Okta, Inc. (OKTA) Earnings Call Transcript & Summary
October 4, 2023
Earnings Call Speaker Segments
Operator
operatorPlease welcome Okta's CEO and Co-Founder, Todd McKinnon.
Todd McKinnon
executiveHello, Oktane. Okta is almost 15 years old, and I want to thank you, our customers, our partners, our employees, our former employees, and my wife, who's here, Roxanne, where are you? Thank you all. Everyone here in person and online. My dad is watching online. Hi, dad. We are here because we built this together. And in those 15 years, we've come a long way and we've seen a lot of change. And as an industry, we are no stranger to change. Look how much the technology landscape has evolved over the years from mainframe to personal computing and client server to the Internet; and finally, to cloud computing, which is where the Okta story begins. When we founded Okta in 2009 during the early days of the cloud transition, I could see that cloud would become a much bigger part of the technology landscape. The challenge of managing the cloud became an early inflection point for Okta. Our initial goal was to help companies use cloud applications. And as the first cloud native identity company out there, we approach the problem differently than anyone. Before Okta, the choices were identity silos locked into your app or monolithic platforms that locked you into their stack. But with Okta, identity could be a powerful tool to protect and connect everything without compromising on security or choice. Identity, really Okta was the driving force behind the rapid adoption and global scale of the cloud. We removed the complexity from building identity from scratch and empowered millions of developers to build apps in the cloud. So while we benefited from the transition to the cloud, no, I thought it was pretty cool too. So you can clap. We also -- we got a lot of great stuff to show you. So I want to go fast and get to the products and the announcements. While we benefited from the transition to cloud, we also helped catalyze it, and we're very proud of that. And we're not stopping there. And neither are the major technological shifts. We are entering a new technology era, and it is the AI era. Your taxi can now drive itself. Your computer can write its own code. Images and movies make themselves. You can't be totally sure if ChatGPT is AI or you're talking to a person. Congratulations, everyone. We have passed the touring test. Regulators are diving into AI policy. And over half of Americans believe that AI will become sentient. We've seen technology shifts, but this one provokes a very strong emotional reaction, whether it's the way you feel after a long conversation with the chatbot or imagining a world where music and aren't created by people. Why is this reaction so strong? It's impactful emotionally because these were all things that were previously only done by people. And as people, we are wired to react to human activities in connection, this is core to our identity. So it's not surprising that this can all feel very emotional. AI is everywhere, and it's bringing with it tremendous potential as developers, entrepreneurs and companies embrace and succeed with AI. We'll see an amazing new wave of apps, tools, capabilities and even other platforms built around AI. In 5 years, the AI revolution will mean that we all use 10x as many tools, apps and chatbots that we do right now, whether it's AI, voice control or programs that help us use existing apps, our new AI apps that are not possible before the AI era. Without great identity, this will all be overwhelming, insecure and unmanageable. This new world of AI, this new world needs identity more than ever. It goes back to our founding story. Okta has always been about connecting people with technology. First, in the backdrop of the cloud, and now with AI. Some people they see a world where AI takes over and people become less important. I do not agree. AI isn't taking over. AI isn't taking over. People, people are still in charge. So despite all the emotion, the excitement and the tremendous potential of AI, the fundamentals still apply. Technology is about serving our needs and providing a great user experience, quick access to information and the ability to be agile and secure. AI may raise the stakes, but identity belongs to you. It belongs to you, and here's how Okta is stepping up. For starters, we are fueling the growth of the AI ecosystem from open AI to hundreds of others. They all rely on the full power of Okta to create seamless and secure user experiences that can handle their massive scale and growth. Today's developers want to focus on building AI models, building amazing new AI-driven apps. All the more reason that they shouldn't have to worry about identity, Okta can handle that, and it's not just start-ups. The biggest tech companies in the world have an AI strategy, too. And it's still broader than just tech companies. We used to say that with the Internet and cloud computing taking over that every company is a technology company. That was once bold, but now it's widely accepted. The new reality is that every company is an AI company. These; major shifts present all of us with the opportunity to either leap ahead or fall behind. You should be asking yourself what you need to do. What's your AI strategy? What markets are you playing in? Can you reach more customers more effectively with a great AI-driven user experience? What advantage -- what competitive advantage does AI give you? And how do you infuse AI into all of your company operations to make your team more effective and efficient? If you aren't asking yourself these questions, I guarantee you your competition is. I've been asking myself these questions for Okta starting with what does AI mean for identity? Well, it's an exciting world because organizations will now have proactive security that will learn and evolve to combat any identity-based attack. Developers can build apps faster with auto-generated identity code with the right embedded actions. Identity user experiences will become frictionless. And your employees and business partners will become more efficient with workflow automation that learns their patterns. But AI is also introducing new risks. The bad actors have it too, and they now have access to more attack types and can attack organizations with more focus, more intelligence and more scale. Non-coders now have access to smarter tools that can exploit a wide range of vulnerabilities. Okta's role in this AI-driven world is clear. And in many ways, it's the same as it's always been. We continue to be your trusted identity partner. We focus on delivering real value to you, real value. It almost sounds quaint. It almost sounds quaint, but it's how we live, it's how we roll. So how do we do it? Let's take a step back and look at a high level at how AI works. It's 3 things. First, you need a massive amount of data. Second, you need models to process this data. And finally, you need to be able to take action. Great AI is only as good as the data that feeds it and the actions you can take. In Okta, we have a huge advantage in our data and our actions, and we're bringing it all together with Okta AI. Okta AI, it's AI for identity, and it's powered by our data about threats, usage, access policies, risk signals, integrations, users, customers, partners and it uses that data to perform powerful real-time actions for your security, making your developers more productive, for your policies and authorization to be clear, this is your data. It's always handled with our high standards of user consent, trust and privacy. Okta AI is infused across several of our products. It makes our existing products more valuable and new products possible products that expand the definition of what it means to be integrated and protected. Products like identity threat protection with Okta AI. We are dramatically expanding the role of the identity provider. It extends adaptive risk evaluation from the time of log-in to any time a user is logged in throughout the session. And not only assesses risk, it helps you prevent and respond to threats fast because identity is at the heart of your tech stack. It's the core of it. And Okta AI runs on the massive amount of anonymized crowdsource data from our 18,000-plus customers and 7,000-plus integrations in our ecosystem, we can see and protect against a wide range of threats across all of your security stack, people, apps and devices. Actions, actions are where Okta AI really shines because ultimately, value is based on what you can do. Identity threat protection allows an array of powerful options -- actions like universal logout. Yes, you heard that right, real, bonafide, genuine, real universal logout. We did it. For the first time in our industry, it's possible to automatically log users out of all critical apps when there is a security issue. It's not just 1 app. It's not just 2 apps, it's not just apps from a certain platform. It's all critical apps, all critical apps. Bad actors might be getting more sophisticated, but we are using the power of AI and our ecosystem to keep you a step ahead. Yes, I like it, too. I'm pumped up, too. I like it. We're bringing AI to the world of identity governance with governance analyzer with Okta AI. This new capability can intelligently predict access risk and proactively launch an access certification campaign that can also equip approvers with key insights such as past risk events associated with the user to enforce better decisions and more secure governance outcomes. Again, Okta AI, it's trained on billions of policies, crowdsourced from our massive pool of anonymized customer insights. And the value is delivered to you. There's more, there's more. We're bringing the power of AI to make things easier for developers with identity flow optimizer with Okta AI developers on the Customer Identity Cloud now have in-line recommendations on the identity configurations and actions they should be -- they should add to boost conversions, improve security. And what do they want to do? They want to build apps faster, yes, speed. We are not messing around. We need to build more stuff. As a developer, you never want to spend time on undifferentiated work. You want to leverage the proven patterns of success while focusing on what's most valuable to your customers. That's where your energy is focused. And with our ecosystem and integration network, identity flow optimizer, it makes this possible. We are just getting started. You will see more about Okta AI and our products throughout Oktane. So what started in 2009 as a company looking to accelerate cloud transition, it's grown into much more. We powered the transition to the cloud, and we're powering the AI era, what an exciting time to be alive, what an exciting time. And like many things in life, the more things change, the more they remain the same. In the AI era, freedom and choice are more important than ever. Our vision is to free everyone to safely use any technology. We believe strongly that technology is the key to progress, success and helping your organization achieve its vision. We believe that identity is the key enabler of freedom, identity is for everyone, every person, every technology and every stack. It is a great time to be on this journey with you. We support some of the world's biggest brands, customers like Steve Williams and the team at NTT Data, [indiscernible] on Virgin Media 02, where you can see Fortune speak at the workforce keynote later this afternoon, do not miss that. It's going to be amazing. We help them keep their employees and partners connected and productive. IKEA, Fifth Third Bank and Booking Holdings where our 3x Okta customer Spencer Mott, leads the ship there, give it up for all you multiple times Okta customers. We love you. We appreciate you. We're slightly worried because you can't give a job, but we'll talk about that later. Thank you so much. They all choose Okta because of 3 key concepts. First is our independence and our neutrality. Our neutrality is the reason we can serve every person, every technology and every stack. We don't have a horse in the race. And we're betting on you. We integrated everything, and we don't shuttle you into vendor locked in. It's your stack your way. The second concept is our ecosystem. Our ecosystem is realized through our Okta Integration Network. The Okta Integration Network is how we deliver the breadth and depth of integrations to quickly and effectively connect with your stack, your way. This best-of-breed approach is critical, especially when it comes to security. In security, a monolithic platform is the weakest defense against an adversary. A single vendor is a single point of failure. It's through our ecosystem and our -- it's through our ecosystem that's global small business platform 0 accelerated time to integrate and deploy apps across their org by over 80%. Before Okta, it used to take their IT team days to deploy a new app. Now they can do it in less than 2 hours with the Okta Integration Network. And the third concept, the third concept is extensibility. We are committed to helping developers and admins create identity their way by providing a wide variety of SDKs, APIs and templates. We empower developers to move fast, innovate on experience versus spending time on identity, capabilities like workflows and actions, extend the core power of Okta to meet your requirements and allow you to deliver identity experiences at scale. Take Wyndham Hotels. They were able to reduce their development costs by 85% by replacing their custom scripts with Okta workflows. Combining the strength of our independence and neutrality, extensibility and our ecosystem is how we make customers successful. We stay grounded in our vision to free everyone to safely using any technology. It's ambitious and long-term. And looking into the future, how will we know when we've reached that vision? How will we know? Well, you'll know it when you'll know. No, I got a better answer than that. When we freed end users, so they don't ever have to think about security when they can seamlessly access technology and manage their identity in a trusted and privacy-centric way. When we freed security teams to stop breaches before they happen. So AI works on their behalf to prevent risks and threats and proactively take rapid action on patterns. When we freed IT teams to manage a single interoperable identity layer that reduces inconsistencies while maintaining agility across platform apps and services. And last, but perhaps most important, we'll know when we freed app builders to easily go to market in our interoperable ecosystem. Let's see how Okta is powering a best-of-breed interoperable world. Over to you, Christiana.
