Okta docs

Getting started with the Okta assessment.

This is the assessment connection path. Customer portal SSO and SCIM are configured separately after your workspace is ready.

Okta Identity Engine onlyNo remediation write-backFirst scan after verification

Confirm Okta Identity Engine

Atomation's assessment supports Okta Identity Engine orgs only. Classic Engine orgs are not supported.

Create the Atomation API Services app

During onboarding, a full-privilege temporary Super Admin SSWS token creates and configures the API Services app, assigns Super Administrator to the permanent app, grants 31 assessment reads plus org-level okta.appGrants.manage, verifies the result, and must be revoked before setup succeeds. Routine scans request only the reads.

Test the connection

Atomation verifies token issuance and confirms the granted scopes before the first snapshot. Runtime assessment calls do not manage users, groups, policies, apps, or settings.

Run the first scan

The first scan captures point-in-time assessment data, evaluates the versioned rule library, and produces the initial report for review.

Configure portal SSO and SCIM if needed

The customer portal can use Okta SSO and SCIM for team access. That integration is separate from the assessment connector that reviews your Okta org.

Repeat these steps for each additional Okta org under your main account. Atomation currently supports up to six orgs per account by default; higher limits can be approved by exception.

Two Okta integrations

Assessment access is not portal access.

The Okta API Services app lets Atomation assess your Okta configuration. SAML SSO and SCIM provision users into the Atomation customer portal. They serve different purposes and should be configured separately.

  • The assessment connection does not sign users in to Atomation.
  • Portal SSO and SCIM are optional workspace-access steps after the tenant is ready.
After connection

The first useful artifact is the report.

Once the first scan completes, review the findings, control mappings, and remediation sequence before making changes in Okta.

Read the report guide
More Okta docs

Supporting pages

The assessment, its security model, delivery options, and report format in more detail.

Get started

Ready to connect an OIE org for the first assessment?

Request a scoped Okta assessment. We'll align the baseline around your org count, reporting needs, evidence requirements, and delivery model.