ChannelLife Australia - Industry insider news for technology resellers
Story image

Okta identity platforms meet Australia's PROTECTED criteria

Mon, 17th Feb 2025

Okta has successfully completed an independent security evaluation of its Identity platforms, Auth0 and Okta, meeting the requirements for the Australian Government's PROTECTED classification level.

The assessment was conducted by CyberCX, an IRAP-accredited assessor, examining security controls in accordance with the Australian Government's Information Security Manual. The Information Security Registered Assessors Program (IRAP) assists government agencies in confirming that the security controls employed by technology service providers are sufficient for managing information up to the PROTECTED classification. This classification pertains to data that, if disclosed, could compromise national interests, organisations, or individuals.

Okta's assessment evaluated not only its core Identity as a Service (IDaaS) platform but also extended to cover additional products such as Okta Workflows, Okta Privileged Access, Okta Identity Governance, Okta Access Gateway, and Okta Inbox. Additionally, a dedicated evaluation of the Auth0 platform was carried out, ensuring a comprehensive understanding of Okta's security framework.

Brett Winterford, Okta's Regional Chief Security Officer Asia Pacific, commented on the findings, "These independent reports provide those agencies seeking to modernise their technology environment with the confidence and assurance to move off legacy on-premises infrastructure." He stated further, "Okta is well-positioned to support agencies with stringent compliance needs. Identity is a critical component of an organisation's security. It's a lynchpin capability that must be resilient to attack."

Winterford also noted that Okta's investment in security would likely benefit a wide range of cloud service providers, drawing from experiences in other markets. He remarked, "Okta is the key enabler of flexibility and choice. When government agencies trust Okta as an independent and neutral provider of identity services, it opens the door for further adoption of modern applications and services."

CyberCX has provided extensive reports on the security measures for both the Okta and Auth0 platforms, which are now accessible to Australian government agencies through the Okta Trust Center. These reports offer agencies detailed insights into Okta's security implementations and compliance capabilities, further establishing Okta's role as a capable partner for Australian Government requirements.

Follow us on:
Follow us on LinkedIn Follow us on X
Share on:
Share on LinkedIn Share on X