Christiana Franson
executiveSo in my role, it's not uncommon to get requests that are urgent just like this one. Given the skill gap and AI road map commitments that we have, we need to implement this LND solution for engineering as soon as possible. And I have to say, I'm drying it. I have a fully committed road map for Q3. And since these apps don't typically support new capabilities such as SCIM and universal logout. This means a manual provisioning of accounts, not to mention this extra scrutiny from our security team, which slows this whole process down. While, in the meantime, let me confirm that my learning co is supported in the Okta Integration Network. Awesome. It's there. That should make my life so much easier. Wait, there's a little bit more here. It supports a number of capabilities, provisioning single log out and governance. And it looks like I can configure it all with 1 click, 1 click. Now I can centrally manage authentication, provisioning and respond to security events by logging out those long-lived user sessions. I wish all my apps supported this. And little do I know that my learning Co was built with Okta Customer Identity Cloud, which is why it supports all of this and streamlined interoperability while strengthening security from our entire organization. Look at that, I'm already done. So as long as my Learning Co and any other app built with the Customer Identity Cloud is part of my company's identity fabric, it will support the next wave of standards at scale. Today, that's universal logout or entitlements, but tomorrow, who knows? Back to you, Todd.
Todd McKinnon
executiveThanks, Christiana. With our 2 clouds, we have incredible potential to help our industry build a more interoperable, best-of-breed future. It's how we're oriented. Our focus is on choice and freedom, not locking you into a single platform. Remember, identity can belong to you, not to threat actors, not to platform lock in, identity should belong to you. And when -- yes, and when identity belongs to you and to everyone in your organization, it's the catalyst for you to grow your business to achieve your goals and protect your workforce and customer base. I am fired up about this future vision and where we're going. And we have a solid foundation to build on because we built it all together. Okta is the world's largest independent and neutral identity company. That is so cool. That is so cool. 15 years of relentless hard work, we're starting to make a little progress. It's good. The 2022 IDC, Identity and Access Management market report confirms us makes it very clear, and we have a wide lead. We're not resting on our laurels. We've got more to do. And this leadership is reflected in our product usage as well. We have over 800 million unique monthly users across our 2 clouds, 800 million, 800 million. That's 10% of the world's population connecting through Okta every month. It will not belong until we're in the 3 comma club. And our customers love Okta too. Our customer net retention rate is 115%. Customers have a choice. And every year, they choose more Okta. Our customer base covers over 60% of the Fortune 500 and over 75% of the Fortune 100. We have -- yes, we have the large -- they love -- you guys love the Fortune 500 that's great, I love them too. We have the industry's broadest and deepest set of integrations through our Okta integration network with over 7,000. All this success, it takes a village. Thank you for being part of this growth. And especially thank you to our customers. We could not do this without you, we're in for a treat now because one of those customers is Eric Brohm, CISO at Wyndham Hotels. We power identity for Wyndham's corporate workforce, their franchisees and their loyalty member. Let's take a look at their story. [Presentation]
Todd McKinnon
executivePlease help me extend a warm welcome to Eric Brohm from Wyndham. Eric told me actually do a cartwheel. I said no cartwheel, sorry. That was a beautiful film.
Eric Brohm
attendeeThank you. Yes. Thank you, guys.
Todd McKinnon
executiveYes, we have a huge partner. I can't believe it. We have people at Okta that can make something that beautiful.
Eric Brohm
attendeeYes, it's unreal. And if you look at the...
Todd McKinnon
executiveIt's amazing, yes.
Eric Brohm
attendeeAt the customer experience...
Todd McKinnon
executiveI thought we were just making SaaS stuff and they just a beautiful artistic...
Eric Brohm
attendeeYou guys do a great job, a great job.
Todd McKinnon
executiveAt Wyndham, what's the role of identity?
Eric Brohm
attendeeSo identity strategically, right? Wyndham identity services the business goals of Wyndham. So when we think about our mission statement, Wyndham brings -- welcomes all. And so it's really that concept of welcoming in, whether it is the few thousand corporate employees, whether it is the 100,000 folks out at the franchisee level or our 100 million Wyndham Rewards members that idea of that first point of contact to welcome them in is so key for us in the hospitality industry and allows us to service them well.
Todd McKinnon
executiveIf you brought me to a Board meeting at Wyndham would they know who Okta was? You can be honest.
Eric Brohm
attendeeNo, no, no. They would, they would.
Todd McKinnon
executiveAll right. Next question.
Eric Brohm
attendeeNo, they -- and I'll tell you the reason they would is that at the Board level, security is obviously piece of the conversation, and identity goes right with security now. And I would say a lot of time...
Todd McKinnon
executiveWhen did that change? You said now? Is that -- it kind of implied that it wasn't always that way?
Eric Brohm
attendeeWell, for Wyndham, it would have been around 2010 and 2012 when we had our data breaches that was a big wake-up call for Wyndham Hotels. And there are very few -- when you're presenting to the Board as a CISO or any business executive, they tell you to steer clear of tech acronyms. MFA is not 1 of those, is that I need to steer clear of how it does. They know exactly what MFA is and how important it is to not only just the security strategy, but business strategy as well.
Todd McKinnon
executiveYes. So the AI revolution. And you talked about the hospitality industry and trying to differentiate Wyndham inside that industry. What is AI going to do to that industry? And do you see it more of upstarts are going to take over for new companies? Or is it the established players are going to either use it or not and move forward and be competitively advantaged because of AI?
Eric Brohm
attendeeYes. I love what you said before in the -- when you were just talking about -- yes, I loved all of it but specifically about that AI is not taking over. And that's how we feel in the hospitality industry. At the end of the day, as I mentioned, we're there to make people feel welcome. And so AI is a tool that helps us service. It helps us serve that goal for our guests. And so I think there's some opportunity for new competition to rise. But by and large, that welcoming feeling is a person-to-person connection. And AI will help us serve that but it will change the way we do things, not what we do. It will just help us do what we do better.
Todd McKinnon
executiveIs there another player in the hospitality industry that you worry might embrace AI faster than Wyndham?
Eric Brohm
attendeeI mean we're pretty focused.
Todd McKinnon
executiveI guess -- if they're here, I can introduce you to them.
Eric Brohm
attendeeThey could, there may be. But Wyndham remains pretty focused on AI, we already have an AI steering committee that's focused on how can we use this? What are some ways we can test it out, to determine their ROI on these things and be fast implementers of that. We also, for our summer interns. We put them -- they had their regular tasks, but we put each of them on teams and at the end of the internship needed to present on ways that AI could benefit Wyndham as there.
Todd McKinnon
executiveSo that's awesome. It's kind of -- it could be like a generational thing, right? The new people come into their careers.
Eric Brohm
attendeeCertainly a different way of looking at it and maybe some new ideas that people with gray hair like myself starting to get gray.
Todd McKinnon
executiveYes. No, I'm with you on that. The -- when you think about innovation in general, what have you learned about innovating in a large organization?
Eric Brohm
attendeeSo innovating is -- it's a -- I really like what Jose said last night, don't plan, adapt. Now if you went without a plan and presented that to at your quarterly earnings report and said we have no plan, that probably wouldn't be good I think the heart...
Todd McKinnon
executiveTrust me, I got this.
Eric Brohm
attendeeI think the heart of what he was saying is have the process in place to adapt. So when you're innovating, be ready to adapt, be ready to fail quickly, but have the process in place to turn that around learn from your failures and move forward in that direction. I think that's a key piece of innovation. I would say the other piece is, as you're innovating, don't innovate in a silo, right? These are all business problems that we're solving, not just technology problems. So as a technologist, innovate along with your business partners?
Todd McKinnon
executiveThat's awesome. Well, there you have it. advice from one of the best. Thank you so much, Eric. It's really great to have you as a customer, and I look forward to working with you. I love Wyndham story. And thanks again for the whole team for putting that together. We talked a lot about industry trends and the long-term opportunity for AI. But the reality is we all have to execute this quarter and this year in a high stakes environment with a lot of pressure. There's 3 big things happening right now. First, the threat landscape is evolving, and it's evolving fast. And you can see it in the numbers. A recent survey by IDC said that almost 80% of organizations will have -- did experience a data breach in 2022 alone. So the stakes are high and attackers, they're coming after all of us in its Okta and our customers. You may have seen some reports in the news recently about a couple of attacks. And when these things happen, with the natural reaction from vendors is to distance themselves and say, well, our product wasn't breached. It's -- and we resist that urge at Okta. We -- when a customer has a problem, we have a problem. It's very core and important to our culture. When a customer has a problem, we have a problem. And so as you would expect, we dive in and aggressively help on an individual level. But we're also doing more and taking it a step further. Our products are incredibly flexible and incredibly configurable, and they can be set up with different levels of security constraints. Expert Assist is a new offering that gives you expert advice to ensure your configuration matches your security risk and threat posture. It has 2 parts. One is a services offering that brings our security experts. These are people who have seen thousands of policy configurations, and they know the best practices, brings them directly to you for a thorough review and recommendation in line with your security posture. It also has a product component that will evolve and automate this process over the next several quarters and Okta AI will be a big part of this. So the stakes are high. And if it's not enough, we are all operating in a very different economic environment than we were a few years ago. 84% of CEOs and think a U.S. recession is coming. They're cautious with their budgets, and they're trying to do more with less, and they're expecting all of us to do more with less. And despite all of this, customers are still in charge. And they're in more control than ever. They want the best experience as possible or they'll leave and get it from someone else, if they aren't getting it from you. 89% of customers say that they compete primarily on the basis of customer experience. So the pressures of today are complex, and we are here to address these challenges through our Customer Identity Cloud and our workforce identity cloud. The customer identity cloud is powered by Auth0, and it's the enabler of amazing digital experiences across consumer and SaaS applications. The Workforce Identity Cloud powers identity for employee, contractor and business partner use cases. These 2 clouds deliver identity that goes beyond. Unique customer identity that goes beyond login. Well the log-in box is the first touch point to all things digital, companies must look beyond login to truly know, protect and delight their customers. And you need workforce identity that goes beyond MFA. Businesses have to think further than the traditional approach to access management to thrive in a world of security threats and complex IT. And today at Oktane, we are helping you go beyond with identity. And now this show is really going to start to roll. Please welcome our next speaker. He is the President of Okta's Customer Identity Cloud. Please welcome Shiv Ramji.
