← All talks

Okta Group Creation Alert: Simple & Effective Security #shorts

BSides Frankfurt0:35254 viewsPublished 2026-04Watch on YouTube ↗
About this talk
Alerting on new critical group creations in Okta. A simple OR statement helps monitor key groups against potential misuse. Effective security doesn't always need high-tech. #OktaSecurity #GroupManagement #Cybersecurity #IdentityManagement #TechAlerts
Show transcript [en]

detection. I brought that up originally. The system import group create event in Okta. Um there are similar groups in uh Microsoft and in Google and the other IDPs. Uh watch for new groups being created via an import. And then for us, we have a as a very basic alert where I have a list of our 100, you know, critical groups. And if anybody creates a group that's named that, it fires an alert. And it's that's all it is. It was I thought about ways to do it high-tech, but it was a lot easier just make a big or statement. Um it works.