No more typing reviews! Try our Samantha, our new voice AI agent.

Microsoft Entra ID Governance vs Okta Platform comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Mar 22, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Microsoft Entra ID Governance
Ranking in Identity and Access Management as a Service (IDaaS) (IAMaaS)
12th
Average Rating
7.8
Reviews Sentiment
6.3
Number of Reviews
14
Ranking in other categories
No ranking in other categories
Okta Platform
Ranking in Identity and Access Management as a Service (IDaaS) (IAMaaS)
2nd
Average Rating
8.6
Reviews Sentiment
6.6
Number of Reviews
120
Ranking in other categories
Single Sign-On (SSO) (2nd), Authentication Systems (3rd), Privileged Access Management (PAM) (3rd), Access Management (2nd), ZTNA as a Service (2nd), Customer Identity and Access Management (CIAM) (1st), AI IT Support (1st)
 

Mindshare comparison

As of June 2026, in the Identity and Access Management as a Service (IDaaS) (IAMaaS) category, the mindshare of Microsoft Entra ID Governance is 3.0%, up from 1.7% compared to the previous year. The mindshare of Okta Platform is 8.9%, down from 13.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Identity and Access Management as a Service (IDaaS) (IAMaaS) Mindshare Distribution
ProductMindshare (%)
Okta Platform8.9%
Microsoft Entra ID Governance3.0%
Other88.1%
Identity and Access Management as a Service (IDaaS) (IAMaaS)
 

