Siebach, JacobGiboney, Justin2020-12-242020-12-242021-01-05978-0-9981331-4-0http://hdl.handle.net/10125/71469Modern authorization architectures using role-based, policy-based, and even custom solutions have numerous flaws and challenges. A new design for authorization architecture is presented called the Abacus. This paper discusses the architecture that the Abacus utilizes to overcome the issues inherent in other proprietary and open-source authorization solutions. Specifically, the Abacus respects domain boundaries, is less complex than existing systems, and does not require direct connections to domain data stores.10 pagesEnglishAttribution-NonCommercial-NoDerivatives 4.0 InternationalCyber Systems: Their Science, Engineering, and Securityaccess controlauthorizationdata governancepbacThe Abacus: A New Architecture for Policy-based Authorization10.24251/HICSS.2021.848