ALL USE CASES > GLOBAL
StrongDM Policy Playbook:
Forbid Access to the Database Unless the User Is in the Approved Role
This policy limits access to a database with PII, unless they are in an approved role.
Video Demo
Why It Matters?
PII data is a target of almost all attacks that result in ransomware, with subsequent loss of brand value and leaking of sensitive data for identity theft.
What Exactly Does This Policy Do?
This policy explicitly forbids access to a database with PII data unless the user is in a pre-approved role. This is also an example of implementing RBAC in a fine-grained authorization policy.
Want to learn more?
See StrongDM in action. 👀
See StrongDM in action. 👀