Group ownership

Okta Identity Governance is generally available to customers in North America on a subscription basis. For customers outside of North America, it's available as an opt-in beta feature. For more information, contact your Account Executive or Customer Success Manager.

This is an Early Access feature for orgs with Identity Governance enabled. Use the Early Access Feature Manager as described in Manage Early Access and Beta features to enable the feature.

The Group Ownership feature allows admins to assign specific Okta users as the owner of a group.

Group owners can modify attributes such as the group name and description.

To manage user access to a group, an owner needs a standard role or group management permissions in addition to their group ownership role. Groups can have a maximum of ten owners.

You can also use Okta EL expressions to specify group owners as reviewers for an Access Certifications campaign. This helps you to centrally manage reviewers for a resource associated with a campaign without the need to update the campaign configuration when the resource ownership changes. See Define dynamic reviewers.

View and assign group owners

  1. In the Admin Console, go to Directory > Groups.

  2. Select a group to open the Group page.

  3. Go to the Owners tab on the Group page. The system displays a list of owners for this group.

  4. Enable Group Ownership for Okta Directory to allow owner management from the Okta Directory.

Manage group profile attributes

  1. In the Admin Console, go to Directory > Groups.

  2. Select a group to open the Group page.

  3. On the Actions dropdown, click Edit.

  4. Make the required changes.

  5. Click Save.

Related topics

Examples of Okta Expression Language