Skip to content

Access Controls

Standardize access via RBAC/ABAC, SSO/SCIM, and per-environment segregation.

  • Roles: viewer, editor, admin; break-glass procedures.
  • Environments: prod, staging, dev isolation; separate projects/keys.
  • Credentials: secret storage, rotation policy, audit logging.
  • Least privilege; deny by default; time-bound elevated access.
  • Read-only warehouse role for analysts; write roles scoped to schemas.
  • Shadow IT and shared credentials; fix via SSO and audits.