Shiven Ramji
executiveAll right. Thank you, Todd. Hello, everyone. I'm glad to be here. Thank you. At this year's Oktane, we have many sessions focused on developers and even have a developer day dedicated just to you. So developers, are you in the house? Yes. Welcome. It's been a year since we launched the customer Identity Cloud powered by Auth0 and what a year it has been. In only a few short months, we've seen generative AI go mainstream, ushering in a new era in technology and launching several new companies. At Okta, we believe that AI is not just a trend, it's the beginning of a new era in customer identity. Now you can leverage AI to get to market even faster. You can unlock the power of AI to enhance the customer experience. And you'll be able to use AI to rapidly remediate threats and reduce risk. In this new era of AI, you need to focus your developers on innovating fast, not creating log-in boxes, and you need to raise the bar on the customer experience. All this means looking beyond log-in. The log-in box is so much more than a simple square. It's an opportunity to put your best foot forward and create a lifelong customer, all while keeping them safe and secure. So going beyond log-in means solving for authorization. -- where authentication allows you to verify who the user is, authorization allows you to verify if that same user has access to specific objects or action inside your application. Now developers still spend too much time with homegrown systems, building authorization capabilities over and over and over again versus spending time actually innovating. But it doesn't have to be this way. Authorization is where authentication was a few years ago, and Okta pioneered solving authentication in the cloud. And now we are doing the same for authorization. Developers need solutions that allow them to implement authorization in a way that fits their application and user needs and freeze them up to drive innovation. They need solutions that will scale with their organization, operate at incredibly low latency, provide high reliability, be secure and be auditable. We have built a product to do just that. Deliver authorization at scale to reduce latency and downtime with Okta Fine Grained Authorization. In fact, if you registered for Oktane this year, the registration was powered by customer identity cloud, and the viewing experience online today is actually powered by Fine Grained Authorization. So we're using our own products, too. FGA benefits go beyond just application builders. Our vision is that through the workforce and customer identity clouds, security and IT teams will get improved governance, auditing and analytics through an integration with our Okta identity governance solution. You can create an account and start experimenting with FGA today at fga.dev. Just try it out, we'd love to get your feedback. Now launching a new technology and authorization model introduces yet another capability that developers have to learn. And we know that authorization is hard, which is why we created guide with Okta AI. This will deliver comprehensive onboarding assistance and help developers intuitively define their authorization model. Developers won't have to worry about learning how to build authorization into their application. Instead, they'll get recommendations that map out the best steps to get to market even faster. Next, Imagine a world where an AI assistant can auto recommend actions and suggestions to reduce log-in friction and improve your customer experience. Sounds magical. Well, that world is possible now with Actions Navigator with Okta AI. Actions Navigator will leverage AI to make it easier for developers to discover and implement marketplace integrations or even right an action by simply asking for it in plain English through a search prompt. This is going to make developers way more efficient. And what if you could go further so your users never have to remember any credentials again. I mean, wouldn't it be great if you could log-in without a password. Well, now you can with passkeys. Passkeys provide a phishing-resistant experience for your consumers, making them less reliant on legacy credentials. Now we will finally read ourselves off passwords. Okay. Let's take a look at how all of this comes together. We'll show you how your digital teams will use identity flow analyzer with Okta AI to make log-in recommendations that improve conversions, and how your developers will implement passkeys to drive phishing resistance and convenient customer experiences. Let's welcome the demo team.
Unknown Attendee
attendeeSo now I've been reviewing our conversion in a drop offering. They're really not where they should be. I'm getting a little bit concerned about the impact on our business. Have you looked at what might be causing this... Let's check out Funnel analytics in Okta customer identity cloud. Funnel analytics integrates with our existing customer data and marketing platforms and helps us better understand our conversion and funnel performance for all our apps. Looks like when users access stream work from a new device, we're seeing a significant number of drop-offs. This is an ideal, especially given the number of devices folks use these days.
Unknown Attendee
attendeeAll right. So did your fancy tool give us any insights into why this might be happening?
Unknown Attendee
attendeeWell, if we dig in, it looks like a lot of customers abandoned the log-in process when they have to type in their user name and password, whether it's on the same device or a new one.
Unknown Attendee
attendeeOkay, I get that. Passwords are so 2021 anyways. So if this friction of repeated logins is driving our conversion rates down, what could we actually do to fix this? You know our CISO loves passwords.
Unknown Attendee
attendeeOkta Customer Identity Cloud just launched new AI capabilities that can help us with this. This one is called Identity Flow Optimizer with Okta AI. It analyzes all of our tenants authentication data and provide suggestions on improving the customer experience. This is really going to help us boost conversions, engagement and security. Let's try it out. Let me type in my question, how can I increase the conversion rate in my sign-up flow and search. Okay. So check it out, Identity Flow Optimizer is suggesting that we enable passkeys as a way to reduce sign-up friction.
Unknown Attendee
attendeeOkay. And so I've heard about passkeys before, but how is that going to help us here?
Unknown Attendee
attendeePasskeys eliminates the need for typing and passwords and they provide a seamless cross-device experience. When users authenticate from a new device, passkeys are generated in making the process secure and frictionless.
Unknown Attendee
attendeeAll right. So I'm going to be honest. The sound is way too good to be true. You're telling me that users don't need to type in passwords anymore, and it's more secure. How long is this going to take to implement?
Unknown Attendee
attendeeNot long with Okta. I set up a new connection and I've already added 4 number as an identifier so our customers have the flexibility to choose how they want to log in.
Unknown Attendee
attendeeAll right, nice. So our users don't even need to remember a user name anymore. This is already going to be a way better experience than we have now. Let's enable it. So I could be the first 1 to test it out.
Unknown Attendee
attendeeWell, we're actually already done. Passkeys is enabled. Let's see if you can sign in from your phone without a password.
Unknown Attendee
attendeeOkay. Cool. So I already registered for same word on my laptop, just like our customers would. So now I'll just try signing it from my phone. So I'll go ahead and type in my phone number. This time, I'll continue with a passkey. I'll go ahead and save it, so this works on other devices. And then I'll authenticate with Face ID, and I'm in, no password required. This is great. And I'm really excited about it, but a ton of our users watch streamer on their tablets. So is this going to work on those devices?
Unknown Attendee
attendeeYes. In fact, passkeys across multiple devices in the same ecosystem. So that passkey you just made on your phone. It's the same one you use on your tablet. Let's try it out.
Unknown Attendee
attendeeAll right. Good idea. So I'll just go ahead and go to the streamer app on my tablet. All right. It looks like it's just going to recommend that I sign with my existing account using passkeys. So I'll continue with that. Then I'll use Face ID to authenticate. And again, I'm in, super easy. I like this.
Unknown Attendee
attendeeAnd with Okta's Universal login, we can easily customize the sign-up and sign-in flow and have a consistent look and feel for all devices.
Unknown Attendee
attendeeOkay. Easily. Does this mean I'm not going to have to wait months for my AV testing anymore?
Unknown Attendee
attendeeNot only that, Okta AI can make recommendations for our sign-up and sign up float. Let's see what this recommends for streamer.com.
Unknown Attendee
attendeeAll right. So let me see this. Okay. It looks like it's making a recommendation that we promote the newest island -- the newest season of Puppy Island on our sign-up page. That should really help both sign-ups. Let's enable that, too.
Unknown Attendee
attendeeSure. There's a couple of clicks. I can customize our branding and theme.
Unknown Attendee
attendeeAwesome. Yes, this is really going to make A/B testing and optimization of [indiscernible].
Unknown Attendee
attendeeDefinitely. Now that Okta save us a ton of time, should we get back to tackling that streamer account sharing problem?
Unknown Attendee
attendeeYou read my mind. Back to you, Shiv.
Shiven Ramji
executiveGive it up to the demo team. So cool, a single toggle and you have passkeys enabled for all your customers. It's great to see how identity is powering these new advancements in technology. Now we all play a vital role in shaping the digital user experience that differentiates our products and services. And you don't have to wait to take action. All of you here today and everyone watching this live online can try all of the powerful capabilities of the customer, Identity cloud, right now by creating a free account. Simply visit Okta.com or scan the QR code to get started. To sum up, Okta customer identity cloud is leading the charge in enabling you to embrace AI's potential. We envision a future where AI enhances our defense and offense, delivers great experiences that drive growth and enables us to innovate even faster. Together, we will shape a more secure and innovative future. So let's take the leap into the age of AI and move beyond log-in. Now this is just a preview. We've got so much in store for you today. To learn more, make sure you join us at the customer I&A Cloud keynote this afternoon, where you will hear from customer -- from our customer, Twilio, and their journey of moving beyond log-in. Now let's welcome Sagnik, our President and Chief Development Officer, Workforce identity to the stage. So he can share all of the innovation we have coming for workforce identity. Please welcome, Sagnik.
