Skip to main content
Back to blog

Backupta at Oktane 2026

A packed booth, our first Krew Connect, and AI agents at the center of the identity conversation. Our Oktane 2026 recap brings together the week’s highlights, customer conversations, and new Backupta capabilities for protecting and recovering Okta configurations.

Oktane 2026 was one of those weeks where it was hard to pick a favorite moment.

Our booth was packed from the first day. We spent the week running demos, talking with identity teams, and hearing how organizations are thinking about resilience as identity becomes even more critical to the business.

Away from the booth, we had sessions, lightning talks, live demos, and a customer panel with Kyndryl and Fanatics. Our first Krew Connect brought the Backupta user group together in person.

There were a lot of highlights. Hearing customers tell their own resilience stories was one. Watching a live cross-IdP failover was another. Seeing customers challenge our roadmap together in one room was up there too.

So we are not going to choose just one.

The big Oktane theme: securing the agentic enterprise

There was no missing the main topic at Oktane this year: AI agents.

Okta framed the event around the secure agentic future. The message was clear: AI agents are becoming first-class identities. As they connect to applications, APIs, MCP servers, data, and other agents, organizations need to understand where those agents are, what they can access, what they are doing, and how to respond when something goes wrong.

Okta announced capabilities around agent discovery, agent-to-agent connections, Agent SSO, access certifications, runtime controls through Agent Gateway, and ways to contain compromised agents. It also introduced the Blueprint Alliance, bringing identity, AI, security, data, application, and infrastructure vendors together around a common approach to securing AI agents.

That theme matters to us because it changes the identity environment itself.

AI agents can carry credentials, have owners, receive delegated access, connect to resources, and take action. For identity teams, the configuration surface is growing again.

And as that surface grows, so does the need to understand what changed, keep a reliable history, and recover the intended state.

AI agents are now part of the identity state

An AI agent carries credentials and acts on its own. Its owners, delegated access, and connections all become part of the configuration identity teams need to understand and protect.

If an agent is deleted, its ownership or delegation changes, or an MCP connection is modified, teams need to know what changed, when it happened, and what the configuration looked like before. They need a safe way to recover that state.

What we announced for Okta

Backup and restore for Okta for AI Agents

Backupta now protects 14 new Okta object types introduced with Okta for AI Agents. Coverage includes agents and their credentials, connections, delegations and owners; the MCP servers and resource servers behind them; and the provider objects that register agents from platforms such as AWS Bedrock or Salesforce Agentforce.

Teams can restore, revert, clone and push these objects, and include them in failover workflows, just as they do with the rest of their Okta configuration. Incremental backup captures changes within minutes, without waiting for the next full backup.

Backupta Guardrails auto-revert

When auto-revert is enabled, a Guardrail can return a protected object to an approved reference version within minutes. If the same configuration repeatedly drifts and is restored over a short period, Backupta raises the severity so the team can investigate the pattern.

More precise Okta recovery

Cross-org SAML identity providers can now be relinked to the partner tenant's Org2Org application during recovery. Okta Workflows backup now covers tenants using a single custom domain.

Approvers can see what a proposed revert will change before approving it. On large tenants, reverting a single group assignment now takes seconds instead of more than ten minutes.

Expanded compliance coverage

The Compliance Center now includes DORA and PCI DSS, giving teams a real-time view of how their Okta configurations align with the relevant controls in these frameworks. That makes it easier to identify configuration gaps, prioritize remediation, and prepare for compliance reviews as the environment changes.

The people made the week

The product announcements mattered, but some of the best conversations had nothing to do with a feature slide.

John Moore, Director IAM at Kyndryl, and Matt Seibler, Staff Systems Engineer at Fanatics, joined our COO, Tony Majewski, for a customer panel on what identity resilience looks like when so much of the business depends on it.

Hearing customers share their own perspective made the conversation much more concrete. The discussion reflected what identity teams deal with every day: understanding change, preparing for incidents, recovering with confidence, and keeping critical identity services available.

Krew Connect

Our first in-person user group was one of the highlights of the week. Krew Connect brought Backupta customers together to share what they are seeing in their environments, compare experiences with other practitioners, and work through the roadmap with our team. Their ideas, questions, and feedback helped shape the discussion about where Backupta goes next.

What we are taking home from Oktane

Oktane made it clear that AI agents are becoming part of the identity environments teams already manage. Alongside human, machine, and workload identities, they bring credentials, permissions, and connections that teams need to understand and govern.

Okta’s focus on visibility, governance, and control reflected that shift. Recoverability belongs in the same conversation. As these environments change, teams need a reliable history of their configurations and a safe way back to the intended state, whether they are recovering a policy, a workflow, an AI agent, or the identity provider itself.

Those questions came up throughout the week, in our sessions, at the booth, and during Krew Connect. Hearing how identity teams approach them in practice gave us plenty to bring home and carry into our work.

Thank you to everyone who stopped by, joined a session, shared feedback, or challenged us with a difficult question. You made it a busy and memorable week in Las Vegas, and we’re looking forward to continuing those conversations.




Next step

See how identity resilience works in your environment.

Talk with our team about change visibility, controlled recovery, and continuity across your identity systems.