Under active development Content is continuously updated and improved

IAC-08Role-Based Access Control (RBAC)

Weight: 9

>Control Description

Mechanisms exist to enforce Role-Based Access Control (RBAC) for Technology Assets, Applications, Services and/or Data (TAASD) to restrict access to individuals assigned specific roles with legitimate business needs.

>Cross-Framework Mappings

NIST SP 800-53 r5

NIST CSF 2.0

FedRAMP Rev 5

Australia ISM

India SEBI Guidelines

New Zealand HISF Suppliers

Saudi Arabia IoT Guidelines

CIS Controls v8.1 (Detailed)

ISO 27002:2022

NIST SP 800-171A

NIST SP 800-172

NIST SP 800-207 Zero Trust

Data Privacy Management Principles

DoD Zero Trust Roadmap

GLBA (16 CFR 314)

NY DFS 23 NYCRR 500

Ask AI

Configure your API key to use AI features.