Single sign-on with Okta
WorkStory's Enterprise plan includes OIDC single sign-on with Okta, including Okta Identity Engine. Your team signs in to WorkStory with the same Okta credentials — and the same MFA and session policies — they use everywhere else.
- No separate WorkStory passwords to create, reset, or forget.
- Onboarding and offboarding follow Okta: grant the app and someone can sign in; revoke it and they can't.
- Your security team keeps one place to enforce MFA, device, and network policies.
Why it matters for performance data
Feedback and review history is some of the most sensitive information a company holds. Routing WorkStory access through Okta means that data is protected by the identity controls you've already invested in — and that an employee's access ends the moment their Okta account does.
Getting started
SSO is an Enterprise option. Contact your WorkStory account manager to configure Okta as your identity provider; setup uses standard OIDC and typically takes a single working session with your IT team. WorkStory also supports Google Workspace and Microsoft Entra ID as OIDC providers.