Featured Reviews

AmitRathod - PeerSpot reviewer
Senior Analyst at Toll Holdings Limited
Automated access governance has strengthened security and supports user-centric approvals
The workflows such as joiner, mover, and leaver work in Microsoft Entra ID Governance. Entitlement Management is a bundle of resources where Microsoft Entra ID applications, groups, and SharePoint sites are packaged into a single package so that users can request it. This is one of the great features for Microsoft Entra ID Governance. Another feature is Access Review, which allows an automated schedule to be managed for the manager or resource owner so that they can verify whether people still need access. Privileged Identity Management is another feature for governance that provides just-in-time (JIT) access for administrative roles. For example, instead of being a permanent or global admin, which is a major security risk, an IT professional is eligible for the role and must request four hours of access only when they need to perform a specific task. There is a feature called access package. If any user wants particular application access, they can request this application via Microsoft Entra ID Governance access package. Whenever an end user makes a request, the access goes to one application manager and their current line manager. If they approve it, then they get the application access. This is a very good feature for user-centric purposes. Microsoft Entra ID Governance includes securing AI agent identity. As a company uses more AI generation such as Copilots or custom bots, those bots need their own identity just as employees do. Microsoft Entra now provides a way to assign unique identities to AI agents so you can control what data they can access. Microsoft Entra ID Governance protection now looks for risky behavior in AI agents. If a bot suddenly tries to download an unusual amount of data or unconscious data, it can detect this as a risk detection factor. Security Copilot allows Entra administrators to manage identity with natural language. Microsoft Entra ID Governance has protection and authentication features. Smart risk detection protects and analyzes to detect threats such as impossible travel. If a person is logging in from many different locations, it detects this as a risk factor. A user cannot use an unauthenticated password or log in from an incompatible device. These AI features are used in conditional access management in Microsoft Entra ID Governance. Automation is used for user onboarding, user offboarding, and user update processes through user lifecycle management. If an organization uses Workday as an HR application where new users join and fill in their details, all these details get reflected into Workday and then reflected into Active Directory as well as Microsoft Entra ID Governance. This automation helps to manage the day-to-day user onboarding process, user offboarding process, and user update process. Microsoft Entra ID Governance automation also helps with password-related tasks, access recertification, and reporting.
SN
Identity and Access Management Specialist at a university with 10,001+ employees
Automated lifecycle management has cut onboarding times and now drives secure, clean access
Although I am a fan of Okta Platform overall, there are areas where it could improve security outcomes and reduce admin friction. My top improvement areas include the system log and analytics upgrade, which are great for point troubleshooting, but trending and root cause analysis across large tenants still require exporting to SIEM. Verbose queries and long-range retention costs can add up. Additionally, while certificate rotations are better than most, the process is still manual for busy portfolios, especially concerning multi-SP SAML certificate rotations and app metadata drift. Two more buckets of potential improvements for Okta Platform involve user experience and security. There is the issue of push fatigue and prompt sprawl, where users receive multiple prompts across different apps and sessions. I arrived at the rating of eight because the core controls are strong and reliable, but a few operational UX and UI gaps prevent it from being rated higher. The reasons for not giving it a nine or ten include ongoing issues concerning safety and change safety, the complexity of group rules and mappings, and the lack of robustness in policy management. Additionally, there remains a need for more manual involvement than necessary, especially for large portfolios and dual certificate rotation, along with proactive SP data metadata validation.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The solution is fully scalable, supporting everything from small companies to large enterprises."
"The best features are Access Review and Entitlement Management, where recertification can be run on-demand or on a time-based schedule so that all privileged users get certified by their managers regarding whether they still need access, making it a very good feature for user-centric purposes."
"I am very happy with the solution."
"The features of Microsoft Entra ID Governance have benefited our organization because we have ServiceNow in our organization and we have been able to create integrations through Lifecycle Management to do onboarding and offboarding easier."
"Access reviews are an essential feature of Entra Governance. Additionally, privileged identity management is one of its most valuable features. Just-in-time access, or Jet GIT, is integral to this system. Moreover, user behavior analytics stands out as one of its top features."
"The product's most valuable features are the robust audit trail capabilities."
"It is compliant with our RVRT and CSV guidelines."
"Regarding Microsoft Entra ID Governance integration with Microsoft services, there is automated identity lifecycle management in the product."
"Okta's great for their federation capabilities where it lets the IT team enable business with anyone using common federation features across SaaS, PaaS, IaaS, and internal applications."
"The best feature is the speed and execution of Okta Workforce Identity; the moment you click on single sign-on, you immediately get the notification on your mobile phone, then you do the authentication and within a second you get authenticated."
"Most of what I appreciate about Okta Platform are the no-code features that I have found excellent, as you have a very low requirement to code."
"We can integrate two-factor authentication with the applications."
"The ease of deployment, ease of use, and speed of delivery is what I like about Okta Workforce Identity. It is very easy to use. For a lot of software, you need to be trained extensively and have a very technical background. Okta Workforce Identity is quite simple. You can integrate any software into Okta. They've got a network of 7,000 applications that easily integrate into it."
"What I found most valuable in Okta Workforce Identity is that it worked together with VMware Workspace One, so there was this device check at the same time. My company used the trusted device method that enabled you to define that only the trusted devices including the Workspace One agent were able to access the applications directly without an additional authentication step."
"You can only log in if you have the access, which protects the applications by avoiding cross-site scripting."
"Its simplicity and its integration with various vendor-agnostic platforms are the most valuable features."
 

Cons

"Microsoft Entra ID Governance is relatively new, and some features require more development. For example, when creating user access review campaigns, we can't specify the time to send emails to reviewers—only the date."
"I would rate customer service at three out of ten."
"The platform's configuration process needs improvement."
"There is a slight delay from creation of the actual access review to how long it takes to complete the actual review. For us, we are a large organization with over ten thousand employees... it takes a while to actually complete, and then it becomes a headache for managers."
"If you want to conduct access review of database-based applications, then you cannot do that."
"Sometimes, the solution is not super reliable."
"Bridging between on-premises and cloud services has the potential for improvement. For instance, it would be beneficial to be able to synchronize traditional directory schemas with Azure. I need to maintain an on-premises Active Directory server for certain required services."
"Microsoft Entra ID Governance should improve its capability to manage identities and access from a single console."
"The product does not offer enough integration capabilities."
"Okta should have at least a local peering partner for countries that align with or comply with GDPR, so there are no compliance or audit questions."
"In terms of improvement, Okta Platform can focus more on governance and posture management."
"Areas for improvement with Okta Workforce Identity would be in the governance place; for me, it is light."
"Okta Platform is expensive. At scale, Okta Platform is costly."
"They also have single sign-on (SSO). When we bought Okta Workforce Identity a year and a half ago, I was also looking at SSO, but not much documentation was available for SSO. The documentation for SSO should be a little more robust for somebody who is implementing it for the first time."
"The initial setup, for new users, is a bit difficult."
"Application updates are lacking. Customer support needs to be improved."
 

