# Access Management in RudderStack


RudderStack's **Access Management** system provides enterprise-grade, **Policy-based Access Control (PBAC)** across your entire data infrastructure. You can define granular permissions for workspaces, groups, and individual members to ensure the right people have the right access.

{{< announcement >}}
**Migrating from Permissions Management (RBAC)?**

The legacy [Permissions Management (RBAC) system]({{< ref "access-management/glossary.md#role-based-access-control-rbac" >}}) will be **deprecated on October 31, 2026**. RudderStack recommends migrating to the new Access Management system now for enhanced security, granular control, and better compliance capabilities.

- [Understand the pre-migration considerations]({{< ref "access-management/pre-migration-considerations.md" >}})
- [Start your migration now]({{< ref "access-management/migration-steps.md" >}})
- [Learn how the migration works]({{< ref "access-management/how-migration-works.md" >}})
{{< /announcement >}}

## Guides in this section

| Guide | <div style="width: 350px;">Description</div> |
| :---- | :-----|
| [Access Management Overview]({{< ref "access-management/overview.md" >}}) | Learn how the Access Management system works and explore its key features |
| [Key Access Management Concepts]({{< ref "access-management/concepts.md" >}}) | Explore the foundational concepts behind RudderStack's Access Management system |
| [Glossary]({{< ref "access-management/glossary.md" >}}) | Look up key terms used throughout the Access Management documentation |
| [Member Management]({{< ref "access-management/member-management.md" >}}) | Invite new members and manage their roles and permissions across workspaces |
| [Plan-wise Access Management Features]({{< ref "access-management/plan-wise-features.md" >}}) | Compare Access Management features available across different RudderStack plans |
| [Policies Overview]({{< ref "access-management/policies-overview.md" >}}) | Configure policies that apply to your workspace, groups, and individual members |
| [Baseline Workspace Policy]({{< ref "access-management/baseline-workspace-policy.md" >}}) | Set default permissions that apply to all members that are a part of the workspace |
| [Group Policies]({{< ref "access-management/groups.md" >}}) | Create groups and manage their policies for your RudderStack workspace |
| [Member Workspace Policy]({{< ref "access-management/members.md" >}}) | Customize individual member permissions within a workspace |
| [Feature-wise Permissions]({{< ref "access-management/permissions.md" >}}) | Review the permissions required for different RudderStack features |
| [Service Access Tokens]({{< ref "access-management/service-access-tokens.md" >}}) | Use Service Access Tokens for centralized API access at the organization or workspace level |
| [Personal Access Tokens]({{< ref "access-management/personal-access-tokens.md" >}}) | Use Personal Access Tokens to authenticate and consume RudderStack APIs as an individual user |
| [Migration Guide]({{< ref "access-management/migration-steps.md" >}}) | Follow step-by-step instructions to migrate from the legacy Permissions Management (RBAC) system |
| [Access Management FAQ]({{< ref "access-management/faq.md" >}}) | