No more typing reviews! Try our Samantha, our new voice AI agent.

Microsoft Entra ID Governance vs Okta Platform comparison

Why PeerSpot?
 

Comparison Buyer's Guide

Executive SummaryUpdated on Mar 22, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Microsoft Entra ID Governance
Ranking in Identity and Access Management as a Service (IDaaS) (IAMaaS)
12th
Average Rating
7.8
Reviews Sentiment
6.3
Number of Reviews
14
Ranking in other categories
No ranking in other categories
Okta Platform
Ranking in Identity and Access Management as a Service (IDaaS) (IAMaaS)
2nd
Average Rating
8.6
Reviews Sentiment
6.6
Number of Reviews
126
Ranking in other categories
Single Sign-On (SSO) (1st), Authentication Systems (3rd), Privileged Access Management (PAM) (3rd), Access Management (2nd), ZTNA as a Service (3rd), Customer Identity and Access Management (CIAM) (1st), AI IT Support (1st)
 

Mindshare comparison

As of September 2026, in the Identity and Access Management as a Service (IDaaS) (IAMaaS) category, the mindshare of Microsoft Entra ID Governance is 2.3%, down from 2.4% compared to the previous year. The mindshare of Okta Platform is 8.5%, down from 11.8% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Identity and Access Management as a Service (IDaaS) (IAMaaS) Mindshare Distribution
ProductMindshare (%)
Okta Platform8.5%
Microsoft Entra ID Governance2.3%
Other89.2%
Identity and Access Management as a Service (IDaaS) (IAMaaS)
 

