Enterprise Access Control Policy Sought

I am looking for some sample policies for enterprise access control systems governing how access privileges are granted across the enterprise. The manufacturers are great at getting the products sold, but when it comes to maximizing security outcomes on the back end, there is little in the way of support. Any assistance would be appreciated. Pls email to

Hello Frank:

For clarity, you're looking for procedures and process for actually provisioning someone access rights?

Like: 'New Employee A' is a Clerk, and Clerk employees should only be given authorized access to Areas 1 & 2, but never Area 3.

Or are you asking for guidelines on logical access permissions to the system? Like: Shop Leader 1 can add new employees, but only a Site Supervisor can give them new access levels?


The former pls