The Agent Is Not the User: Using Amazon Bedrock AgentCore with Okta to Secure AI Agent Identity
Okta, Friday, October 2nd, 2026
Okta shows how Cross App Access and ID-JAG carry user identity through Amazon Bedrock AgentCore agents' outbound tool calls.
Amazon Bedrock AgentCore authenticates inbound users but by default makes outbound tool calls under the agent's own identity, which fails security reviews.
Okta explains how Okta for AI Agents closes that gap using Cross App Access (XAA) and the Identity Assertion Authorization Grant (ID-JAG), exchanging the user's OIDC token for a short-lived, scoped OAuth 2.0 token carrying both user attribution and agent identity across tool hops.
The post walks through two integration patterns.