Cybersecurity

Access Control

Access control is a security technique that regulates who or what can view, use, or modify resources in a computing environment. It consists of two main types: discretionary access control (DAC), where resource owners determine access, and mandatory access control (MAC), where a central authority enforces policies. Modern access control implementations include role-based access control (RBAC) and attribute-based access control (ABAC). Proper access control ensures the principle of least privilege, where users only have access to the resources they need for their specific role.