Sagnik Nandy
executiveHi, everyone. It's really exciting to be here with all of you. I saw Shiv started with a shout out to developers that worked very well. So I feel like I need to do something like that for workforce. So will all employees, employers, past employees, past employers, future employees, future employees give a cheer. The Workforce Identity Cloud is a unified offering that enables customers to ensure that the right people get the right access to the right technology in the right context at the right time. It helps thousands of customers make sure that they actually get the best work done, drive identity powered security accelerate automation, modernize IT for employees, contractors and business partners. That, coupled with the depth and breadth of integrations, really ensures that you can harness the full power of your technology stack while keeping your businesses secure in today's modern AI-driven world. Today, we are introducing a range of new products and capabilities powered with Okta AI that will help improve agility, flexibility and security of your organization. The first of which is policy recommender with Okta AI. Policy recommender gives admins key insights and policy recommendations based on security best practices and aggregated AI-driven intelligence from the broader Okta community. It helps ensure that you can figure the most secure access policies for every app. Now protecting access to resources is very important. But in this modern AI-driven world, it's just not enough. To understand how much the threat landscape has changed, let's just rewind back a few years to 2019. Back then, a simple MFA with SMS as a factor could prevent 96% of all phishing attacks, isn't that crazy? 96% of all phishing attacks. Fast forward to today, and a staggering 86% of breaches stem from some form of credential abuse. And AI is a major factor, powering a 47% growth in successful phishing attacks. To protect against identity threats today, one has to think and go beyond SSO and MFA. At Okta, we are doing just that with a new capability to fast pass Okta's phishing resistant authenticator called context revaluation. Context revaluation helps run device security checks every time a new app is accessed. This means we can prevent further access anytime a device or a session is compromised. The best part, it works for all apps on all devices managed or unmanaged. This is the first step of many that we are taking here at Okta to protect our customers beyond just the initial point of authentication. Identity is the only technology that universally integrates with your entire technology stack. You can think of it as the connective glue that brings your entire tech ecosystem together. That is why it is no longer sufficient to think of identity as just the front door to your tech stack. Powered by AI, identity has to become the backbone of your entire technology story. At Okta, we are working hard to make this vision a reality. Along the journey, we are bringing the entire ecosystem along with us, be it network security providers, XDR, all the way to devices and the many, many apps that run on them to make your business successful. Working together, we can unlock unique outcomes that were just not possible before. That is why today, we are unveiling a new product Okta Identity Threat Protection with Okta AI. Identity Threat Protection helps customers automate detection and remediation of identity threats across their entire tech stack. Think of it as an ITDR for Okta. You no longer need another ITDR solution for a single actionable view. Identity Threat Protection enables 3 critical capabilities. First, it integrates risk signals from a variety of sources to provide you with a single, actionable threat intelligence solution. We are working with best-in-class security partners like CrowdStrike, Palo Alto Networks, Zscaler, Jamf and many, many others to bring their data along with Okta's rich data. Second, it leverages AI to continuously evaluate a risk score for the user, device and session. And third, it provides a wide range of flexible in-line actions to remediate identity threats in real time. One of the most powerful adaptive in-line actions we are supporting is universal logout. Universal logout allows customers to log users out of critical apps across all devices immediately. Let me repeat that now as a response to an identity threat you can log users out right away. This means even if a bad actor manages to hijack a session, we at Okta can work with you to invalidate that session. The industry has been requesting for this for a very long time, and we're excited to be the first ones to deliver this to our customers. Finally, in order to help you better deal with the huge amounts of data available in Okta, we are introducing a new capability, log investigator with Okta AI. Log investigator helps admins rationalize, analyze and understand the massive amount of data available in their Okta system logs. Powered by AI, it provides a conversational interface on top of Okta's rich data. Together with identity threat protection, now customers can get access to critical insights like risk signals, risk scores, anomalies, user access history and so much more simply by posing a question to Okta in natural language. Now they say, seeing is believing. We discussed a lot of really cool functionalities. So let's invite Jen and Alvin to the stage to show how all this comes together. Be prepared to get your mind blown.
Unknown Executive
executiveThanks, Sagnik. Now let's take a look at how Okta AI can help you harness the full power of your security stack to detect, assess and respond to identity threats.
Alvin Lin
executiveIt's busy at work. And just like any other day, I'm logging into my work apps through Okta, like e-mail, Salesforce and Box and more. But I got to let you in on a little secret. I'm a huge Taylor Swift fan, and I scored last-minute tickets to our upcoming concert. And I can't help but to check to see my ticket or came through. I sent it over to my personal e-mail, so let's take a look there. Oh, my god. They arrived, I can't wait to get my hands on these. I was thought Taylor was spelled with a Y. Anyway, I'll just go ahead and print these. Look, I've got to let my friends know, I'll send them a message on Slack.
Unknown Executive
executiveWhat Alvin doesn't know is that as he clicks this link, Okta AI is working behind the scenes to continuously evaluate risk from across our tech ecosystem.
Alvin Lin
executiveIt looks like my swiftly spirit got me into some hot water. I was logged out of Slack. Let me check my other applications just to be sure. And that was logged out of Box in my e-mail, and I got this security alert.
Unknown Executive
executiveOh, Alvin. And here, I thought you would have already learned your lesson after your beyond say incident. But the good news is this attempted security breach has been blocked. As you saw Alvin clicked on a malicious link. However, Okta was able to terminate his sessions across all apps and prevent him from logging in again until SecOps is able to investigate. This means that even if malware got onto his device, his sessions would have already been invalidated, leaving an attacker little to no room for action. Now what you just witnessed is a universal logout event that Okta executed in response to a security incident. Universal logout has long been a moving target in the industry. And this means we finally have a solution for single sign out, not just single sign on. Now let's take a look at how an admin would experience this incident. Upon getting alerted that a user has been logged out, an admin can gather the forensic she needs, simply by asking a question. Using log investigator with Okta AI, we can ask something like why was Alvin logged out. Its natural language processing capabilities will give us an answer in plain English. For example, here, you can see that Alvin's risk score jumped triggering the universal logout policy. Now let's dive in a bit deeper. Switching over to the identity threat analytics. We can see a broad set of risk signals coming from across our tech ecosystem. For example, you can see some from Palo Alto Networks, Jamf or other security tools you may be using. All this is contributing to a user's risk score, which Okta AI continuously evaluates.
Alvin Lin
executiveLet's pause here for a moment. This is a unifying moment for the security industry. These best-in-class security tools are posting signals to Okta in real time. And the good news is that Okta brings the broadest ecosystem of partners and continues to grow by the day.
Unknown Executive
executiveLooking at our partner, Palo Alto Networks UI, we can see that as soon as Alvin clicked on that malicious link. Palo Alto Networks detected a high-risk event and immediately posted that to Okta. Back in the Okta dashboard, we can see that Alvin's risk level is elevated and that Okta triggered the universal logout as a result. All right. Now that we've contained this incident, let's take a look at one more item on my to-do list. I've been meaning to check out the new policy recommender with Okta AI to ensure that our access policies are as secure as possible. For example, as I set up Google Workspace, I can go to this authentication tab. And if I scroll down, I can click on this recommend a policy button. And policy recommender will start generating custom insights to protect all of your applications based on millions of data points within Okta and industry best practices. So to recap. We're using Okta AI to do 3 powerful things. The first is to detect, assess and respond to identity threats. The second is to gather insights from Okta system logs, simply by asking a question. And the third is to get customized policy recommendations for every app to protect you, your workforce and any other eager concert goers out there. Thank you.
Sagnik Nandy
executiveThank you so much, Jen and Alvin. That was awesome. Workforce Identity Cloud, helping customers, employees and Taylor Swift and Beyoncé fans for 15 years now. So to summarize and recap. One, AI is driving a big paradigm shift when it comes to security and identity and identity has to leverage AI to stay ahead of the curve. Two, in this modern new AI-driven world, one has to think and go beyond SSO and MFA. And three, it's time now to reimagine the role identity plays when it comes to security. One has to think of identity as the backbone to our holistic security strategy. We introduced a lot of cool products and new capabilities. But keep in mind, they were just previews to learn more about all of them and so much more, please join us for the Workforce Identity Cloud keynote section later this afternoon. We are really, really excited to take Workforce Identity forward, partnering with all of you. Thank you so much, and please welcome Todd back on stage.
Todd McKinnon
executiveSagnik, Alvin and Jen and Nav and Mallory and Christiana, you guys are amazing. And I love seeing products and actions. We've covered a lot today about how Okta technology solve some of the most pressing issues of our time. And as we look around, we see people and talent as more important than ever, yet the technical talent gap is still growing. The U.S. Department of Labor predicts that by 2030, will be short, 85 million of these high skilled technical people. And in my conversations with customers, a common theme is this lack of identity and cybersecurity talent. Okta is driving forward with a solution in 2 major initiatives to help both in the short-term and the long-term. First, in the short-term, Okta is providing 5,000 Okta certification grants to professionals in career transition to help them grow their Okta skills. This provides access to yes, this provides access to training courses and free Okta certification exam and they're targeted at unemployed technology workers, veterans, and military spouses. These certifications are incredibly valuable. If you purchase them as a customer, they would cost over $10 million. But the real value beyond the monetary value is what it does for these folks careers. In fact, for the sixth year in a row, Okta certified individuals are among the top 20 highest paid IT admins, pretty cool. And over the long-term, we're staying focused on the communities that we live and work in that have always supported us. It is very critical at Okta that we give more than we take. We know there's a large group of people that just need some help starting their technology careers. It's some inspiration, an encouragement, some early in-career advice and input. And that's where Okta for good comes in. Okta for good is granting over $1.6 million to cybersecurity and STEM workforce development organizations to support these early in-career individuals. These grants extend our reach across the globe, and they're going to help a broad range of diverse folks in critical areas of cybersecurity and software development. So we have covered a lot today. First, how our customer and workforce identity clouds help you navigate today's most pressing issues, like the dynamic threat environment, economic uncertainty and elevated customer expectations. We've announced a ton of innovation across our 2 clouds, to help you tackle not just the challenges of today, but the opportunities of tomorrow. Okta AI, Identity Threat Protection, Governance Analyzer, Identity Flow Optimizer and much more, in fact, we built a QR code summary view, so you can see it all referenced in 1 place. So scan this code, scan this code, so everything we announced is summarized here, when it's coming, what products it's in, and it covers things announced today and later this afternoon. And this is the only time I'll ever feel like Taylor Swift with these phones up. I am so, so, so honored and proud of our product teams for what they've done this past year. If you're working product at Okta, please stand up. That's good. Yes. You are amazing. And there are actually -- a lot of them are back at the office, making sure the demos are working. So don't be overwhelmed by the small number. These folks are firing on all cylinders. So thank you for your hard work. And next year, I think you can do more. In fact, we have to because we see so much opportunity in the AI era for organizations like yours as identity powers the AI revolution. We all have the opportunity to either leap ahead or fall behind. And we build identity. So you can leap ahead. Thank you, and enjoy Oktane.
Dave Gennarelli
executiveAll right. Welcome, everybody. Welcome to the investor breakout session for Oktane. Hopefully, you all got a chance to either sit in or listen in to the keynote this morning. There's a tremendous amount of new product innovation that's going on. So we're happy to -- we're here to answer any and all your questions about that. So really, we just have 60 minutes for Q&A. This is your hour. We don't have any prepared materials to present to you. So we're just going to open it up for questions, but we do have Todd McKinnon, our Chief Executive. We have Eugenio Pace, who is our President of Business Operations; and Brett Tighe, our Chief Financial Officer. So again, this is your hour. [Operator Instructions] So with that, we'll take the first question.
Keith Bachman
analystIt's Keith Bachman from BMO. Nice to see everybody. Good presentation this morning. I just -- I had 2, one macro and then one micro. But on -- there's a lot of information and new solutions, new activities announced this morning. And if you called out over the next 6 to 12 months, what could be more impactful amongst the new that we could think about? And how AI may infuse in some of that differentiation? But maybe sort of just give us a couple that you think could be more impactful and then I'll wait for my micro.
Todd McKinnon
executiveWe have -- I don't know if we've shared our PDF with all of you...