Featured Reviews

AmitRathod - PeerSpot reviewer
Senior Analyst at Toll Holdings Limited
Automated access governance has strengthened security and supports user-centric approvals
The workflows such as joiner, mover, and leaver work in Microsoft Entra ID Governance. Entitlement Management is a bundle of resources where Microsoft Entra ID applications, groups, and SharePoint sites are packaged into a single package so that users can request it. This is one of the great features for Microsoft Entra ID Governance. Another feature is Access Review, which allows an automated schedule to be managed for the manager or resource owner so that they can verify whether people still need access. Privileged Identity Management is another feature for governance that provides just-in-time (JIT) access for administrative roles. For example, instead of being a permanent or global admin, which is a major security risk, an IT professional is eligible for the role and must request four hours of access only when they need to perform a specific task. There is a feature called access package. If any user wants particular application access, they can request this application via Microsoft Entra ID Governance access package. Whenever an end user makes a request, the access goes to one application manager and their current line manager. If they approve it, then they get the application access. This is a very good feature for user-centric purposes. Microsoft Entra ID Governance includes securing AI agent identity. As a company uses more AI generation such as Copilots or custom bots, those bots need their own identity just as employees do. Microsoft Entra now provides a way to assign unique identities to AI agents so you can control what data they can access. Microsoft Entra ID Governance protection now looks for risky behavior in AI agents. If a bot suddenly tries to download an unusual amount of data or unconscious data, it can detect this as a risk detection factor. Security Copilot allows Entra administrators to manage identity with natural language. Microsoft Entra ID Governance has protection and authentication features. Smart risk detection protects and analyzes to detect threats such as impossible travel. If a person is logging in from many different locations, it detects this as a risk factor. A user cannot use an unauthenticated password or log in from an incompatible device. These AI features are used in conditional access management in Microsoft Entra ID Governance. Automation is used for user onboarding, user offboarding, and user update processes through user lifecycle management. If an organization uses Workday as an HR application where new users join and fill in their details, all these details get reflected into Workday and then reflected into Active Directory as well as Microsoft Entra ID Governance. This automation helps to manage the day-to-day user onboarding process, user offboarding process, and user update process. Microsoft Entra ID Governance automation also helps with password-related tasks, access recertification, and reporting.
SN
Identity and Access Management Specialist at a university with 10,001+ employees
Automated lifecycle management has cut onboarding times and now drives secure, clean access
Although I am a fan of Okta Platform overall, there are areas where it could improve security outcomes and reduce admin friction. My top improvement areas include the system log and analytics upgrade, which are great for point troubleshooting, but trending and root cause analysis across large tenants still require exporting to SIEM. Verbose queries and long-range retention costs can add up. Additionally, while certificate rotations are better than most, the process is still manual for busy portfolios, especially concerning multi-SP SAML certificate rotations and app metadata drift. Two more buckets of potential improvements for Okta Platform involve user experience and security. There is the issue of push fatigue and prompt sprawl, where users receive multiple prompts across different apps and sessions. I arrived at the rating of eight because the core controls are strong and reliable, but a few operational UX and UI gaps prevent it from being rated higher. The reasons for not giving it a nine or ten include ongoing issues concerning safety and change safety, the complexity of group rules and mappings, and the lack of robustness in policy management. Additionally, there remains a need for more manual involvement than necessary, especially for large portfolios and dual certificate rotation, along with proactive SP data metadata validation.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable feature of Microsoft Entra ID Governance is access reviews."
"The product's most valuable features are the robust audit trail capabilities."
"The solution is fully scalable, supporting everything from small companies to large enterprises."
"Regarding Microsoft Entra ID Governance integration with Microsoft services, there is automated identity lifecycle management in the product."
"The solution gives me the capability to automatically move guest accounts from the tenant without any manual intervention."
"The best features are Access Review and Entitlement Management, where recertification can be run on-demand or on a time-based schedule so that all privileged users get certified by their managers regarding whether they still need access, making it a very good feature for user-centric purposes."
"The most valuable feature of Microsoft Entra ID Governance for identity management is multi-factor authentication."
"Access reviews are an essential feature of Entra Governance. Additionally, privileged identity management is one of its most valuable features. Just-in-time access, or Jet GIT, is integral to this system. Moreover, user behavior analytics stands out as one of its top features."
"Okta Platform seamlessly integrates with everything."
"The impact of SSO on my IT overhead and user experience has been significant because it reduced authentication fatigue, password sharing, and password reusing."
"The support for YubiKey is really good because you don't actually have to type in your username and password."
"I think all the functions of the solution are vital and important because life cycle management is important for some companies. The Single Sign-On feature is fantastic for different customers and advanced server access is really good for access to the servers."
"Its simplicity and its integration with various vendor-agnostic platforms are the most valuable features."
"It offers very helpful support. The technical team is very helpful."
"The MFA part is the best. MFA provided most of the security that we were looking at with respect to the second level of authentication. Okta Workforce Identity provides a number of options with respect to multifactor authentication, such as the app, phone call, and text. These options provide different ways of logging in for users, and they were a lot more than what we needed. This is certainly a very good feature of Okta Workforce Identity."
"Our clients are happy because prior to implementation, they had a very distributed architecture, and Okta has allowed them to consolidate with respect to identity management, which increases their operational efficiency."
 

Cons

"The product's workflow approval process needs improvement."
"I would rate customer service at three out of ten."
"Sometimes, the solution is not super reliable."
"The solution lacks the feature to work well with third-party applications."
"Bridging between on-premises and cloud services has the potential for improvement. For instance, it would be beneficial to be able to synchronize traditional directory schemas with Azure. I need to maintain an on-premises Active Directory server for certain required services."
"The platform's configuration process needs improvement."
"If you want to conduct access review of database-based applications, then you cannot do that."
"Microsoft has done a commendable job with RPAX. However, Microsoft should prioritize enhancing its ABAC (Attribute-Based Access Control) capabilities. Currently, Microsoft's ABAC offering falls behind AWS in comparison."
"It was complex to implement password synchronization between AD domains."
"Okta doesn't have a partial push. It pushes down the full profile schema for lifecycle management or provisioning."
"What I'd like to see improved in Okta Customer Identity is the process of exporting users. Currently, it lacks this feature, and you have to use a third-party tool to export users from the group. Exporting users should be very easy, though I did notice that Okta Customer Identity is being upgraded from time to time, and I've been seeing much improvement in it compared to the previous years."
"The guest user access could be improved."
"In some setup cases, there are issues with attributes not going in properly."
"The solution lacks an on-premises deployment model so it can't offer a hybrid solution. It would be ideal if clients had options that weren't just cloud-based."
"Okta Platform could be improved by offering more out-of-the-box templates for advanced workflows and making the administration console faster when searching through a very large group of users."
"It can have more API integrations."
 

