home/glossary/Identity-Based Access Control

Identity-Based Access Control

nounid 2778·updated May 9, 2026
candidate

Access control based on the identity of the user (typically relayed as a characteristic of the process acting on behalf of that user) where access authorizations to specific objects are assigned based on user identity.

MWE

Classifications

Entity Type

Control95%rule-basedr:entity.control.safeguard.v1

Sensitivity

unclassified

Information Class

unclassified

Variants

plural
Identity-Based Access Controls
possessive
Identity-Based Access Control's
pluralpossessive
Identity-Based Access Controls'

Framework definitions

NISTIR 7298: Glossary of Key Information Security Terms, Revision 21 senseview framework →
§1
Access control based on the identity of the user (typically relayed as a characteristic of the process acting on behalf of that user) where access authorizations to specific objects are assigned based on user identity.
CNSSI-4009 (Glossary of Information Assurance Terms)1 senseview framework →
§1
Access control based on the identity of the user (typically relayed as a characteristic of the process acting on behalf of that user) where access authorizations to specific objects are assigned based on user identity.
NIST SP 800-531 senseview framework →
§1
Access control based on the identity of the user (typically relayed as a characteristic of the process acting on behalf of that user) where access authorizations to specific objects are assigned based on user identity.

Outgoing relationships

No outgoing triples
This term is not the subject of any RDF-style relationship yet.

Incoming relationships

No incoming triples
No other term currently asserts a relationship to this one.