CHAPTER 12Logical Access Controls: Objective 3.2 Understand Logical Access Controls

Chapter 2,“Authentication and Authorization,” introduced the access control process and discussed authentication in detail. This chapter explores the authorization and account management process further by examining several common access control models.

In this chapter, you'll learn about CC objective 3.2. The following subobjectives are covered:

  • Principle of least privilege
  • Segregation of duties
  • Discretionary access control (DAC)
  • Mandatory access control (MAC)
  • Role-based access control (RBAC)

AUTHORIZATION

Authorization is the final step in the access control process. Once someone successfully authenticates to a system, authorization determines the privileges ...

Get CC Certified in Cybersecurity Study Guide now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.