Role-based access control
48
MENTIONS
36
EPISODES
35
PODCASTS
Search complete. 48 mentions across 36 episodes found for "Role-based access control".
Sep 10, 2026
It's More Secure When It's Disabled - PSW #943
P
41:06Paul AsadoorianHOST
But I think this also translates to, again, Jeff, back to your back to basics thing.
P
41:15Paul AsadoorianHOST
If you're doing RBAC and access controls effectively and doing that well, when you have agents that are acting on behalf of your users, your other controls should help.
P
41:32Paul AsadoorianHOST
Maybe not a hundred percent, which is maybe why you need some other kind of monitoring and visibility, but your access controls and permissions should be tuned accordingly so that when, for example, I as Paul Sidorium, use some frontier AI model that has connectors, which are agents, and I connect it to a number of different services, it rides on the back of, in this case, my credentials, right? I authorized my AI agent to use Atlassian JIRA, GitLab, Google Drive, What's the other popular one I use? Yeah, so even just those three, right? But I'm more confident that bad things will not happen because I can only, for example, manage my own repositories.
P
42:24Paul AsadoorianHOST
In fact, I can't even delete anything.
It's More Secure When It's Disabled - PSW #943
P
41:06Paul AsadoorianHOST
But I think this also translates to, again, Jeff, back to your back to basics thing.
P
41:15Paul AsadoorianHOST
If you're doing RBAC and access controls effectively and doing that well, when you have agents that are acting on behalf of your users, your other controls should help.
P
41:32Paul AsadoorianHOST
Maybe not 100%, which is maybe why you need some other kind of monitoring and visibility, but your access controls and permissions should be tuned correctly.
P
41:42Paul AsadoorianHOST
accordingly so that when, for example, I, as Paul Sidorium, use some frontier AI model that has connectors, which are agents, and I connect it to a number of different services, it rides on the back of, in this case, my credentials, right? I authorized my AI agent to use Atlassian JIRA, GitLab, Google Drive, What's the other popular one I use? Yeah, so even just those three, right? But I'm more confident that bad things will not happen because I can only, for example, manage my own repositories.
It's More Secure When It's Disabled - PSW #943
P
41:06Paul AsadoorianHOST
But I think this also translates to, again, Jeff, back to your back to basics thing.
P
41:15Paul AsadoorianHOST
If you're doing RBAC and access controls effectively and doing that well, when you have agents that are acting on behalf of your users, your other controls should help.
P
41:32Paul AsadoorianHOST
Maybe not a hundred percent, which is maybe why you need some other kind of monitoring and visibility, but your access controls and permissions should be tuned accordingly so that when, for example, I as Paul Sidorium, use some frontier AI model that has connectors, which are agents, and I connect it to a number of different services, it rides on the back of, in this case, my credentials, right? I authorized my AI agent to use Atlassian JIRA, GitLab, Google Drive, What's the other popular one I use? Yeah, so even just those three, right? But I'm more confident that bad things will not happen because I can only, for example, manage my own repositories.
P
42:24Paul AsadoorianHOST
In fact, I can't even delete anything.
It's More Secure When It's Disabled - PSW #943
P
41:06Paul AsadoorianHOST
But I think this also translates to, again, Jeff, back to your back to basics thing.
P
41:15Paul AsadoorianHOST
If you're doing RBAC and access controls effectively and doing that well, when you have agents that are acting on behalf of your users, your other controls should help.
P
41:32Paul AsadoorianHOST
Maybe not 100%, which is maybe why you need some other kind of monitoring and visibility, but your access controls and permissions should be tuned correctly.
P
41:42Paul AsadoorianHOST
accordingly so that when, for example, I, as Paul Sidorium, use some frontier AI model that has connectors, which are agents, and I connect it to a number of different services, it rides on the back of, in this case, my credentials, right? I authorized my AI agent to use Atlassian JIRA, GitLab, Google Drive, What's the other popular one I use? Yeah, so even just those three, right? But I'm more confident that bad things will not happen because I can only, for example, manage my own repositories.
CCT 369: Security Models Demystified - CISSP Domain 3.2 (Replay of CCT 278)
S
27:10Sean GerberHOST
Lattice-based access controls.
S
27:11Sean GerberHOST
So this is LBAC, not like RBAC or any of those other ones, LBAC.
S
27:17Sean GerberHOST
This assigns subjects and objects a label in a lattice structure, such as top secret, secret, and confidential.
S
27:24Sean GerberHOST
This is where you're dealing with mandatory access controls, and this really helps explain multi-level security and clearance levels.
Chaitanya Kuber - Chief Technology Officer at Airtasker
C
50:01Chaitanya KuberGUEST
It helps us secure data.
C
50:04Chaitanya KuberGUEST
It's the RBAC.
C
50:05Chaitanya KuberGUEST
Yeah, exactly.
C
50:06Chaitanya KuberGUEST
It's the RBAC.
C
50:06Chaitanya KuberGUEST
But that method helps us secure data in a way that doesn't limit access, doesn't create hurdles, and lets people explore.
E
50:14Erin EvansHOST
Yeah.
NHI & AI Identity Summit : The Next 24 Months
A
15:15Amir OfekGUEST
So even mover for humans is not working in my mind anywhere.
A
15:20Amir OfekGUEST
That's exposing the lie of RBAC.
A
15:22Amir OfekGUEST
It's not going to be applied.
A
15:24Amir OfekGUEST
Exactly.
Hybrid Cloud Show – Episode 64
S
4:33SeanHOST
I guess that's what I'm trying to figure out.
S
4:35SeanHOST
How opinionated do I need to be? Do I need to solve some of these problems for these users, or do I let them solve it on their own? And one of the great examples of this is RBAC.
S
4:45SeanHOST
You're coming to me.
S
4:46SeanHOST
I'm handling all the authentication.
Hybrid Cloud Show – Episode 64
S
4:33SeanHOST
I guess that's what I'm trying to figure out.
S
4:35SeanHOST
How opinionated do I need to be? Do I need to solve some of these problems for these users, or do I let them solve it on their own? And one of the great examples of this is RBAC.
S
4:45SeanHOST
You're coming to me.
S
4:46SeanHOST
I'm handling all the authentication.
Cybersecurity Awesomeness Podcast - Episode 172
C
5:57Chris SteffenHOST
It's still basically the Bible that's taught today.
C
6:01Chris SteffenHOST
You move on to the 90s, you ended up with role-based access control.
C
6:07Chris SteffenHOST
NIST finally, which is the standards body of the government, basically formalized role-based access control as the practical and scalable alternative to the messy and largely non-classified enterprise world.
C
6:19Chris SteffenHOST
It tied it to a job role, not specifically to an individual person.
C
6:24Chris SteffenHOST
So this is the first time where you saw a policy that Think of it very simply as the difference between an admin and a user.
26 more episodes mention Role-based access control.
Create an account to see the whole feed, search across every transcript, and follow the entities you care about.