Eugenio Pace
executiveBrett just showed me a snapshot of it.
Todd McKinnon
executiveOne of the things we did this year because there is so much innovation and so much -- so many things we're announcing. We just wrote it all down for you. So it's in a PDF and you see which products it's in -- is it a feature? Is it a new product where it fits? Because there is a lot there, so we want to help you navigate it. The 2 I'm most excited about are -- one is the Identity Threat Protection with Okta AI. For the real reason, I think it's really going to be impactful for customers. I think it can really help the defenses and be stronger. And more importantly, it's the integration of all the players in the ecosystem. We're seeing really good technical collaboration between Zscaler, CrowdStrike, Palo Alto Networks [indiscernible] on and on and on. And that ecosystem is what the industry needs to stop some of these attacks. So that's really exciting. And then the second one is fine-grained authorization. It's a new product. It's basically -- it's a customer and cloud has been mostly about authentication, and this opens a whole new product with a whole new value prop that's going to help developers be more productive, do more in their stack than we were able to do before, provide more value. So those are the 2.
Keith Bachman
analystOkay. Terrific. And then more specifically on IGA or governance. I was walking the show floor last night, and there was some -- I thought some incremental excitement about IGA. And I just want to hear -- how do you think about IGA combined with the workflows? Because some of the partners talked about how there were some natural tendencies for those to work in conjunction, it may actually help pull some IGA. And then secondly is even like insurance company to get your cyber insurance, that governance is becoming increasingly important. So it seems like there's some catalyst to the -- for the IGA adoption, but just wanted to hear a little bit more about how you think those things are working with the rest of your portfolio. And then thank you for letting me ask a question before John DiFucci. I appreciate that.
Todd McKinnon
executive[indiscernible] so the way to think about -- so we are very, very excited with IGA, both in terms of the long-term opportunity. But also with the execution on it and the progress on it, which we updated you in the Q2 earnings call with a little bit of details there. We're very excited about that. I think specifically around what it does and what the solution is, it's a little bit of a -- not everyone really understands it. So a very simple way to think about it is Okta, it does a single sign-on authentication and like strong authentication with multifactor. But it also has a big part of it that it's basically like a big replication engine and synchronization engine that synchronizes accounts across multiple directories and applications. And in the world of the cloud and the world of SaaS, the whole idea is you can't block things at the firewall. You actually have to go into all the apps and change the profiles and update the permissions. And so we've always done this with a capability called life cycle management. Then over the last 5 or 6 years, we've made a ton of progress on: one, making life cycle management more customizable with workflows. So first step was life cycle management. It's been in the product forever. We added workflows to it to make it more customizable. So the simple example is you can't just say -- before you'd say, when you use Workday when a new employee is hired, you can set up a simple rule that says these are the apps that account gets created in. That was good for some companies, but many companies need more power and customization. So workflows allows them to do anything they want. They can provide any kind of flow. Without writing any code, they can have the most complex process around how accounts get created in different apps. In fact, the team at NTT Data actually uses workflows to essentially, from a global user base of several hundred thousand, create one central de-duplicated user directory for the entire company across 50-plus HR systems and 100 active directories. So this is not like something out of the box, you can just say, all right, I have a simple rule. This is like hard. You have different [indiscernible] characters and you have complex names, and you have to rationalize the ambiguity. So that is what workflows does. So -- and then the next thing that really made it IGA because an IGA product, what you really want is you want everything automated. You don't want to have to manually or do kind of post facto review of any kind of access. You want it all automated and done out of the box -- in terms of automated solution. So what IGA really does is it takes life cycle management plus workflows and adds 2 very important last pieces. One is the process to do a -- what's called an access certification workflow, which is essentially like send out an e-mail to all the managers in a configurable way and let them attest to the fact that the access that the system is automatically given is, in fact, the access they should have. So it's access certification process. And then the last piece is basically report on it to your auditors. So -- and it's important, that's integrated with workflows and life cycle management because the report is like the final authority to your auditors that says, here are the manual attestations through workflows and here is the automated process that was all synchronized to the engine. So when you ask is workflows important, it's absolutely important because you have to have that extensibility and customization to do that. So we're very excited about it. And the most -- the best thing about it is the converged solution with workforce. So with 3 legs of the stool are access management, privileged access and governance. And if you think about access management, it's basically single sign-on and it's strong authentication, phishing-resistant authentication for all your apps. Privileged access essentially brings that to all of your sensitive infrastructure resources, which makes sense, right? You want to be able to have a strong authentication on your servers as well as your containers as well as your databases, not just on your apps. And then the third leg of the stool is governance because ultimately, at the end of the day, you want as much as that automated as possible. So you can create the server accounts at the right time, just like you create the apps based on someone being hired or fired or changed roles. And then the last thing they want is they want to be able to show one report to the governance, the auditors and say it's everything. It's not just apps, it's not just finance, it's not just one app. It's across critical resources, across different personas, contractors, employees, partners. So that's why the real exciting thing is just we talked about the governance market, and it's an important market. But really, what's going to happen is that we're in the catbird seat for this converged solution, which is why we're [indiscernible].
Eugenio Pace
executiveCan you share why I am excited as well? Okay. So plus one on the things that Todd mentioned, FGA, it's been a long time in the making. And we have been in this industry for a long time enough, you will know that authentication is a little bit like natural numbers to math. And authorization is a little like real numbers in math. It's an entire different level of complexity because it goes into the domains of the apps. If you think about authentication is log in, yes or no. And you can argue with different levels of assurance, but authorization is like, can I approve an expense report of $1,000 if I am in this role? And that goes into the domain of the applications, and it's been very, very difficult to factor out from apps. And we cracked the code for that [indiscernible] we have a service, but it's able to capture all that complexity and put it in one place for better management, low risk, faster implementation. We removed all that complexity from the application developer and it's really, really exciting. But we're making it more exciting now. And the reason why now it's probably the best time for this to happen is that now we can use AI as the way -- as a translator of a policy into the actual run time. Because before, we had to encode all those rules in -- either in code or in domain-specific languages, which are very difficult to understand and master. And it's easy to make mistakes. But now AI is actually the way of transforming English into run time. And you can write a rule in SaaS. Only people in this role, if I am the CFO, I can approve an expense report over $1 million. I think you can do [indiscernible] that's pretty exciting. But the one thing that we didn't mention in the keynote, which I am very excited about...
Todd McKinnon
executiveThere is something we didn't mention...
Eugenio Pace
executiveI mean there's plenty of things that we didn't mention is that we are using AI for ourselves, too. So we showed you what we're doing for our customers, which is a lot, and it brings a lot of value and a lot of productivity to them. But as you all know, we have a different role in our company. And I am looking after how -- when we use AI for ourselves to drive productivity, we are using it for account enrichment in our sales processes. We are using it for finding correlation between our 2 products and how customers are using one product and taking advantage of the other product and making our own processes more efficient, which is pretty exciting to see as well.
Dave Gennarelli
executiveTwo things before the next question that I forgot to mention. One, there is a PDF on our IR website that summarizes all of our new product information, so go there, download it. And secondly, in less than 10 minutes' time, there's going to be at 11:20, a test from the emergency broadcast system. So everybody's phone is going to go off at this desk. So just to let you know. [indiscernible] the next question.
Unknown Analyst
analystMaybe just sticking with things not mentioned during the keynote. Any update on PAM and timing there?
Todd McKinnon
executiveYes. I thought we announced the -- maybe we'll do it in the [indiscernible] keynote this afternoon. GAA is in December. It's all on track. Everything is great. The early access is proceeding as planned.
Unknown Analyst
analystOkay. Awesome. And then just on...
Todd McKinnon
executiveThat keynote this afternoon is -- we had -- the keynote this morning was too long, so we had to put that in the workforce, I think [indiscernible] this afternoon.
Unknown Analyst
analystOkay. Makes sense. And then just on AI, how should we think about monetization? And then just any sense of gross margin impact.
Todd McKinnon
executiveYes. So the -- one of the things about the PDF is you got to look at -- there's 2 ways to monetize it. One is the new products that's powering. It's -- I would say it's the -- for the 2 that I was most excited about, threat protection and fine-grained authorization. It's probably more impactful in threat protection, but there are elements of it in fine-grained authorization as Eugenio was talking about. So on that list, you can see the new products and they're powered by Okta AI. So you can see the direct impact there. And then the second thing is that there's -- it's in a bunch of other areas of the company as well in the product suite. And there, it's like, for example -- one of the examples is policy recommender. That's not going to be -- we're not going to monetize that directly, but it's going to make Okta as a workforce identity solution even more compelling than it already is and add the value. And so that's how you kind of decode that.
John DiFucci
analystThis is John with Guggenheim. And usually, I go before Keith because it's age before beauty, and that's -- but PAM is something that's really interesting. And I like the way, Todd, you explained the whole platform. And as you know, people have tried to do this before. Like I mean, go back 20 years, Oracle tried to buy companies [indiscernible] I mean other companies tried IBM. They had components, but it never really worked. Now you're different because you control everything in the cloud. So I think that's sort of the answer. But I guess I want to just even on Joe's question, too, so if you could hit that, but also I know you had early release TAM too. And if you could just share a little bit about how that's going. It just would -- and the way you described it all, truly sounds like one platform. And then I just have one quick follow-up after.
Todd McKinnon
executiveYes. So [indiscernible] investor Q&A you're coming to it, you're going to do it. I think that the -- if you look at some of the Oracle especially in CAA to a lesser degree, and I guess, IBM as well. I think they had -- it was software and they bought a bunch of companies. And that's pretty hard to make that work. I think the difference with Okta, we've done a major acquisition, and it was -- there's a distinction between trying to take the workforce identity cloud and force it to go through acquisitions and doing what we're doing, which is there's really 2 big pillars of the identity market at large and their customer and their workforce. And we're working on some integration to integrate the 2 functionally, but those 2 teams are running fast in parallel. One of the reasons why we can deliver so much innovation is because they focus on customer and these guys are focused on workforce. And that's powerful. So I think we struck the balance right of where we used M&A to bolster our portfolio not in a way that was going to take away from the obvious value add of being converged. So now let's talk about workforce. So we have done a bunch of technology tuck-ins. We bought a company 6 years ago called Advanced Server Access -- or sorry, it was a company that led to Advanced Server -- yes, it was a company called ScaleFT. 15 years, I've never had this happen. So -- and then we also bought -- we did a technology tuck-in around the genesis of workflows, a company called Azuqua. And these were -- they weren't done from a -- like we're going to take some businesses and merge them together. They were done from a technology road map perspective. We knew that the workflows acquisition was something intentional that we didn't have in the platform that we went out and bought this component and would add to it. Advanced Server Access was very different than what we were doing at the time. It was speaking a different protocol for servers. And the PAM solution is actually -- it's actually -- there's a -- you upgrade from ASA into PAM, but PAM is actually going to be even more integrated to the core platform than ASA was. And that was an intentional choice based on the history of ASA and how customers have used it and the value they saw and integrate it more deeply to the platform. So think of PAM is not just an upgrade to ASA, but a more integrated upgrade to ASA.
