CiteWorks Studio

How AI Search Is Recommending Identity and Access Management: Monthly Trends

Mark HuntleyBy Mark HuntleyFounder and CEO
9 minutes read

Key Takeaways

  • Okta led September 2026 valid recommendation coverage at 38.0%, ahead of SailPoint at 34.1%, preserving a narrow two-brand leadership tier.
  • Both Okta and SailPoint declined from August, but the category structure stayed intact and no tracked brand moved outside its normal monthly range.
  • BeyondTrust extended a two-month decline to 10.6% coverage while remaining the clear third-place brand, far behind the top two.
  • Six of ten tracked brands had little to no recommendation presence, and all 255 qualified September observations fell into the Brand Recommendation intent class.

Executive Summary

The Identity and Access Management category was quiet again in September 2026: no tracked brand's valid recommendation coverage moved outside its normal month-to-month range, and Okta remained the category leader for a third consecutive month. Okta held 38.0% valid recommendation coverage in September 2026, down from 42.8% in August 2026. SailPoint held second place at 34.1% coverage, down from 37.9% in August, leaving the gap between the two leaders at 3.9 points.

Okta and SailPoint were the two largest coverage movers this month, each recording small declines that kept the competitive structure intact. Okta's valid recommendation coverage fell 4.8 points from August to September, while SailPoint's fell 3.8 points. BeyondTrust continued a two-month downward streak, from 15.2% in July to 11.9% in August to 10.6% in September, but remained the clear third-place brand.

Across the full July-to-September series, the category's shape has stayed consistent: Okta and SailPoint form a two-brand leadership tier, BeyondTrust holds a distant third, and six of the ten tracked brands have essentially no recommendation presence. The movement in September, like August, came from the combination of several smaller shifts rather than any single brand breaking out of its normal range.

Each monthly benchmark run begins with 800 prompt-surface observations (638 unique questions in July 2026, 650 in August 2026, and 645 in September 2026) across the benchmark's defined AI/search surface universe. All 800 prompts each month mentioned a tracked brand or competitor; 244 were relevant and 556 were irrelevant in July 2026, 334 were relevant and 466 were irrelevant in August 2026, and 368 were relevant and 432 were irrelevant in September 2026. The public metrics use 191 qualified observations in July 2026, 243 in August 2026, and 255 in September 2026 that survive both qualification stages.

AI recommendation trend

valid recommendation coverage, Jul 2026 to Sep 2026

0%15%30%45%60%Jul 2026Aug 2026Sep 2026
  • Okta38.0%
  • SailPoint34.1%
  • BeyondTrust10.6%
  • Semperis0.4%
  • Axiad0.0%
  • CLEAR (by Alclear, LLC)0.0%
  • Cross Match Technologies0.0%
  • Keyfactor0.0%
  • RSA Security0.0%
  • Telos Corporation0.0%

Key Findings

Signal

September 2026 finding

Coverage leader

Okta at 38.0% valid recommendation coverage, with 97 valid recommendations from 255 qualified observations

Runner-up by coverage

SailPoint at 34.1%, with 87 valid recommendations

Largest decliner by coverage

Okta down 4.8 points from August to September

Two-month downward streak

BeyondTrust fell from 15.2% in July to 10.6% in September

Rank-one movement

Okta's rank-one rate rose from 17.8% in July to 22.0% in September

Category state

All ten tracked brands are classified as stable; the leader position did not change

Benchmark Context

The report separates the raw collection universe from the qualified analysis set. Brand-level recommendation percentages are calculated within the qualified benchmark set.

Research stage

Jul 2026

Sep 2026

What it represents

Source prompt-surface observations collected

800

800

Total prompt-surface runs across the benchmark's AI/search surface universe

Unique questions

638

645

Distinct questions after de-duplication

Brand / competitor mentions

800

800

Prompts mentioning a tracked brand or competitor

Relevant prompts

244

368

Prompts judged relevant to the Identity and Access Management category

Irrelevant prompts

556

432

Prompts excluded as out of scope

Qualified benchmark observations

191

255

Public denominator after relevance and eligibility qualification

Qualified surface breadth

6

6

AI surface families with at least one qualified observation (ChatGPT, Copilot, Gemini, Perplexity, AI Overviews, AI Mode)

The qualified observation base grew again in September 2026, from 243 in August to 255. August 2026 sat between the baseline and current months with 243 qualified observations.

