This chapter has covered some foundational concepts in access management. In a nutshell, the access management layer consists of authentication and authorization as key processes. Access control is facilitated by way of access control models and mechanisms. Accountability aspects such as logging, monitoring, and audits play a vital role in ensuring security.
In the next two chapters, we will cover security assessment concepts and security testing methods.