Pricing and Cost Advice

"In the education sector where I work, the annual cost for my Google and Microsoft environments is approximately $35,000. This covers the needs of 3,400 students and 800 faculty and staff members."
"While other products give the pricing for their application, Microsoft Entra ID Governance has a per-user-based license model."
"There are no additional costs besides the standard licensing fees."
"The solution's pricing is not low but reasonable."
"The solution is really expensive."
"It could be a bit too pricey for small companies. Okta Workforce Identity can add a lot of benefits, but smaller companies may not have a lot of applications that need to be managed by Okta Workforce Identity. In larger organizations, there are more departments, applications, and users to manage. Okta Workforce Identity adds a bit more value to those bigger organizations. In addition to standard licensing fees, there are also additional costs for things"
"Okta's pricing is right where it needs to be and right in the middle of the market."
"The solution’s pricing needs to be reasonable. You are dealing with a lot of components and the pricing is component-based."
"The product has a user-based license model."
"The price of the solution is good."
"Workforce Identity is well-priced."
"The licensing model is fine for general service usage. However, the charges for API features and API tokens can be quite high."
report
Use our free recommendation engine to learn which Identity and Access Management as a Service (IDaaS) (IAMaaS) solutions are best for your needs.
913,924 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
10%
Outsourcing Company
9%
Financial Services Firm
9%
Government
9%
Financial Services Firm
10%
Outsourcing Company
9%
Manufacturing Company
8%
Construction Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business2
Midsize Enterprise3
Large Enterprise10
By reviewers
Company SizeCount
Small Business53
Midsize Enterprise27
Large Enterprise64
 

Questions from the Community

What needs improvement with Microsoft Entra ID Governance?
There is one feature that I do not prefer. If a manager approves access for a particular user and wants to change their decision about whether the user should retain access or not, once they approv...
What is your primary use case for Microsoft Entra ID Governance?
I use Microsoft Entra ID Governance for identity and access management as well as access recertification. The workflows such as joiner, mover, and leaver work in Microsoft Entra ID Governance. Enti...
What advice do you have for others considering Microsoft Entra ID Governance?
The best features are Access Review and Entitlement Management. Recertification can be run on-demand as and when any recertification slip occurs. There is also time-based recertification, which we ...
What is your experience regarding pricing and costs for Okta Workforce Identity?
Pricing for Okta is reasonably not that much, however, I don't have access to the commercial aspect.
What needs improvement with Okta Workforce Identity?
Currently, in Okta Workforce Identity we get the two-digit authentication code. Instead of getting the two-digit authentication code, if we had an option to do fingerprint verification, that would ...
What is your primary use case for Okta Workforce Identity?
I don't have many details about Okta Workforce Identity. I use the tool just to sign in to different applications that we have. We basically set up Okta Workforce Identity in our mobile phone. We d...
 

Also Known As

No data available
Okta Customer Identity, Workforce Identity
 

Overview

 

Sample Customers

Information Not Available
FedEx, Zoom, Takeda, Lululemon Athletica, GrunHub, jetBlue, McKensson, Bain & Company, Engie, Peloton, Sonos, T-Mobile, Hewlett Packard, MGM Resorts, Ally Financial, Priceline, Albertsons, Itercom, Classy, FICO, Kensho, Live Nation, Drata, Rotary, and others.
Find out what your peers are saying about Microsoft Entra ID Governance vs. Okta Platform and other solutions. Updated: September 2026.
913,924 professionals have used our research since 2012.