Eugenio Pace
executiveOkay. One platform is not equal to one implementation. There's spreadsheets and documents [indiscernible] so we are focusing on the tailored optimized experience for what we're trying to do, customer identity and workforce. But we have the equivalent of [indiscernible] across both. So we take advantage of the fact that we have -- we are on both sides. And there was a demo today that showed for the -- maybe for the first time, one of those [indiscernible] moments we have in our platform. And it was demo where somebody on-boarded an application from the Okta Integration Network that was powered by customer identity. And therefore, it had all these features, single sign-on, single log out, governance, provisioning, all of that just worked because we are on both sides.
John DiFucci
analystOkay. And if I could, just for a high-level question, Todd, I remember talking to you a year ago when things were not as bright at Okta. And just saying, like I'm wondering what you were going to do because you had some executives at the time. And I remembered you just saying, hey, John, I'm the founding CEO. I take all responsibility and I'll figure this out, and we're going to work hard, I got a good team here. And you've sort of proved that over the last year, I think...
Todd McKinnon
executiveWell, definitely the work hard part. I've always been good at that.
John DiFucci
analystAnd even the Auth0 acquisition, at least from the investment community, when it was first done, it was like questioned a lot. But now it is [indiscernible] I don't know you, but I know a lot of people -- not a lot. I know some people on your board and [indiscernible] and I thought, wow, this is going to be a good acquisition in that way, too, and it looks like it has been that. So -- but there's still -- I don't want to say holes, but you don't have permanent people in certain executive roles. And I just wonder how you see that playing out? Because so far, I mean it's my opinion, it's played out pretty well, but that's it.
Todd McKinnon
executiveYes. I think that the -- when I first started the President search 8 months ago, I thought it would be a 6- to 9-month process, and we're coming up on 9 months. So I think you'll hear more about that not too long.
Unknown Analyst
analyst[indiscernible] Capital. One maybe for Todd and Eugenio. And it's really just on the 2 cloud strategy going forward. Todd, you talked a little bit about merging some of the functionality now between those 2 clouds. But given that we're in a slower growth environment, I recognized years ago when the acquisition was first completed, it's harder to integrate while you're trying to keep up with free capital and go-go growth cycles. But now we've got an opportunity in a slower growth environment to kind of build the long-term platform the right way. And I'm wondering if you can just maybe shed some color on the continued decision to maintain those 2 separate clouds? Or can you use this slower growth environment to maybe rearchitect or have them much closer integrated?
Todd McKinnon
executiveI think it would be -- we won't do that. I think it would be a huge mistake. And I think it would be a huge mistake because these -- our strategy is we're capitalizing on this early lead we have in being a leading independent [indiscernible] company. So the strategy is very clear. The strategy is we need to have the best identity products in all the categories of identity. If we're really going to elevate identity to be one of the most important platform choices company mix up there with their infrastructure cloud or collaboration cloud, we have to have the leading identity product from -- on all the use cases, PAM, IGA, access management, customer identity. And so customer identity, particularly. That market is the complete solution like what are the boundaries of the market, it's still early. We have a chance to define it there. Like is fraud prevention in there, is actually verifiable IDs in there, is bot detection in there? There's a lot of areas where we can help define that market. So it would be absolutely the wrong time to slow that team down and slow the workforce team down and smash that up together. That's not going to happen. Now we are very conscious of margins and being prudent in this environment, but I just think the wrong -- when we're all back together in 10, 15, 20 years, and we're massive, we're going to look back on this and be like that was a smart decision. It wasn't a smart decision, it was going to slow down those teams and make a bunch of coupling and mix things together. Now that being said, we are being very thoughtful and smart about how we build synergies between the 2 platforms. And Eugenio gave one of the examples with this concept of one of the hardest things as -- if you're a SaaS app builder is building the functionality and then helping enterprises adopt it in a way that's "enterprise ready". And so if you use customer identity cloud, it's just going to work with Okta workforce customers, 18,400 plus. So that's powerful. And what it leads to is this the whole ecosystem being more interoperable and more extensible. And companies aren't going to have to worry about like, oh, does this app support this protocol? Or does this app support universal log-out? Can it respond to identity threats? Can it log people out? Can it take other actions? Can it -- when I do governance, can -- does the application that is being delivered to my users, does it speak [indiscernible] fine-grained authorization level to my IGA product for workforce expects. That's powerful. It's never been possible. And so this is the kind of thing we're focused on from a strategic perspective. We're trying to win both of these markets. The last thing about our strategy that's super important is we are an identity company, which means we are focused on identity use cases. We're not going to go compete with CrowdStrike. We're not going to compete with Zscaler. And we have a very different world view than Microsoft, which says, and I believe all the big platforms will get there eventually. Amazon and Google, and they're all going to -- Salesforce already does it to some degree. They're all going to think, oh, the identity I'm building for my cloud products and my platform is good enough to be the Okta for the industry. So we think that's totally the wrong approach because if one platform tries to be the Okta for the industry, all of a sudden, [indiscernible] their security tools look better. And both, by the way, what if you have your identity and all your security tools from one vendor, what does that mean for the threat landscape? And what does that mean from a single point of failure. So we see the world very differently. We think if identity is one of these primary clouds, and we integrate very well and interoperate with everything in the ecosystem, that's the winning solution for our customers. So that's where we're focused.
Eugenio Pace
executiveAnd I would say -- just to add a little bit on the cloud question. We are one company. And it's not that one team doesn't talk to the other team at all. Now we are focused on the specifics. It's like we are a car manufacturer, and we have 2 types of cars. We have minivans and sports cars. I'm not going to say which one is which -- so both have wheels and both have transmission and maybe the same transmission in both. But the purpose of one and the other is very different. And so somebody buying a sports car is not going to buy a minivan. And we have a similar experience because we sell to IT organizations, and we sell to product organizations and the way they evaluate, the way they -- what they're trying to achieve, even though it's more -- and the car is like moving from one place to another and they expect to have a steering wheel and they expect to have like seats and whatnot, there is commonality, but the reason they're purchasing one or the other is very different. With that said, FGA, back to the fine-grained authorization is not tied to one or the other. It can be used in anything now and it can be used in both. And because we are one team, really one company, now we are building stuff that it can be actually leveraging across the entire spectrum of our product portfolio, and that gives us also an advantage. But we are optimizing in the things that are providing value, like us migrating to a single database, what good is going to make. We use -- in CIC, there's like 5 databases in the same solution because they're inside the product, they are being used for different reasons, too.
Todd McKinnon
executiveHow do you think about the margin part of that question?
Brett Tighe
executiveMargin of -- in terms of having 2 different businesses...
Todd McKinnon
executiveJust in general, like the -- how we're managing margins...
Brett Tighe
executiveI think we're doing an excellent job managing margins, seeing the improvement over this last year. Yes, I think we obviously are going to make the trade-offs to the right thing for the business to be able to grow the business profitably over the long term. So we'll make -- obviously, address the market as best we can. I don't -- frankly, the growth is the most important thing for us, and we will continue -- but we'll continue to drive margins up as well. So yes, thank you for getting me involved. It's nice to see you guys and like just waiting for a question from one of these guys.
Gray Powell
analystGray Powell from BTIG. And Todd, you literally just literally hit on my question a few seconds ago. So I guess just talking with a lot of people on the conference floor, it does seem like there's a lot of interest in the different integrations that you have with other independent security vendors. So could you maybe like elaborate on what exactly you're doing there, how that workflow is, and just what you -- how that further differentiates you from Microsoft?
Todd McKinnon
executiveHow is the buzz [indiscernible]?
Gray Powell
analystThat was pretty good.
Todd McKinnon
executiveYes, good. I appreciate that feedback. When I'm there, it's -- people always act excited around me. It's good to -- so the -- I think the identity threat protection with Okta AI, that it's really like a new -- think about it like a new protocol to exchange risk signals. So it's -- how does something on the endpoint communicate and collaborate into the identity stack? And what are the semantics around what those signals are and mean. And that's the "protocol" between all these partners that we've signed up for this exciting product, [indiscernible] CrowdStrike, the ones we talked about there, and there's many more as well. It's like what is the signal? What are the semantics of the signal? And how does it get passed between different things, both on the client and also they can be shared not on the client too [indiscernible] the security risk signal across the wire. So that's really the technical -- and the differentiation is -- the differentiation is really is in that -- both from this specific product and more broadly, that we are building Okta for everything, and Microsoft is building Okta for Microsoft. Essentially, that's what they're doing. Like when they have their version of -- when they have some prototypes of a universal log-out but it only works on their apps. So they haven't been able to reach outside of their ecosystem. And part of this is this protocol concept where it's hard for them to collaborate and communicate with all these vendors because CrowdStrike, they're coming after CrowdStrike, they're coming after Zscaler. So it's like, what is your world view? Is security going to be done by one monolithic platform? Or is it going to be done by an open ecosystem? And I think history is on our side here because the history of the security industry is more on the ecosystem side. There's a reason why no one's ever rolled up the whole security industry. It's because it's an adversarial environment. And once you start doing that, there's new people that come out for new threats, and they have to block their new threats, and you need that to hook into one central identity plane to be successful. So that's ultimately the specifics about [indiscernible] Okta AI and this more generally -- and I know everyone is -- Microsoft seems very serious about their security and identity and I'm sure that at some level, they are serious about it. But I think every big platform will go through this. Salesforce went through it. They said, oh, identity for Salesforce. We can extend that beyond our ecosystem. Now they've kind of retrenched and they're partnering with us more. Microsoft is in the [indiscernible] of this right now. And I think that they've been at it pretty consistently for a few years now. I think it will run its course because the world is going to see that you can either accept the world view that you have many things beyond Microsoft or you can try to shoehorn this world where, oh, it's all for Microsoft, and I can kind of get these across ecosystem security features without being in the ecosystem. That's going to be ultimately challenging. So I think that's the way to think about it. Do you want Okta for Microsoft or do you want Okta for everything? And we're focused on building Okta for everything.