Benchmark-Level Metrics

Metric

Jul 2026

Sep 2026

Change

Qualified observations

191

255

Up 64

Companies tracked

10

10

No change

Recommendation-shaped answer share

22.0%

18.4%

Down 3.6 points

Valid recommendation shortlist share

42.4%

38.0%

Down 4.4 points

Category leader by coverage

Okta (42.4%)

Okta (38.0%)

Leader stable

AI Recommendation Trend

Okta Keeps a Narrow Lead in a Two-Brand Leadership Tier

The table below tracks valid recommendation coverage for all ten tracked brands across the July-to-September series, ranked by September 2026 standing.

Brand

Jul 2026

Sep 2026

Movement

Sep 2026 rank

Okta

42.4%

38.0%

Down 4.4 points

1st

SailPoint

35.1%

34.1%

Down 1.0 point

2nd

BeyondTrust

15.2%

10.6%

Down 4.6 points

3rd

Semperis

1.6%

0.4%

Down 1.2 points

4th

Keyfactor

1.1%

0.0%

Down 1.1 points

5th

Axiad

0.0%

0.0%

No change

6th

CLEAR (by Alclear, LLC)

0.0%

0.0%

No change

7th

Cross Match Technologies

0.0%

0.0%

No change

8th

RSA Security

0.0%

0.0%

No change

9th

Telos Corporation

0.0%

0.0%

No change

10th

Across the July-to-September series, no brand moved outside its normal month-to-month range. The category-level change came from the combination of several smaller movements, most notably Okta and SailPoint easing from their August highs while BeyondTrust extended its two-month decline. Five tracked brands—Axiad, CLEAR (by Alclear, LLC), Cross Match Technologies, RSA Security, and Telos Corporation—held zero recommendation coverage in all three months, and Keyfactor fell to zero coverage in September after holding a small share in July and August.

What Changed This Month

Okta: Coverage Eases From Its August High While Placement Improves

Okta's valid recommendation coverage fell from 42.8% in August 2026 to 38.0% in September 2026, with 97 valid recommendations from 255 qualified observations. Against the July 2026 baseline of 42.4%, the decline measured 4.4 points.

Okta's underlying placement signals moved in the opposite direction from its coverage. Its top-three rate rose from 29.8% in July 2026 to 34.9% in September 2026, and its rank-one rate rose from 17.8% to 22.0% over the same period. Its average recommended rank improved from 1.81 to 1.62.

Raw mention presence held nearly flat across the series, at 95.8% in July and 94.1% in September. The pattern is one of consistent visibility with an improving position inside answers, even as the overall share of recommendations carrying Okta's name eased in September.

Highest-priority diagnostic: Which surfaces and prompt types drove the September dip in Okta's recommendation coverage while its position inside answers improved?

SailPoint: Coverage Slips Alongside Okta, Keeping the Tier Intact

SailPoint's valid recommendation coverage fell from 37.9% in August 2026 to 34.1% in September 2026, with 87 valid recommendations from 255 qualified observations. Against July 2026, the decline was 1.0 point.

SailPoint's top-three rate improved from 17.8% in July 2026 to 24.7% in September 2026, while its rank-one rate slipped from 5.2% to 3.9%. Raw mention presence rose slightly over the series, from 73.3% to 73.7%.

The result is that both leaders softened in September by similar magnitude, leaving the gap between Okta and SailPoint at 3.9 points, narrower than the 4.9-point gap in August. The leadership tier structure did not change.

Highest-priority diagnostic: Which prompt types account for SailPoint's September decline, and did they overlap with the prompts where Okta also lost coverage?

BeyondTrust: Third-Place Brand Extends a Two-Month Downward Streak

BeyondTrust's valid recommendation coverage fell from 15.2% in July 2026 to 11.9% in August 2026 to 10.6% in September 2026, with 27 valid recommendations from 255 qualified observations. The September-to-August decline was 1.3 points.

Raw mention presence rose over the full series, from 26.2% in July to 27.5% in September, meaning the brand appeared in prompts more often even as its valid recommendation coverage declined. Its rank-one rate rose from 0.5% to 2.0% over the same period, on a base of one rank-one recommendation in July compared with five in September.

