Generally speaking, systems, methods and media for automatically
generating a role based access control model (RBAC) for an organizational
environment with a role based access control system such as a
hierarchical RBAC (HRBAC) system are disclosed. Embodiments may include a
method for generating an RBAC model. Embodiments of the method may
include accessing existing permissions granted to users of an
organizational environment and analyzing the permissions to create
permission characteristics. Embodiments of the method may also include
performing cladistics analysis on the permission characteristics to
determine role perspective relationships between individual users of the
organizational environment. Embodiments of the method may also include
generating an RBAC model based on the determined role perspective
relationships between individual users of the organizational environment.
Further embodiments of the method may include where generating the RBAC
model includes generating a cladogram based on the determined role
perspective relationships.