A privacy-aware role-based access control model extends RBAC to express highly complex privacy-related policies, including consideration of such features as conditions and obligations. Because it's based on the RBAC model, the full-fledged P-RBAC solution is easy to deploy in systems already adopting RBAC, thus allowing seamless integration of access control and privacy policies.
No takes yet. Share an insight, caveat, or question.
Ni et al. (2009) studied this question.
Synapse has enriched one closely related paper. Consider it for comparative context: