week 3 access
Access control
Week 1
LAB 1
· What are the principal components of access control?
· What are the different types of subjects in an access control system?
· What are the main categories of objects in an access control system?
The identification, authentication, and authorization (IAA)
Roles Involved in the IAA Process
Authentication Factors
Importance of Access Control
· Retaining valuable information
· Gaining a competitive advantage
· Avoiding risk
Introduction to access control, authentication and PKI
LAB 2
Risk Mitigation Using Sound Access Controls
Access Control Countermeasures:
Access Control Strategies
Access Control Roles(user, system administrator and guest)
Access Control Strategies Failure
Multilayered Access Control Systems
WEEK 2
LAB 3
Basic concepts of data classification
DATA classification Process
Roles involved in data classification(data owner, data creator and data user)
Data Classification Best Practices
Need for data classification( criteria: access and authentication, confidentially, privacy, availablility, integrity and auditability)
LAB 4
Developing Access Control Policy Framework
Access control, authentication and public key infrastructure
Components of Access Control Policy Frameworks
Principles for Defining Access Control Policies
Roles Involved in Access Control Frameworks
Security Breaches
Importance of Access Control Principles