort, especially for IGA, PAM, ITDR, passwordless, and Auth0 extensibility. Large and global enterprise (10,000+) are the strategic accounts where dual-cloud Workforce + Auth0 + IGA + Privileged Access + ITP is already running and where vendors are selling consolidation, displacement, or specialist depth.
Decision-Makers Inside an Okta Account
Identity buying is title-anchored. The CISO owns the policy, the VP / Director of IAM owns the platform, and a tightly defined ring of architect and engineering titles owns the implementation. CIAM has a separate buyer center anchored by VP Engineering and Director of Customer Identity.
The CISO is the executive owner, the VP IAM is the platform owner, the IAM Director and Identity Architect are the implementation owners. For Auth0 / CIAM outbound, target VP Engineering, Director of Customer Identity, and Director of Identity Engineering instead, different buying center, different vocabulary, different KPIs. Privileged Access pitches go to Director of PAM. ITDR pitches go to Director of Zero Trust + Director of Cybersecurity. IGA pitches go to Director of Identity Governance and the GRC / Compliance Director.
Reach these Okta decision-makers this week.
Verified Okta customer contacts with named CIO, ERP Manager, CFO, and procurement titles. 97.4% inbox deliverability.
Technology Ecosystem Around Okta Customers
Okta sits at the centre of a predictable adjacent stack: federated IdPs, MFA factors, IGA, PAM, SaaS posture, SIEM, and the SaaS apps that depend on Okta for SSO.
Okta vs Entra ID vs Duo vs Ping (incl. ForgeRock) vs JumpCloud
Okta and the four largest competing Workforce IAM platforms compared on Auth0 / CIAM equivalents, regulated-tenancy posture, and BizzContacts install-base coverage.
Okta wins on best-of-breed IAM depth, OIN integration breadth, and dual-cloud Workforce + CIAM coverage. Entra ID wins on Microsoft 365 bundling and economics for Microsoft-anchored orgs. Duo wins on mid-market MFA simplicity and Cisco-anchored bundling. Ping (incl. ForgeRock) wins on regulated-FS and telecom CIAM depth. JumpCloud wins on SMB device + identity bundling.
What the Okta Customers List Unlocks for Outbound
Sell phishing-resistant MFA and passkeys into FastPass-pilot accounts
Yubico, HYPR, Beyond Identity, IDmelon, Stytch, Descope target the FastPass-pilot and FastPass-not-adopted cohorts.
Sell ITDR into Identity Threat Protection-not-adopted accounts
Silverfort, Permiso, Push Security, Vectra Identity, Mitiga, Reco target Okta customers without ITP live.
Sell IGA into Workforce-only-no-IGA accounts
SailPoint, Saviynt, ConductorOne, Lumos, Veza, Opal, Zilla target Workforce Identity customers without Okta Identity Governance.
Sell PAM and JIT into Privileged Access-pilot accounts
CyberArk, BeyondTrust, Delinea, Teleport, StrongDM, Apono, Britive, Sym, Indent target PAM-pilot or no-PAM cohorts.
Sell CIAM displacement into Workforce-only accounts
FusionAuth, Stytch, Frontegg, Descope, WorkOS, Ory, Kinde, Clerk target Workforce Identity customers without Auth0, Microsoft Entra External ID and Azure AD B2C deprecation accelerates the displacement window.
Sell FGA / ReBAC into Auth0 Actions accounts
Permit.io, Cerbos, OpenFGA, Authzed, Oso target Auth0 customers using Actions but not Fine Grained Authorization.
Sell SSPM into OIN-dense accounts
Adaptive Shield, AppOmni, Obsidian, Wing, Reco, Grip target Okta customers with 40+ OIN integrations in production.
Event marketing around Oktane and RSA Conference
Drive event engagement and meetings at Oktane and RSA with pre-targeted Okta-running CISOs and IAM Directors.
Which Vendors Use the Okta Customers List
Okta sits at the centre of every modern identity-security conversation, which makes its install base the highest-yield outbound list for an unusually wide set of adjacent vendors. The buyers below are the most common purchasers of the BizzContacts Okta customers list.
Phishing-resistant MFA, passkey, and passwordless vendors
Yubico, HYPR, Beyond Identity, IDmelon, Stytch, Descope, Hanko, Keyless target FastPass-pilot and FastPass-not-adopted Workforce cohorts.
Use case: FIDO2 security-key rollout, passkey-first SSO, device-bound credentials, phishing-resistant MFA enforcement under EO 14028 / OMB M-22-09.
Identity Threat Detection and Response (ITDR) specialists
Silverfort, Permiso, Push Security, Vectra Identity, Mitiga, Reco, Grip Security target Workforce customers without Identity Threat Protection live.
Use case: Runtime session compromise detection, SaaS shadow-identity discovery, OAuth grant hygiene, lateral-movement detection.
