Role-Based Access Control Architecture for Enterprise Compliance Portal Systems: Design and Implementation
DOI:
https://doi.org/10.63282/3050-9262.IJAIDSML-V5I3P129Keywords:
Role-Based Access Control, Compliance Systems, Enterprise Security, I-9 Verification, Workforce Compliance, Access Control Architecture, Authorization, Audit Logging, Enterprise Portals, .NETAbstract
Enterprise compliance portal systems managing workforce regulatory obligations such as employment eligibility verification, tax credit processing, and benefits compliance require fine-grained role-based access control architectures that align with both organizational hierarchy and regulatory access restrictions. This paper presents a design and implementation framework for RBAC in enterprise compliance portals, examining role decomposition strategies, permission inheritance models, dynamic role assignment based on organizational context, and audit logging requirements for regulatory defensibility.
References
[1] Bindiganavale, V., & Ouyang, J. (2006, September). Role based access control in enterprise application-security administration and user management. In 2006 IEEE International Conference on Information Reuse & Integration (pp. 111-116). IEEE.
[2] Uddin, M., Islam, S., & Al-Nemrat, A. (2019). A dynamic access control model using authorising workflow and task-role-based access control. Ieee Access, 7, 166676-166689.
[3] Nyame, G., & Qin, Z. (2020). Precursors of role-based access control design in KMS: A conceptual framework. Information, 11(6), 334.
[4] Ghazal, R., Malik, A. K., Qadeer, N., Raza, B., Shahid, A. R., & Alquhayz, H. (2020). Intelligent role-based access control model and framework using semantic business roles in multi-domain environments. IEEE access, 8, 12253-12267.
[5] Kumar, M. S., & Yuvaraj, N. (2020). Building a Privacy-Aware Customer Data Foundation: A Governance-First Approach to Digital Service Systems. International Journal of Emerging Research in Engineering and Technology, 1(4), 55-68.
[6] Putchakayala, R., & Cherukuri, R. (2022). AI-Enabled Policy-Driven Web Governance: A Full-Stack Java Framework for Privacy-Preserving Digital Ecosystems. International Journal of Artificial Intelligence, Data Science, and Machine Learning, 3(1), 114-123.
[7] Yuvaraj, N., & Kumar, M. S. (2021). From Governed Data to Customer Health Signals: Integrating Telemetry with Enterprise Data Quality Controls. International Journal of Emerging Trends in Computer Science and Information Technology, 2(4), 115-125.
[8] Kumar, M. S. (2023). A Scalable Architecture for Automated Data Classification and Sensitive Information Discovery Using Artificial Intelligence. International Journal of Emerging Research in Engineering and Technology, 4(2), 158-169.
[9] Cherukuri, R., & Putchakayala, R. (2022). Cognitive Governance for Web-Scale Systems: Hybrid AI Models for Privacy, Integrity, and Transparency in Full-Stack Applications. International Journal of AI, BigData, Computational and Management Studies, 3(4), 93-105.
[10] Aluri, Y. S. (2022). Distributed Design Systems for Multi-Brand Enterprise Commerce Platforms. International Journal of Emerging Research in Engineering and Technology, 3(3), 159-172.
[11] Yuvaraj, N., & Kumar, M. S. (2023). Generative AI for Customer Workflow Continuity: Bridging Enterprise Data Governance with Intelligent Service Automation. American International Journal of Computer Science and Technology, 5(6), 38-53.
[12] Mather, T., Kumaraswamy, S., & Latif, S. (2009). Cloud security and privacy: an enterprise perspective on risks and compliance. " O'Reilly Media, Inc.".
[13] Arnold, V., Benford, T., Canada, J., & Sutton, S. G. (2011). The role of strategic enterprise risk management and organizational flexibility in easing new regulatory compliance. International Journal of accounting information systems, 12(3), 171-188.
[14] Walker, A., Svacina, J., Simmons, J., & Cerny, T. (2019). On automated role-based access control assessment in enterprise systems. In Information Science and Applications: ICISA 2019 (pp. 375-385). Singapore: Springer Singapore.
[15] Wilikens, M., Feriti, S., Sanna, A., & Masera, M. (2002, June). A context-related authorization and access control method based on rbac. In Proceedings of the seventh ACM symposium on Access control models and technologies (pp. 117-124).
[16] Kamboj, P., Khare, S., & Pal, S. (2021). User authentication using Blockchain based smart contract in role-based access control. Peer-to-Peer Networking and Applications, 14(5), 2961-2976.
[17] Feltus, C., Dubois, E., & Petit, M. (2015, May). Alignment of ReMMo with RBAC to manage access rights in the frame of enterprise architecture. In 2015 IEEE 9th International Conference on Research Challenges in Information Science (RCIS) (pp. 262-273). IEEE.
[18] Li, N., & Mao, Z. (2007, March). Administration in role-based access control. In Proceedings of the 2nd ACM symposium on Information, computer and communications security (pp. 127-138).
[19] Cruz, J. P., Kaji, Y., & Yanai, N. (2018). RBAC-SC: Role-based access control using smart contract. Ieee Access, 6, 12240-12251.
[20] Mustapha, A. M., Arogundade, O. T., Vincent, O. R., & Adeniran, O. J. (2018). Towards a compliance requirement management for SMSEs: a model and architecture. Information Systems and e-Business Management, 16(1), 155-185.
[21] Pandey, P., & Nisha, T. N. (2021, July). Challenges in single sign-on. In Journal of Physics: Conference Series (Vol. 1964, No. 4, p. 042016). IOP Publishing.










