Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

NIST and the National Security Agency (NSA) co-hosted the Privilege Management Workshop at NIST in Gaithersburg, Maryland, on September 1-3, 2009.

Workshop Results

  • NISTIR 7665, Proceedings of the Privilege Management Workshop, September 1-3, 2009
  • NISTIR 7657, A Report on the Privilege (Access) Management Workshop 

Workshop Materials



Tuesday, September 1

Opening Remarks from NIST
Ms. Donna Dodson

NIST Workshop Overview
Ms. Sandi Roddy, NSA

Privilege Management Framework
Mr. Len LaPadula

Plenary Session: From Policy to Enforcement
Ms. K. Waterman
Dr. T. Karygiannis, NIST
Mr. David Ferraiolo, NIST

Federal Identity, Credential and Access Management (FICAM)
Mr. Paul Grant, DoD
Ms. Judith Spencer, GSA

Plenary Session: Introduce each Track Lead and 5 minutes per track on goals and objectives.

Wednesday, September 2

Welcome to Day 2

One Model: Risk Adaptive Access Control (RAdAC)
Mr. Robert McGraw, NSA

Plenary Session: What Constitutes an Authoritative Source
Mr. Roger Westman, Mitre

Plenary Session: Healthcare IT Security Issues
Dr. Deborah Lafky, HHS

Track Leads: Updates and Next Steps

  • Track 1: Privilege Management Standards, Definitions and Terms
    Track Lead:
    Ms. Emily Hawthorne, Mitre
  • Track 2: Models and Frameworks
    Track Lead:
    Dr. Vincent Hu
    Mr. Mark Ratzlaff
  • Track 3: State of Technology and Research Agenda
    Track Lead:
    Mr. Ken Berends
    Mr. David Ferraiolo
  • Track 4: Policies and Requirements
    Track Lead:
    Mr. Art Friedman
    Ms. Deb Gallagher
Thursday, September 3

Strategic planning session to collate results of the workshop and identify new actions and/or tasks to be explored, researched, studied, or completed. Output will include presenting results of workshop with estimated timeframe for way ahead. The proceedings of the workshop will be recorded in draft form. This may result in a larger pan-government conference on Privilege Management as well as publication of the NISTIR on Privilege Management.


Event Details

Starts: September 01, 2009 - 09:00 AM EDT
Ends: September 03, 2009 - 12:00 PM EDT

Format: In-person Type: Workshop



NIST; National Security Agency (NSA)


Gaithersburg, Maryland

Related Topics

Security and Privacy: identity & access management

Created September 21, 2017, Updated June 22, 2020