Robbie Owens
analystTodd, it's Rob Owens, a short guy in the back here. Could you build on that a little bit with that universal log-out capability? How difficult it is to do? Is it automated within the Okta Integration Network? And if a vendor or application doesn't sit within that network, what is the heavy lifting to be able to do that type?
Todd McKinnon
executiveYes. It's really a...
Robbie Owens
analystAnd just one question from me. I'm not going to pull DiFucci...
Todd McKinnon
executiveThe -- it reminds me a lot of the early days of Okta, where when we -- it's weird to think about it now that when we started Okta, the -- and by the way, one point about Microsoft -- another point about Microsoft. I mean like having a big motivated competitor can be scary and intimidating. But when I look at their products, part of me is really happy because we changed the world. I mean they have their version of the Okta Integration Network. It looks like our product, and it's like 15 years ago, that was not how people rolled. There was no concept of identity integration networks. There were -- everyone was saying same old, same old, same old. We came along and we said, wait a minute, this is crazy. We should build something so that it's all pre-integrated. And we could do it because we were in the cloud. We could maintain the things centrally, and we could build the ecosystem around updating those and maintaining those in this flywheel we have. And now I look at universal log-out, and it reminds me of those early days when you look across the spectrum of critical apps, and they all have a version of capabilities to do an API-driven log out, but they're all different. And back 15 years ago, that was similar for user management or for a single sign-on. And instead of us saying, hey, everyone, adopt this protocol. What we said was we are going to build the integrations. We're going to build this one, we're going to build this one, we're going to build this one, and we can amortize that cost over a massive customer base. And now we're going to say, hey, application 28 through 1,000 and 1,000 through 8,000. We have this platform, customer identity cloud that if you use it to build your SaaS applications, you're just in there. And now the number of apps that support this universal log-out goes from 25 to 50 to 100 to 1,000, pretty soon it's going to be just a standard. And you won't want to have an app at a company that doesn't support universal log-out. It's be crazy, like why wouldn't you? And so that's how the flywheel is going to happen in this way. And this will happen, Rob, for many other technologies, universal log-out. I talked about the security signals, securities signal sharing and on and on and on because we're focused on this ecosystem. We are not focused on, hey, we're going to give you all the apps. We're going to give you collaboration. We're going to give you cloud infrastructure. We're going to give you everything and we're going to give you Okta for that. No, we're Okta for everything.
Eugenio Pace
executiveAnd think about it, the SaaS application builder, they want to sell to big companies eventually. Your enterprise SaaS, you want to sell to -- what is the best path towards that, that being on the Okta integration network because you have warranty that you have passed the bar -- the minimum security bar that any company is going to demand from you. It's not going to be just single sign-on. It's going to be single sign-on, single log-out, provisioning, it's governance, et cetera. And we make that all automatic.
Shaul Eyal
analystThank you, Shaul Eyal with TD Cowen. Thank you for hosting this...
Todd McKinnon
executiveBy the way, it's nice to see you all in person, not on Zoom.
Shaul Eyal
analystOne for Eugenio, one for Todd. Maybe starting with Todd, maybe killing the MGM topic right away. And thank you for the straightforward press release that you guys have put a couple of days after that breach. Is that actually generating new business? Is that impacting business maybe negatively? Maybe the second question, Eugenio, as an ex-Microsoft guy. What is it that you can tell us about Microsoft about Entra ID? I know it's been some years since you left Microsoft, but still what do you -- yes. But what is it that you're hearing maybe from your [indiscernible]
Todd McKinnon
executiveYes, I think it's weird, it's named a word that sounds just like Okta. It is weird, right? Why would you rename it to sound just like Okta? What is an Entra ID? So on your first question, I think there are organizations in the world that realize the importance of identity, how critical it is and how it's the route at so much of a robust security posture. And then on top of that, how the processes and capabilities and configurations of that in system, how critical that is. And then there's people that don't really get that yet. And our big thing from a marketing and a positioning and a customer success perspective, is try to move more people into the first category than in the second category. And I think that when you talk about issues like this and are they moving the market, I think the big theme in the market is, are you kind of understanding how important identity is or are you not. And I think, broadly speaking, any -- as more and more breaches get -- have involvement of the identity system, and there's an initial compromise that goes to the identity system, I think that raises the profile of identity and moves more people from this camp of, I'm not sure how important [indiscernible]. And specifically on MGM on that topic, one thing we are very clear on is that we can do a better job helping customers understand the power and capability and flexibility of our platform and making sure that we give them every opportunity and every piece of input to make it as secure and locked down as their security policies demand because if you just look at it, there's one thing to get this powerful tool that can be configured in all these different ways. That's another thing to really know how to set it up. So it matches your security policies and risks and capabilities of the company. And I'm not talking about any specific company. I think all companies can benefit from this. And that's why we have this expert assist offering, which is a services engagement and also is going to flow into the products as more of it's automated over time.
Eugenio Pace
executiveRight. My question, Microsoft.
Todd McKinnon
executiveIs something that I don't know, Entra ID.
Eugenio Pace
executiveI understand it because I am Spanish, but I don't think anybody understands what entra means. Anyway, I think it's a great thing to have a formidable, capable competitor because I don't know you, but every time I lift, I lift heavier when I lift with somebody next to me, like him. And so it keeps you sharp. And It was...
Todd McKinnon
executive[indiscernible].
Eugenio Pace
executiveSo no, that's more of the philosophical perspective. But on the specifics of what we do and what they do, I think that was covered before my talk. Let's say, between, let's say, let's pick up any big customer, let's say, Walmart. Walmart asking for a feature or requesting a capability in the identity platform or Office 365 to the same team, to the identity team, who do you think will win? So it's a little bit of a curse and a blessing. I was there. I know if you're a cloud that it's not one of those like major revenue drivers for the business, office or that time windows or the server suite. If you were like supporting all of those, then you always lose if you're a customer because they always have more power. And so in many ways, their road map, their innovation is conditioned by their own other ulterior motives, which is totally fair and natural to happen. But that's not what we do. The identity for them is a means to an end. And for us, it's the end. We don't do any other things. We don't have any other secret agendas or other products that we want to sell you. We don't do CRM, we don't do productivity. We are all about identity and access management and all the things that are connected to that. And that's all we do. So for us, that's -- we can provide you with the best solution in this world.
Todd McKinnon
executiveYes, Okta has a very -- on the workforce identity side specifically, we have a very important architectural advantage. And it's announced and released some additional capabilities that make it more automated and easier to set up and configure. It's called Okta for Global 2000. But it stems from an architectural advantage we have, which essentially derived and the difference of Microsoft derived from the fact that Azure AD was built to be the user database for Office 365. It's always built. The team's marketing orders make that work for Office 365. And that's how they built the identity stack tightly coupled to e-mail. So now if you're a big company and you want to have a distributed structure, like if you're NTT Data or any other large customers with complex distributed environments, maybe there's some M&A, maybe there's just some parts of their business strategy in tech stack. They're trying to do decentralized and then a business unit or bring some back in. They want to have security policies for the core app centrally, but then distribute all of the security policies and technology decisions for other apps out in the business units. You can do that with Okta because we're not coupled to any app. If you try to do that with Microsoft, you're changing e-mail addresses and e-mail domains to do that. And that's very simply because it was built tightly coupled with e-mail. So this concept of having different rules and different policies distributed versus centralized to the identity stuff in Microsoft, it's like, oh, that means different domains, which is you want to do that, you have different domains because you want your HR rules and your subsidiary to be different.
Eugenio Pace
executiveI'll give you another example. Can you deploy Azure AD on Amazon? No, you can't.
Todd McKinnon
executiveSomeone will be fair.
Eugenio Pace
executiveOr on Google Cloud. That's never going to happen. I mean never is a long time, so maybe it will happen one day. But it's not happening today. And we have -- because we are independent and neutral, we offer our customers choice. The choice of which platform, the underlying cloud it's running on.
Todd McKinnon
executiveYes. And we -- I think we work really hard to integrate and cooperate with Microsoft. It's one of our most used apps. Azure workloads or in terms of securing those is on the rise. So we will, just like with Salesforce, we will keep partnering with them, even though they have a competing product, and we'll be very diligent in that because ultimately, it's going to -- I mean, I know how it's going to play out ultimately. They're going to have to -- they're going to favor their collaboration and their infrastructure business, and they're going to have to work with the ecosystem which is where we'll be.
Brian Essex
analystBrian Essex from JPMorgan. Thanks for me as well for doing this. This is fantastic. And like Rob, I'd have just one question. So Todd, I wanted to ask you about the channel strategy, and I mean we all talk to channel partners and customers. Feedback has definitely been improving, but there's still some uncertainty there, I think about how well you're going to take care of the channel. And I know you're focused on improving your channel interaction and support. So maybe if you could give us an update of what have you been working on seeing the most success with. What inning are we in and what work do you have left to do to get that effort in your mind on par with large enterprise or larger peers?
Todd McKinnon
executiveYes. I kicked off on Tuesday morning, I kicked off the Partner Summit and gave them a preview of my keynote, and I talked and chatted with them. It was a packed room, great energy around the partners, and I was really excited. One of the things I told them, as I said, we flash up the safe harbor in those meetings. And I said, you probably never hear me talk about the safe harbor. But I was looking at it, and I said, I think it really should have a line in there about one of the risks is not doing well [indiscernible] important to us. And the rest if we can add that maybe [indiscernible] because it is that important. I think we're -- it's -- identity is confusing the complex and intricate and high stakes and we need help in the channel. So channel is a big partner, in general is a big partner. We talked about some of the technology partners with the work we're doing, driving this new protocol and this collaboration around identity threat protection with Okta AI. We're also really strategic priority to be more top of mind and provide a joint value proposition to the global SaaS. With all of our momentum in large enterprise, it's a really important part of that momentum because talk about the thought leaders in these big companies, it's Deloitte, PwC, it's Accenture and the other bigger SaaS. And so that's -- we're really focused on that. And I'm personally really involved in those conversations because that can really move the needle there, I think, in a way that there's a high ROI from my investment versus the output. And so now on the partner -- I would say 2 things more about the partner organization and what we're doing there. We have a really phenomenal team there now and a leadership team with [indiscernible] his team he's brought in over the last year. They know what they're doing. They're super motivated, hard-working, channel-friendly and really plugged into all the right areas of Okta. And the last thing pretty tactically is the strategy is basically focus on the -- we still have a wide net, but we want to focus more on the highest value partners broadly. So instead of thousands and thousands who are the partners that are going to really move the needle from a sourcing deals, closing deals, supporting the customer post deal and align our resources to really focus on them and structure the incentives and the compensation. So what this means for your conversations with them is I can imagine conversations with people that are in that focus group are going to be amazing. And the channels and partners that aren't, it's probably going to be -- it's going to be good, but your channel check should be like, are you in the core group? And is it amazing? Follow me there because that's our strategy.
