| Main Description |
A Business (Security) Domain is an environment or context that is defined by security policies, security models, and
security architecture, including a set of resources and set of system entities that are authorized to access the
resources. A Business Domain is managed by a single authority, and may contain one or more sub-domains. Different
sub-domains are created when security models or policies (and possibly architecture) are significantly different from
one domain to the other, or are conflicting. Separate logical domains provide clearer separation of concerns and ease
policy enforcement and system management. Synonyms: security domain or policy domain.
Do not confuse this with an area of control or a sphere of knowledge, for example the HR domain.
|