Pricing and Cost Advice

"In the education sector where I work, the annual cost for my Google and Microsoft environments is approximately $35,000. This covers the needs of 3,400 students and 800 faculty and staff members."
"The solution's pricing is not low but reasonable."
"There are no additional costs besides the standard licensing fees."
"While other products give the pricing for their application, Microsoft Entra ID Governance has a per-user-based license model."
"It has a yearly subscription. As compared to its competitors, it is quite expensive. It also has a complex licensing model."
"Okta's pricing is right where it needs to be and right in the middle of the market."
"The price of the solution is good."
"The product is expensive compared to other vendors."
"The solution's pricing model could be better for SMBs."
"The solution is not the cheapest but not the most expensive. They are in the middle rating."
"The price of this product could be lower."
"Okta has fairly competitive pricing."
report
Use our free recommendation engine to learn which Identity and Access Management as a Service (IDaaS) (IAMaaS) solutions are best for your needs.
900,838 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
11%
Financial Services Firm
10%
Government
9%
Healthcare Company
8%
Financial Services Firm
11%
Manufacturing Company
10%
Construction Company
8%
Computer Software Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business2
Midsize Enterprise3
Large Enterprise10
By reviewers
Company SizeCount
Small Business51
Midsize Enterprise27
Large Enterprise62
 

Questions from the Community

What needs improvement with Microsoft Entra ID Governance?
There is one feature that I do not prefer. If a manager approves access for a particular user and wants to change their decision about whether the user should retain access or not, once they approv...
What is your primary use case for Microsoft Entra ID Governance?
I use Microsoft Entra ID Governance for identity and access management as well as access recertification. The workflows such as joiner, mover, and leaver work in Microsoft Entra ID Governance. Enti...
What advice do you have for others considering Microsoft Entra ID Governance?
The best features are Access Review and Entitlement Management. Recertification can be run on-demand as and when any recertification slip occurs. There is also time-based recertification, which we ...
What is your experience regarding pricing and costs for Okta Workforce Identity?
Pricing for Okta is reasonably not that much, however, I don't have access to the commercial aspect.
What needs improvement with Okta Workforce Identity?
Currently, in Okta Workforce Identity we get the two-digit authentication code. Instead of getting the two-digit authentication code, if we had an option to do fingerprint verification, that would ...
What is your primary use case for Okta Workforce Identity?
I don't have many details about Okta Workforce Identity. I use the tool just to sign in to different applications that we have. We basically set up Okta Workforce Identity in our mobile phone. We d...
 

Also Known As

No data available
Okta Customer Identity, Workforce Identity
 

Overview

 

Sample Customers

Information Not Available
FedEx, Zoom, Takeda, Lululemon Athletica, GrunHub, jetBlue, McKensson, Bain & Company, Engie, Peloton, Sonos, T-Mobile, Hewlett Packard, MGM Resorts, Ally Financial, Priceline, Albertsons, Itercom, Classy, FICO, Kensho, Live Nation, Drata, Rotary, and others.
Find out what your peers are saying about Microsoft Entra ID Governance vs. Okta Platform and other solutions. Updated: June 2026.
900,838 professionals have used our research since 2012.