TL;DR: Access decisions are moving from owner-driven permissions to role-based control and attribute-based policy, according to StrongDM’s overview of DAC, RBAC, and ABAC, with the article warning that traditional PAM deployments leave gaps across databases, cloud, Kubernetes, and more. The deeper issue is that these models still assume access can be cleanly assigned and maintained at scale, which breaks down as NHI estates grow.
Editorial analysis by NHI Mgmt Group, based on content published by StrongDM: “3 Types of Access Control: IT Security Models Explained”.
Key questions
Q: Where do access control models fail in large NHI environments?
A: They fail when the organisation can no longer maintain accurate ownership, role, or attribute data at the pace the environment changes.
Q: Why does ABAC create operational risk even when it improves precision?
A: ABAC improves precision by using context, but every added attribute increases the burden of keeping policies current and accurate.
Q: What are the signs that RBAC is becoming too rigid for an organisation?
A: RBAC is likely too rigid when teams keep opening manual access tickets, roles no longer match actual work, and small changes require repeated permission updates.
Practitioner guidance
- Define the primary access control model by environment size Use DAC only where resource ownership is small and stable, RBAC where roles are clear and reusable, and ABAC where contextual policy decisions are genuinely needed.
- Map access maintenance costs before expanding policy scope Estimate the administrative load created by each new role, attribute, or owner-driven grant before you extend the model across more platforms.
- Review role catalogues for growth-driven drift Check whether existing roles still match actual job functions and whether role proliferation is creating hidden overpermission or manual exceptions.
Bottom line: Access control models do not fail because the theory is wrong. They fail when scale turns maintenance into the real control surface.
Explore further
View Full Forum → | NHI Foundation Course → | Our Services → | Read the full analysis →
Access control model choice is no longer the hard part of governance. The article shows that DAC, RBAC, and ABAC all have valid use cases, but each imposes a different maintenance burden that becomes visible only at scale. For NHI governance, the real question is whether the organisation can still explain and sustain the model once permissions span many systems and ownership domains. Practitioner conclusion: model selection must be judged by governability, not by elegance.
A question worth separating out:
Q: How should security teams choose between RBAC, ABAC, and PBAC for NHI access?
A: Choose RBAC for stable, repetitive access, ABAC when context must change the decision, and PBAC when you need one policy layer across many systems. For NHI governance, the deciding factor is not elegance. It is whether the model can keep privilege understandable, reviewable, and short-lived as machine identities multiply.
👉 Read our full editorial: Access control models fall short for NHI governance at scale