Our State of Authorization: AI Edition is now available Get it now »
pen writing

Axiomatics Blog : Access Control

Stay in the know on the latest in authorization, attribute-based access control (ABAC), and modernizing your access control strategy.



All articles

From AI to Authorization: Key Takeaways from Identiverse 2026

The Axiomatics team takes a look at the key insights from the Identiverse 2026 conference in Las Vegas.

Read the article

The Challenge Isn’t AI. The Challenge Is Authorization.

While these look like AI-specific challenges, they reflect a long-standing enterprise issue: authorization.

Read the article

What Are MCP Apps and How Do You Secure Them? Using Dynamic Authorization for Enterprise AI Agents

Learn how to govern MCP applications, agentic UI, with attribute-based access control (ABAC).

Read the article

AI agents in finance: Why dynamic access control is critical

Explore how dynamic, fine-grained access control is critical in finance as AI agents are becoming increasingly popular.

Read the article

Lessons learned at KuppingerCole EIC 2026

Get an in-depth look on the conversations at EIC around authorization and AI ecosystems with Axiomatics' CTO, David Brossard.

Read the article

Securing AI systems: How policy-driven authorization solves the OWASP LLM Top 10

Learn how policy-driven authorization solves the OWASP LLM Top 10 by enforcing fine-grained, context-aware decisions at runtime.

Read the article

Runtime policy-driven authorization for AI Agents in automotive manufacturing

AI agents are increasingly being deployed in industrial settings. We look at how policy-driven authorization helps mitigate the risks of AI.

Read the article

How authorization fits in the OWASP MCP top 10

Learn the different OWASP MCP risks to practical authorization controls for securing, monitoring, and auditing AI systems.

Read the article

How policy-driven authorization can alleviate authorization debt

The pace at which authorization debt grows is increasing exponentially. Policy-driven authorization can help address the risks.

Read the article

Insights from Gartner® IAM 2026 in London

David Brossard takes an in-depth look on the conversations that happened surrounding authorization at Gartner IAM in London.

Read the article

Securing AI and LLMs: The road to governance

Explore why AI pilots are failing and how enterprises can secure AI agents with policy-driven authorization.

Read the article

2026: A reflection on what’s ahead for Axiomatics, authorization, agentic AI, and more

A brief look at what lies ahead for Axiomatics, authorization, access management, AI, Zero Trust, and more

Read the article

Migrating from Styra DAS to Axiomatics: What enterprises need to know

While OPA enables ABAC through Rego, Axiomatics delivers ABAC as a first-class, centrally governed capability with built-in policy lifecycle management, auditability, and standard-based interoperability.

Read the article

Securing the AI frontier: A CISO’s guide to access control for MCP

As MCP adoption grows, securing this critical AI infrastructure is essential to prevent data exfiltration risks.

Read the article

Enforcement Strategies: When PEPs are not enough

At the heart of modern authorization is the PEP/PDP architecture. But what if the target application doesn’t support PEP integration?

Read the article

5 regulations in North America and how ABAC helps meet requirements

North American organizations are pressured to keep up with compliance requirements, which increasingly calls for smarter ways to manage access.

Read the article

The curious case of authorization: Cracking the audit code

Auditing is a lot like detective's work. By asking the right questions, organizations can enhance their authorization processes.

Read the article

Axiomatics turns 19! A Q&A on our authorization journey, AI, and more!

Axiomatics turns 19 years old! To celebrate, we did a Q&A with the leadership team focusing on our authorization journey, AI, Zero Trust, etc

Read the article

Strengthening authorization frameworks with PEPs, advice, and obligations

Effective authorization mechanisms are the backbone of safeguarding data. PEPs, advice, and obligations play pivotal roles.

Read the article

Policy management 101: Everything you need to know about policies

Policy Management can seem daunting at first, but by breaking it down into clear steps, organizations can create a clear policy framework.

Read the article

What you need to know about externalizing authorization

Discover how organizations can optimize system performance, reduce costs, and strengthen security across applications.

Read the article

Agentic AI and NHIs: Why authorization is a must-have

Non-human identities are rapidly evolving, Agentic AI being at top of mind. Authorization methods, like Zero Trust, are impartive now more than ever.

Read the article

Women in cybersecurity: Interview with a backend software engineer

We chatted with Maria Kosmidou, Backend Software Engineer, as she shares how she has progressed her career and working in cybersecurity.

Read the article

Protecting healthcare data with policy-driven authorization

Healthcare organizations are lagging behind when it comes to authorization. Here we look at how organizations can arm themselves against these issues.

Read the article