Skip to content
Review Open access

Cloud-Native Identity and Access Management for Enterprise Platforms

Aug 2026 · International Research Journal on Advanced Engineering Hub (IRJAEH) · 0 citations

TL;DR

A four-plane theoretical model can be introduced to separate authentication, authorization reasoning, enforcement, and auditability into four closely coupled but independent evolving planes for the system, providing a unified point of reference for both researchers and practitioners in the field of secure and scalable identity management in today's enterprise world.

Abstract

Cloud-native enterprise architectures have broken out the network perimeter, and now identity has become the front line of defense in the world of security. This review covers the current landscape of cloud-native enterprise identity and access management (IAM) solutions and how the industry has moved beyond a static approach to identity management and perimeter-based security, and is now shifting to dynamic, continually verified access control. A collection of essential research is synthesized covering access-control theory, federated authentication, security of containers and microservices, identity of the service, zero-trust concepts and machine-identity governance. On the basis of this synthesis, we argue that a four-plane theoretical model can be introduced to separate authentication, authorization reasoning, enforcement, and auditability into four closely coupled but independent evolving planes for the system. An illustrative evaluation, gleaned from published benchmarks, illustrates the expected behaviour of this model over 3 dimensions: authorization latency, enforcement overhead and scalability in the face of growth in identities. The results show that the model is viable for realistic enterprise workloads when optimizing policy evaluation and accounting for the overhead of policy enforcement, and provide limits for deployments using latency sensitive and throughput bounded workloads. Finally, the review highlights open challenges and directions for future research, providing a unified point of reference for both researchers and practitioners in the field of secure and scalable identity management in today's enterprise world.

Read PDF

Similar papers

#data science Open access Oct 2026

Zero Trust for SQL Server: A Three-Layer Security Architecture

This study designed and empirically validated a three-layer Zero Trust architecture for Microsoft SQL Server that natively integrates instance-level authentication governance, enhanced Role-Based Access Control with Row-Level Security and Just-in-Time privilege elevation, and metadata-driven Attribute-Based Access Cont...

Maynard Capil, D. Dasig · 0 citations
Review Open access Jul 2026

Security Challenges and Solutions in Cloud Computing Environments

This review examines the major security threats affecting cloud computing environments, including data breaches, account hijacking, insider threats, insecure application programming interfaces (APIs), cloud misconfigurations, distributed denial-of-service (DDoS) attacks, multi-tenancy risks, and regulatory compliance i...

Amat AL-latif H. Abo-Torkhoma, A. A. H. Abo-torkhoma, G. Ali · 0 citations
Open access 2019

Modern Trends in Multi-Cloud Security Frameworks

The researcher has synthesized academic literature, industry white papers, and standards that have been published before 2024 to arrive at major security trends, such as zero trust architecture and systems, cloud security posture management (CSPM), cloud workload protection systems (CWPP), identity-centric security, co...

A. Hassan · 0 citations
Review Open access Jul 2026

PRACTICAL APPROACHES TO SECURE SOFTWARE DESIGN AND PROTECTION OF DISTRIBUTED ENTERPRISE SERVICES

Contemporary enterprise software environments present a security design challenge that perimeter-hardening cannot resolve: distributed architectures expose authentication and authorization state to propagation delays, concurrent updates, and consistency trade-offs that collectively undermine the guarantees a point-of-e...

Dmitry Andreevich Kovalev · 0 citations
Review Open access Aug 2026

A Comprehensive Review of User Authentication and Authorization Techniques in Cloud Computing

Cloud computing has emerged as a transformative paradigm for delivering scalable, flexible, and cost-effective computing services over the Internet. As organizations increasingly rely on cloud platforms for data storage, application hosting, and resource management, ensuring secure access to cloud resources has become...

C. Patel · 0 citations
Open access Aug 2026

On the Resilience of Secure Remote-Access VPN Solutions: A System-Level Evaluation of WireGuard, OpenVPN and IPsec (strongSwan)

R resilience in remote-access VPNs should be interpreted as a system-level property emerging from the interaction of implementation architecture, endpoint characteristics, and deployment conditions, underline that resilience in remote-access VPNs should be interpreted as a system-level property emerging from the intera...

Rene Forsung, R. Pirmagomedov, A. Mezina et al. · 0 citations

We use cookies to run the site and, with your consent, for analytics and to show ads. See our Cookie Policy.