From MAC to PBAC:Tracking the Assurance Gradient in Authorization

PBAC, RBAC, ABAC — different access control systems, same outcome: entitlement to access something
From a governance and assurance viewpoint, the model matters less than whether each entitlement can be traced, explained, and given a degree of assurance that the right thing has the right access.