AIToday
Large Language ModelsAI Safety & AlignmentSiliconANGLE AIPublished: Sep 29, 2026, 13:00 JST

Okta's Blueprint Alliance takes on agent runtime security

Okta's Blueprint Alliance takes on agent runtime security

3 Key Points

  1. What happened

    Okta launched a multivendor reference architecture, the Blueprint Alliance, for agent runtime security. It frames the problem in four questions: where agents are, what they can do, what they're doing and how to respond.

  2. Why it matters

    Okta compares what agents connect to against what they are authorized to reach, then can deactivate a flagged agent to block new sessions. This gives buyers one architecture instead of competing vendor claims, according to Okta's president and chief operating officer.

  3. What to watch

    Okta says it plans to expand its kill switch capabilities at the Agent Gateway to revoke active tokens and sessions. The appropriate response will depend on the agent's behavior and the risk it poses.

WHO IT HITSEnterprise security teams moving AI agents into production are the audience: they get a single reference architecture for monitoring agent behavior and shutting down suspicious agents, rather than stitching together each vendor's own claims.

Not sure about something? Ask the AI

Questions and answers are published on this page.

Summaries like this, in your inbox every morning.

Context & Analysis

Okta used its Oktane event this week to turn its agent security framework into a multivendor reference architecture through the Blueprint Alliance. The company's framing of the problem is deliberately simple: the architecture distills agent security into four questions — where agents are, what they can do, what they are doing and how to respond. Underneath that, Okta layers its identity signals atop endpoint and network telemetry, so the question becomes whether an agent is touching systems it was never authorized to reach.

The motivation Okta gives is buyer confusion. Eric Kelleher, Okta's president and chief operating officer, said every technology vendor customers talk to, from every part of the stack, claims to be the one-stop shop that fixes everything. The Blueprint Alliance is positioned as an answer to that noise rather than another competing pitch.

What the architecture can do today is narrow but concrete: Okta can deactivate a flagged agent to block new sessions, and it plans to expand its kill switch capabilities at the Agent Gateway to revoke active tokens and sessions. The outcome here appears to hinge on how the response is calibrated — Kelleher noted there will be cases where agents step over unintended boundaries while exploring their intended work and need to be redirected and bounded back in. For security teams putting agents into production, the practical test is likely whether one shared architecture can replace a patchwork of vendor claims.

FAQ
What does Okta's Blueprint Alliance actually check?
It looks at what agents are connecting to and compares that against the systems they have been authorized to connect to, flagging any disparity. That real-time data flows back into a system to judge whether something looks suspicious.
Can Okta stop an AI agent that is behaving badly?
Yes. Okta can deactivate a flagged agent to block new sessions, and it plans to expand its kill switch capabilities at the Agent Gateway to revoke active tokens and sessions. The response depends on the agent's behavior and the risk it poses.
Why did Okta build this with multiple vendors?
Okta's president and chief operating officer, Eric Kelleher, said every vendor tells customers it is the one-stop shop that fixes everything, which creates confusion. The Blueprint Alliance is meant to help buyers navigate competing vendor claims.
SiliconANGLE AIRead Original Article

Get the latest Large Language Models news every morning

For example, today's edition would include:

  • Omdia: 400 security leaders name confusion top AI agent identity blockerSiliconANGLE AI · 10m ago
  • Meta launches Meta Enterprise Platform, taps MongoDB CEO DesaiITmedia AI+ · 10m ago
  • AMD to buy Fei-Fei Li's World Labs for $8.2 billionJapan Times Tech · 10m ago

AI-summarized, only the topics you pick: one digest a day via Email, LINE, or Slack.

Free · 30 seconds with Google · unsubscribe anytimeWhat is AIToday? →

Ask AI

Ask AI anything about this article. The AI reads this article, earlier AIToday articles, and Wikipedia, and cites its sources. Q&As are published on this page for other readers too.

Questions and answers are published on this page.

Related Articles

Next articleVanguard's Leuh Fang: AI slowdown won't free chip capacity