Identity Governance and Administration (IGA) vendors
SailPoint, Saviynt, ConductorOne, Lumos, Veza, Opal Security, Zilla Security target Workforce customers without Okta Identity Governance live.
Use case: Access reviews, joiner-mover-leaver automation, separation of duties, certification campaigns, audit-grade IGA for SOX / HIPAA / FedRAMP.
Privileged Access Management (PAM) and JIT vendors
CyberArk, BeyondTrust, Delinea, Teleport, StrongDM, Apono, Britive, Sym, Indent, ConductorOne JIT target Privileged Access pilot and no-PAM cohorts.
Use case: Standing-privilege elimination, just-in-time infrastructure access, vault consolidation, OT/IT privileged segregation.
Customer Identity Cloud / Auth0 competitors
FusionAuth, Stytch, Frontegg, Descope, WorkOS, Ory Network, Kinde, Clerk, SuperTokens, Userfront, LoginRadius, Microsoft Entra External ID, Ping (incl. ForgeRock), Transmit Security, Curity target Workforce-only Okta customers and Azure AD B2C deprecation migrants.
Use case: B2B SaaS multi-tenant identity, FAPI Open Banking, account takeover defence, CIAM modernisation off legacy stacks.
Fine Grained Authorization (FGA / ReBAC) vendors
Permit.io, Cerbos, OpenFGA, Authzed/SpiceDB, Oso target Auth0 customers using Actions but not Fine Grained Authorization.
Use case: Application-layer authorization, ReBAC modeling, policy-as-code for in-app permissions.
Bot defence and account takeover prevention
DataDome, Kasada, hCaptcha, Cloudflare Bot Management, Castle, Sift complement Auth0 Bot Detection + Attack Protection.
Use case: Credential stuffing defence, fake-account prevention, ATO economics for high-value consumer logins.
SaaS security posture management (SSPM)
Adaptive Shield, AppOmni, Obsidian Security, Wing Security, Reco, Grip Security target OIN-dense Okta customers.
Use case: SaaS-estate identity hygiene, MFA enforcement audit across SaaS, OAuth grant audit, SaaS access governance.
If your product or service touches Workforce identity hardening, CIAM modernisation, Auth0 extensibility, runtime identity threat detection, privileged access modernisation, identity governance, or SaaS-estate identity posture, the BizzContacts Okta list is the most direct path to the CISO, VP IAM, IAM Director, Director of CIAM, and Identity Architect buyers who can actually sign.
Why Vendors Buy the Okta Customers List
Buyer-center precision
Records resolve to CISO, VP IAM, IAM Director, Director of CIAM, Identity Architect, Director of Zero Trust, Director of Cybersecurity at Okta-running accounts, not generic IT contacts.
Product-mix filtering
Filter by Workforce-only, Auth0-only, dual-cloud; FastPass status; Identity Engine vs Classic Engine; ITP live/pilot/not adopted; IGA live/evaluating; Privileged Access live/pilot; Auth0 Actions + FGA usage; Organizations multi-tenancy.
Regulatory tag filtering
Filter by FedRAMP High, DoD IL4, HITRUST, FAPI/Highly Regulated Identity, SOC 2, ISO 27001 footprint.
OIN integration depth
Filter by number of Okta Integration Network apps in production as a proxy for SaaS estate breadth and IAM cross-sell maturity.
Downstream IdP federation pattern
Filter by Okta primary IdP, federated to Entra for Microsoft 365, federated to Ping/ForgeRock hybrid, federated to Google Workspace.
Higher reply rates than CISO-only lists
BizzContacts Okta records benchmark at 6.2x the reply rate of a generic CISO list because the Okta-specific product context drives relevance.
What Every Okta Record Includes
Every shippable record on the BizzContacts Okta list ships with the following fields.
Why BizzContacts for Okta Intelligence
Buyer-center precision
Data resolves to CISO, VP IAM, IAM Director, Director of CIAM, Identity Architect at Okta accounts.
Okta-specific product tagging
Workforce vs Auth0 vs dual-cloud, FastPass / Identity Engine / IGA / Privileged Access / ITP, Auth0 Actions / Organizations / FGA / FAPI.
Regulatory tenancy tagging
FedRAMP High, DoD IL4, HITRUST, FAPI / Open Banking, SOC 2, ISO 27001.
Downstream IdP federation pattern
Okta primary vs federated to Entra ID vs federated to Ping / ForgeRock vs federated to Google.
OIN integration depth as a SaaS-estate proxy
Count of federated apps drives cross-sell signal for SSPM, identity governance, and identity hygiene tooling.
Hand-verified by analysts familiar with IAM titles
We do not confuse a Director of IT with a Director of IAM. The research desk is staffed for it.
How the Okta Customers List Data Is Sourced
The Okta install base is harder to verify than most because IAM customers do not advertise their identity provider on their website. The BizzContacts research pipeline triangulates Okta identity from public deployment signals, OIDC/SAML metadata, OIN partner intelligence, Auth0 developer signal, and named-buyer attestation.
