Embodiments of the present invention address deficiencies of the art in
respect to access control and provide a method, system and computer
program product for access control management for a collection of
heterogeneous application components. In a first embodiment, a data
processing system for role-based access control management for multiple
heterogeneous application components can include at least one business
role descriptor associating a business role with multiple, different
application roles for corresponding, disparate application components.
The system also can include at least one access policy associating a user
with the business role. Finally, the system can include policy deployment
logic include program code enabled to process the access policy to assign
the user to the different application roles in the disparate application
components.