Dynamic Authorization Management
Facebook Twitter LinkedIn

RBAC, ABAC, or Both?

Combined Session
Wednesday, May 14, 2014 12:00—13:00
Location: AMMERSEE II

There is an ongoing discussion about terms such as RBAC (Role Based Access Control) and ABAC (Attribute Based Access Control). However, is it really about either-or? Or isn’t it that most role concepts take other attributes such as the Organizational Unit into account, while the role is a major attribute for most ABAC concepts? Shouldn’t the discussion be more about the question on how to make the shift from Static Access Management, based on pre-determined ACLs (Access Control Lists) etc., towards Dynamic Access Management and especially Dynamic Authorization Management, where applications ask at runtime for authorization decisions? But how to make that shift, how to convince application architects and developers? The panelists will talk about both RBAC and ABAC and how to make Dynamic Authorization Management a success, based on their experience.

Allan Foster
Allan Foster
ForgeRock
Allan Foster has helped build ForgeRock into a multinational identity software vendor with offices on four continents. Allan’s deep technical knowledge has been well used in all aspects of...
Finn Frisch
Finn Frisch
Axiomatics
Finn Frisch has more than 20 years of managerial and experience from information security management and related technologies. Finn is currently responsible for Business Development at Axiomatics...
Peter Gietz
Peter Gietz
DAASI International GmbH
Peter Gietz, CEO of DAASI International, has an MA in humanities and is active in the field of IT since 1985. He is internationally recognized as an directory expert, with core expertise in X.500,...
Ian Glazer
Ian Glazer
Salesforce
Ian Glazer is the VP, Identity Product Management, at Salesforce. His responsibilities include leading the product management team, product strategy and identity standards work. Prior to that, he...
Patrick Parker
Patrick Parker
EmpowerID
Patrick Parker is the founder and CEO of EmpowerID, a company specializing in Identity and Access Management for over 20 years. He pioneered the unique use of Role and Attribute-Based Access...
Geoff Webb
Geoff Webb
NetIQ
Geoff Webb has over 20 years of experience in the tech industry and is the Director of Solution Strategy at NetIQ. He is responsible for the NetIQ Information Security, Identity and Access and IT...
Subscribe for updates
Please provide your email address