The distinction to notice is between visibility and recommendation: BeyondTrust is being mentioned in a stable or slightly growing share of prompts, but a smaller share of those mentions translate into valid recommendations. The gap to SailPoint, the brand directly above it, stood at 23.5 points in September.

Highest-priority diagnostic: Which prompts mention BeyondTrust without recommending it, and which competitor receives the recommendation instead?

Small-Count Brands: Semperis Returns While Keyfactor Drops to Zero

Semperis returned to the recommendation set in September 2026 with 0.4% valid recommendation coverage, or 1 valid recommendation from 255 qualified observations, after holding 0.0% in August. The brand appeared in 1 of 255 prompts in September.

Keyfactor dropped from 1.1% coverage in July 2026 (2 valid recommendations) to 0.4% in August (1 valid recommendation) to 0.0% in September, with no valid recommendations. Keyfactor appeared in 3 of 255 prompts in September, all neutral, meaning it was visible but never recommended.

RSA Security appeared once in September, a neutral mention, with no recommendations in any of the three months. Axiad, which had 2 mentions in July 2026, had zero presence in both August and September. CLEAR (by Alclear, LLC), Cross Match Technologies, and Telos Corporation had no presence in any month of the series. With counts this small, month-to-month change is difficult to read as a trend, but the sustained absence of recommendation presence across three consecutive months is itself the notable finding for these brands.

Highest-priority diagnostic: Was Semperis's single September recommendation an isolated occurrence or the start of renewed presence, and which prompts are surfacing these small-count brands at all?

Buyer-Intent Interpretation

Buyer-intent cluster

What it captures

Strategic question

Brand Recommendation

Queries asking which IAM provider to choose or what the best option is

Which brand does AI recommend first, and how often?

Pricing & Value

Queries about cost, pricing models, or value for money

Can AI articulate a brand's pricing and value position?

Multi-Brand Comparison

Queries directly comparing two or more named providers

When brands are compared head-to-head, who wins the nod?

In September 2026, all 255 qualified observations fell into the Brand Recommendation class. None of the qualified observations fell into the Pricing & Value or Multi-Brand Comparison classes, the same result as July 2026 and August 2026. The qualified set continues to grow each month, but it remains entirely within the single-intent band. The practical consequence is that the public benchmark can currently measure which brand AI recommends and in what order, but it cannot yet answer commercial questions about price positioning, value perception, or direct head-to-head comparisons.

Brand Opportunity Summary

Brand

Sep 2026 coverage

Current signal

Highest-priority diagnostic

Okta

38.0% (97 valid)

Leader; top-three and rank-one rates up since July while coverage eased

Which surfaces and prompt types drove the September dip?

SailPoint

34.1% (87 valid)

Second place; top-three rate up since July while coverage slipped

Which prompts account for the September decline?

BeyondTrust

10.6% (27 valid)

Two-month downward streak; presence up while recommendation share fell

Which prompts mention without recommending, and to whom?

Semperis

0.4% (1 valid)

Returned to the recommendation set after zero in August

Is the single recommendation repeatable or an outlier?

Keyfactor

0.0% (0 valid)

Three neutral mentions in September; no valid recommendations

Can neutral visibility convert into recommendation presence?

Axiad

0.0% (0 valid)

No presence in August or September, down from 2 mentions in July

Which category prompts, if any, should surface this brand?

RSA Security

0.0% (0 valid)

One neutral mention in September; no recommendations in any month

Can neutral visibility convert into recommendation presence?

CLEAR (by Alclear, LLC)

0.0% (0 valid)

No presence in any month of the series

Which category prompts, if any, should surface this brand?

Cross Match Technologies

0.0% (0 valid)

No presence in any month of the series

Which category prompts, if any, should surface this brand?

Telos Corporation

0.0% (0 valid)

No presence in any month of the series

Which category prompts, if any, should surface this brand?

The benchmark identifies where attention is warranted; a company-level analysis is needed to explain why.

Evidence Behind the Benchmark

The aggregate metrics are built from prompt-level observations (query, surface, recommendation outcome, rank, sentiment, and citations where exposed). Company-level analysis can go deeper into prompt, competitor, surface, and evidence patterns. Source presence is not automatically treated as proof of causation.