Shrenik Kothari
analystThis is Shrenik Kothari from Baird. Really exciting announcements this morning. My question is since you already highlighted that identity threat protection as one of the areas you are very excited about because of the integrated approach, the vast partner ecosystem and the ability to tap into or cutting across technologies, EDR, MDM and CASB. So since you highlighted key partners in the form of Palo Alto, Zscaler, CrowdStrike, I mean, 2 weeks back, CrowdStrike kind of seemed to double down on identity threat protection and highlighted opportunity, 10x of what it is today. So it kind of validates that particular market and opportunity. So just curious to hear your thoughts on how you are approaching -- are you seeing it in your collaborative spirit or there is a modern dynamic. So just wondering how you've been -- a quick follow-up.
Todd McKinnon
executiveYes. Identity threat protection is, it's really identity threat protection for Okta. I think CrowdStrike has a broader -- they want to do more -- they want to do on-premise AD and they want to do Azure AD and they're doing a bunch of other identity of things. We're focused on identity for protection for Okta. If they want to build their product to have identity threat protection for Okta 2, I mean, my view is that the more protection for Okta, the better. So I think that can be collaborative. This is not -- identity threat protection is not an XDR. It integrates really well with all the XDRs. It's going to -- it really is a key tool in the SOC toolbox, but it's not trying to be the one UI for everything in the SOC, and it's going to integrate and feed logs into the solutions there. But so think about it as we think more and more customers are going to standardize on Okta. And it's in our interest, both from -- as a growing vendor but also for our customers' best interest to have an integrated ecosystem of threat protection around that, and that's what our focus is.
Shrenik Kothari
analystJust a quick follow-up. So the announcement, the acquisition announcements you take for kind of single click integration for your Okta Personal. And to my understanding, like Okta Personal now, it's not kind of fully monetized or largely non-monetized. So just curious how are you guys thinking of that opportunity and kind of monetization potential going forward?
Todd McKinnon
executiveYes. The -- in the workforce keynote today, we're announcing Okta for personal apps, which is essentially your Okta experience, but if you work at a company, you can take it with you and you own it in terms of the terms of service. And if you leave the company, you can keep it. So it's not something that -- like, for example, at Okta, I used to have all my personal apps password stored in Okta. And I was one of the first users of Okta Personal. So now they're all in my Okta Personal account. So not that there's ever going to be an issue, but somehow I had to leave the company for whatever reason that would happen, that's not going to happen. They would be my own. I would be able to keep it. And I think this is a powerful -- we want to free everyone to safely using technology, and we mean everyone. We're not meaning like everyone work, we mean everyone. And I think this is our first foray into the consumer password management and consumer application. It's very early. We also announced an acquisition, a very small acquisition today to bolster their consumer experience for that team. And I think long term, it's pretty exciting because you can imagine this use case being pretty important not only from a -- you want to take your personal apps with you, but you also want to -- let's say you're logging into multiple Okta customers. One is your employer, one is your partner of. That's in the B2B collaboration space, it's very interesting. And also in the consumer space, think about how many customer identity cloud websites use that for log-in and the potential integrations between Okta for personal apps and those sites longer term. So it's an exciting area, very early. We're not monetizing the product right now. But in the future, you can see potential of making the -- just again, the workforce solution more generated with the ability to offer this to employees and increase security posture and take it with them. And also on the customer identity side, the opportunity to connect into that at a global consumer scale, which we're pretty far away from that right now though. So it's pretty early to think about how we're monetizing it.
Unknown Analyst
analyst[indiscernible] with Wolfe Research. Appreciate the question. Based on early conversations around the PAM solution, do you think customers will be considering copilot accounts for various programs as privileged?
Todd McKinnon
executiveSo one of the interesting things about it is we started with the resources or servers and containers and then working on eventually having database access support. And one of the biggest learnings from the early access is people want admin accounts for SaaS apps, which seems obvious when you think about it, Okta's really strong in the SaaS app because of big ecosystem. So I think it's not a far stretch to think that copilots will have some kind of sensitive administrative access as well. So not to mention, this is not specific to PAM, but I think there's an interesting opportunity just to prove person identity, like you have copilots and bots. And it'd be pretty cool to like unequivocally know. When these -- so these chatbots on all these support sites are getting really good. And even our own support site. I was talking to the team and I was saying that how are we doing to upgrade our chat experience. It's like, well, we have a bunch of projects and we've kind of thought about chat experience prioritizing it this way or improvements in chat experience, prioritizing it this way, and I'm like, you don't understand, the world in a year is going to be like -- if your chat experience is not awesome, it's going to stand out like a sore thumb. So I think the identity -- one of the identity plays here might be there's going to be a lot of value. And actually, when you're on a site and the chat experience is awesome, I talked about the Turing test in my pitch today. Does anyone know what the Turing test is? Okay. Turing test is, this guy, Alan Turing, he was amazing, talented British mathematician, did all its important stuff. One of the things he said is like, well, now we've solved general artificial intelligence when you can have a chatbot and you can't tell if it's a person or a computer. So we have that now. You can't really tell if it's a person or a computer. So when that happens, at some point, you're going to be like, okay, am I talking to a person or a computer? Do I want to press the red button and say like get me a person. And if you could identify that it was a person or a computer, I think that will be valuable. So it's kind of like identity verification for online personas that might seem like they're real people, it could be a valuable interest. That's not what you asked, but it's kind of interesting that I think is worth looking at.
Eugenio Pace
executiveAnd from a customer identity point of view because that's the person interacting with a bot and as a software. But the reverse as well. And maybe it's not happening as frequently now, but there is probably a feature in which we will create agents for ourselves that will act on our behalf, doing things. They might go, pay our bills, they will schedule things like a super assistant, automated assistant, if you will. So from an identity point of view, it's important from the other side to know is this the person? Or is this an agent acting on behalf of the person? And today, there's no like the protocol, there's nothing that because you cannot distinguish one element to the other. But it could be -- we could bring to the digital world an ocean like a power of attorney where you can say, I am empowering this agent to act on my behalf to do these things with some -- maybe some guard rates. You're not going to pay wages, amounts of money without checks and balances without you being involved. Or maybe the application will react and say, no, I can only deal with the actual principle, not with the power of attorney. It has an enormous opportunity.
Todd McKinnon
executiveI love that, yes. We have a few minutes here. Do you -- do you want to talk a little bit about your -- the President of Business Operations and what you're doing and how it's going?
Eugenio Pace
executiveIt is interesting. Sure. So we -- my new role in our company is to lead the operations team, and that includes a bunch of operations teams that were kind of distributed across the organization and how they all roll out into my team. And that includes primarily go-to-market operations, strategy and operations that include sales, marketing, et cetera. I also -- I'm also responsible for the technology group in our team, in our company, obviously connected with everything we do. I also am responsible for company operations, and that's the -- our rhythm of the business, our annual planning, our company priorities. And a bunch of other miscellaneous that are all related to ops.
Todd McKinnon
executiveChief Execution Officer.
Eugenio Pace
executiveYes. Our goal is to bring operational excellence across the board. And what we provide is essentially technology tools and technology to all our teams, every laptop, every Okta now uses is part of an example of what we do. We provide insights and data into knowledge to make better decisions, and we provide all the core processes across our company.
Todd McKinnon
executiveAnd Shiven Ramji [indiscernible] product engineering officer before the acquisition, now runs the Customer Identity Cloud, he is the President, and you saw him in the keynote. What do you think about operations and execution?
Brett Tighe
executiveWe can always be better. We can always be better. We can always drive out more margin, which is what I think everybody here wants too. So obviously, we -- I'm excited about Eugenio's new role and he's already making some great changes, and it's going to make a huge difference for us in the long run.
Todd McKinnon
executiveI talked in my conversations with all of you, I talked about margins and I say our margin improvement is -- there's a few things driving it. One has been over the past 3 or 4 quarters, one of that is just mapping the go-to-market spend to a different economic environment and favoring efficiency and go-to-market over growth. That's one thing that's improving margins. So investing less in growth, seeing less growth, but seeing better margins. Second piece is we're just, I think, having more budget discipline. We're just more scrutiny on spending. And I think a lot like a lot of companies, we got a little -- and [indiscernible]. The third bucket is actually -- it's going -- it's like in the short term, it's actually hurting margins. And that is we're investing a ton in automation. For example, we're opening presence in India. We're automating the whole system that tracks what customers use and which products they bought, eventually leading to automatic billing of upsells and things like that. And all that automation investment is under Eugenio's watch. And so -- and obviously, a big team doing that. So it's really important beyond just overall company executions and planning and process and strategy and the different ops functions, that automation investment is being driven by Eugenio's team.
Eugenio Pace
executiveIt say that culture eats strategy for lunch. Is that the same? Well, a big part of culture is getting things done and execution. And you can have a fantastic strategy but if you don't turn it into action, then it doesn't matter. And we do have a fantastic strategy. We have fantastic products, and now we have to...
Dave Gennarelli
executiveThat's great. Gentlemen, I appreciate your time. We managed to get through that without a single [indiscernible] question. I'm sorry.
Todd McKinnon
executiveSo can I say one looks so sad...
Unknown Executive
executiveI was expecting one from you, DiFucci.
Todd McKinnon
executiveSo first of all, thank you all for coming. It's great to see you -- and I do -- I really, really value your focus and your attention on Okta. You're really great at analyzing the company and sometimes when you write things, it doesn't always feel great, but I do appreciate the rigor and the intellectual honesty that you all bring to your jobs, and it's very helpful to us. So keep it up.
Dave Gennarelli
executiveLastly, I would highly encourage you to attend the Workforce Identity Cloud keynote at 1:00 and the Customer Identity Cloud keynote at 3:15. Lots more information, it goes a little deeper in all the areas that Todd talked about in his opening keynotes. So again, thank you for coming. Appreciate it.
Read the full transcript via the API
You're viewing the first half of this call. Get the complete Okta, Inc. transcript — plus 251,000+ transcripts from 12,000+ companies, speaker segments, AI summaries and full-text search — through the EarningsCalls.dev API.
Get the API View API docs →This call discussed
For developers and AI pipelines
Programmatic access to Okta, Inc. earnings transcripts and 251,000+ others is available through the
EarningsCalls.dev REST API. Plans from $24.99/month — full transcripts, speaker segments,
full-text search, and the recently-added /api/v1/transcripts/recent polling endpoint for ETL pipelines.