| 2010 | An access control model for mobile physical objects. | Florian Kerschbaum |
| 2010 | Role updating for assignments. | Jinwei Hu, Yan Zhang, Ruixuan Li, Zhengding Lu |
| 2010 | An architecture for enforcing end-to-end access control over web applications. | Boniface Hicks, Sandra Julieta Rueda, Dave King, Thomas Moyer, Joshua Schiffman, Yogesh Sreenivasan, Patrick D. McDaniel, Trent Jaeger |
| 2010 | Capability-based delegation model in RBAC. | Koji Hasebe, Mitsuhiro Mabuchi, Akira Matsushita |
| 2010 | New access models for healthcare. | Tyrone Grandison |
| 2010 | Architectures for practical security. | Virgil D. Gligor |
| 2010 | On the definition of role mining. | Mario Frank, Joachim M. Buhmann, David A. Basin |
| 2010 | A model of triangulating environments for policy authoring. | Kathi Fisler, Shriram Krishnamurthi |
| 2010 | Towards analyzing complex operating system access control configurations. | Hong Chen, Ninghui Li, Christopher S. Gates, Ziqing Mao |
| 2010 | A card requirements language enabling privacy-preserving access control. | Jan Camenisch, Sebastian Mdersheim, Gregory Neven, Franz-Stefan Preiss, Dieter Sommer |
| 2010 | Solving the access-control puzzle: finding the pieces and putting them together. | Lujo Bauer, Adam J. Lee |
| 2010 | Monitoring security policies with metric first-order temporal logic. | David A. Basin, Felix Klaedtke, Samuel Mller |
| 2010 | Personalizing access control by generalizing access control. | Steve Barker |
| 2010 | Automated management of network access control from design to enforcement. | Ehab Al-Shaer |
| 2009 | An efficient framework for user authorization queries in RBAC systems. | Guneshi T. Wickramaarachchi, Wahbeh H. Qardaji, Ninghui Li |
| 2009 | Efficient access enforcement in distributed role-based access control (RBAC) deployments. | Mahesh V. Tripunitara, Bogdan Carbunar |
| 2009 | Ensuring spatio-temporal access control for real-world applications. | Manachai Toahchoodee, Indrakshi Ray, Kyriakos Anastasakis, Geri Georg, Behzad Bordbar |
| 2009 | Symbolic reachability analysis for parameterized administrative role based access control. | Scott D. Stoller, Ping Yang, Mikhail I. Gofman, C. R. Ramakrishnan |
| 2009 | Working set-based access control for network file systems. | Stephen Smaldone, Vinod Ganapathy, Liviu Iftode |
| 2009 | Challenges and opportunities for virtualized security in the clouds. | Frank Siebenlist |
| 2009 | Analysis of virtual machine system policies. | Sandra Julieta Rueda, Hayawardh Vijayakumar, Trent Jaeger |
| 2009 | An algebra for fine-grained integration of XACML policies. | Prathima Rao, Dan Lin, Elisa Bertino, Ninghui Li, Jorge Lobo |
| 2009 | Dynamic mandatory access control for multiple stakeholders. | Vikhyath Rao, Trent Jaeger |
| 2009 | Automating role-based provisioning by learning from examples. | Qun Ni, Jorge Lobo, Seraphin B. Calo, Pankaj Rohatgi, Elisa Bertino |
| 2009 | Towards formal security analysis of GTRBAC using timed automata. | Samrat Mondal, Shamik Sural, Vijayalakshmi Atluri |