A record is shipped only when at least two independent signals confirm Okta as the identity provider and the named decision-maker is verified by the research desk within the trailing 30 days.
What Outbound Teams Say About BizzContacts Okta Data
FastPass-pilot filter changed our pipeline overnight. We sourced 1,200 Okta accounts in FastPass pilot and ran a single phishing-resistant MFA campaign, 22 enterprise security demos in 6 weeks.
ITP-not-adopted + IGA-not-live cross-filter is exactly the buyer profile our ITDR product was built for. 38 qualified pipeline opportunities in the first quarter.
Auth0 + Actions + no FGA is the textbook Permit.io / Cerbos buyer. The cohort came back at 9.4% reply rate on cold outbound and we closed three logos in a single quarter.
Ready to test the Okta customers list?
Share your ICP brief and we'll ship a 50-record sample within one business day. No credit card required.
Okta Buyer Intelligence: Quick Answers
Short, direct answer blocks optimised for AI search engines and featured snippets.
Q: How many companies use Okta?
A: Okta reports approximately 19,300+ paid customer accounts globally, including 4,800+ accounts each generating more than $100K ARR. BizzContacts verifies 16,800+ records weighted toward mid-market enterprise and above.
Q: What is Okta Workforce Identity Cloud?
A: Okta's workforce identity platform: SSO, Universal Directory, Lifecycle Management, Adaptive MFA, Advanced Server Access, Privileged Access, Identity Governance, Identity Threat Protection with Okta AI, FastPass passwordless, and Device Trust.
Q: What is Okta Customer Identity Cloud (Auth0)?
A: The CIAM platform Okta acquired in May 2021 for $6.5B (Auth0). Covers Universal Login, B2C/B2B/B2B2C identity, Actions extensibility, Fine Grained Authorization, Organizations multi-tenancy, Bot Detection, Attack Protection, Adaptive MFA, and Highly Regulated Identity for FAPI / Open Banking.
Q: What is Okta FastPass?
A: Okta's phishing-resistant passwordless authenticator. Supports biometric, FIDO2/WebAuthn, and device-bound credentials; the prerequisite for Identity Threat Protection runtime detection.
Q: What is Okta Identity Threat Protection?
A: ITDR product launched 2024. Uses Okta AI to detect runtime session compromise, lateral movement, and policy violations and to issue automatic step-up or session revocation.
Q: What is Okta Identity Engine vs Classic Engine?
A: Identity Engine is the modernised orchestration runtime supporting FIDO2, WebAuthn, passkeys, and Verifiable Credentials. Classic Engine is the legacy runtime. Migration is the prerequisite for FastPass and ITP.
Q: What is the Okta Integration Network (OIN)?
A: The 7,000+ pre-built app integration catalog at okta.com/integrations covering SAP, Salesforce, Workday, Microsoft 365, Google Workspace, ServiceNow, Slack, Zoom, AWS, Azure, GCP, Snowflake, NetSuite, GitHub, Atlassian, Box, DocuSign, and the long tail.
Q: What is Okta for US Military?
A: Okta's FedRAMP High and DoD IL4 authorised tenancy for federal civilian and DoD identity workloads.
Q: How does Okta compare to Microsoft Entra ID?
A: Okta wins on best-of-breed IAM depth, OIN integration breadth, Auth0 CIAM depth, and IdP-neutrality. Entra wins on Microsoft 365 bundling and Microsoft-anchored licensing economics.
Q: How does Okta compare to Cisco Duo?
A: Duo wins on Cisco-anchored mid-market MFA bundling and lower entry price. Okta wins on platform breadth (Universal Directory, Identity Governance, Privileged Access, ITP) and OIN integration depth.
Q: How does Auth0 compare to Microsoft Entra External ID and Azure AD B2C?
A: Auth0 wins on developer extensibility (Actions), Organizations multi-tenancy for B2B SaaS, Highly Regulated Identity for FAPI, and breadth. Azure AD B2C is being deprecated; Entra External ID is the Microsoft replacement and competes head-to-head.
Q: Can I filter by Workforce vs Auth0 vs dual-cloud?
A: Yes.
Q: Can I filter by FastPass and Identity Threat Protection adoption?
A: Yes, by live, pilot, roadmap, not adopted.
Q: Can I filter by regulatory tenancy?
A: Yes, by FedRAMP High, DoD IL4, HITRUST, FAPI / Highly Regulated Identity, SOC 2, ISO 27001.
Q: How accurate is the BizzContacts Okta list?
A: 99% record-accuracy SLA, 97.6% inbox deliverability, 30-day replacement guarantee.
People Also Ask About Okta Customers
Okta Customers List FAQs
Related Pages Inside BizzContacts
Related install-base and decision-maker resources for vendors selling into the Okta ecosystem.
