What are the issues and root causes that necessitates the enactment and/or establishment of Federal, state and local government laws, and the establishment of regulations and policies for access control? Cite such laws, regulations and policies in any one state in USA.

1. Describe how threat modeling for the low-trust side of an API would differ from threat modeling on the high-trust side of an API.

2. Define and defend your position on a data privacy policy for a hypothetical e-commerce web site.Describe the policy and defend its provisions.

  • What is Discretionary Access Control (DAC)?
  • What is Mandatory Access Control (MAC)?
  • What is an Access Control List (ACL)?