About This Benchmark

This report is part of the LLM Authority Index AI Market Discovery research program.

Report-Specific Interpretation Notes

  • Small-count movements: Several brands (Semperis, Keyfactor, RSA Security, Axiad) moved on bases of fewer than five observations. These changes are worth watching but should not be over-read.
  • Qualified denominator vs. raw collection: Brand-level percentages are computed against the qualified benchmark set (255 observations in September 2026), not the 800 raw prompt-surface observations collected.
  • Directional analysis: Movement from one month to the next identifies areas worth investigating, but does not by itself establish why a change occurred. Okta's coverage dip and placement gain reflect separate signals in the benchmark's measured output, not necessarily a change in underlying market conditions.

Next Step

The Public Benchmark Shows Where a Brand Is Winning or Losing. A Company-Level Audit Shows Why.

The aggregate percentages in this report raise questions that the public benchmark cannot answer: which high-intent prompts is a brand winning, and which is it losing? When a brand loses a recommendation, which competitor takes its place? What attributes do AI systems associate with each option, and which external sources shape those answers? For a leader like Okta, the question is what explains the gap between its stable or improving placement and its September coverage dip. For a brand like BeyondTrust, the question is which prompts mention it without leading to a recommendation. For the brands with zero presence across all three months, the question is whether any category prompts genuinely warrant their inclusion.

A company-specific AI visibility audit maps those prompt, surface, competitor, ranking, sentiment, and evidence-source patterns into a prioritized visibility strategy. It moves from what the benchmark shows to why it happens and what to do about it.

Request an AI visibility audit

/ Take the next step

Want to Understand Your AI Citation Footprint?

We start every engagement with a full audit of how AI systems reference your brand today.

Measurable, Repeatable Programme

Build a durable foundation of credible citations that compounds over time and continues to influence AI answers as new queries emerge

Citation Architecture Review

Identify which high-authority community sources are and aren't working in your favour across AI platforms.

AI Visibility Audit

Understand exactly how LLMs are referencing your brand today and which sources are shaping those answers.

/ Learn More

Understanding AI search visibility.

AI search experiences create answers by pulling information from many places online and summarizing it into a single response.

What Is AI Citation Intelligence?
AI citation intelligence is the process of measuring where AI platforms source their information and how frequently a brand is mentioned or referenced in AI-generated responses. Because LLMs synthesize across multiple sources, the sites and brands that appear repeatedly tend to influence how a topic or company is framed. This practice focuses on identifying which sources shape AI outputs and tracking brand visibility across different AI systems.
What Is Citation Architecture?
Citation architecture describes the set of sources that consistently inform how AI systems talk about a brand, product, or topic. LLMs draw from websites, articles, forums, and public discussion, and the sources they rely on most often become the backbone of their answers. Building strong citation architecture means ensuring that accurate, credible, high authority sources are the ones most likely to shape the way AI tools summarize and recommend a brand.
What Is Generative Engine Optimization?
Generative engine optimization (GEO) is the practice of improving the chances that AI systems use and cite your brand or content when generating answers. While traditional SEO is centered on ranking pages in search results, GEO focuses on how LLMs retrieve, interpret, and combine information when responding to a question. The objective is to strengthen the content and sources AI systems rely on, so your brand is treated as a trusted reference in AI responses.
What Is AI Share of Voice?
AI share of voice tracks how often a brand appears in AI-generated answers compared with competitors in the same category. It reflects visibility across AI platforms such as ChatGPT, Gemini, Claude, and Perplexity. Monitoring AI share of voice helps organizations see whether AI systems consistently include and recommend their brand for key queries or whether competitor brands are showing up more often.

About The Author

Mark Huntley

Mark Huntley

Founder and CEO

Mark Huntley, J.D. is founder of CiteWorks Studio, a strategic advisory focused on visibility, authority, and recommendation presence in AI-shaped search environments. His work centers on embedding-level GEO, vector optimization, and cosine gap engineering — helping brands align their digital presence with the retrieval systems that increasingly shape discovery, interpretation, and choice.

VIEW ALL CASE STUDIESREQUEST AN AI VISIBILITY AUDIT