Terminology Index

Glossary

2953 terms

Open concept maps
A
32

Authorization

Authorization is the decision about what an authenticated user, service, or system is allowed to do.

Good authorization limits access to the actions and data needed for the role and is reviewed when roles, ownership, or risk changes.

Introduced in: Security Foundations

Examples

  • Admin-only action
  • Read-only report access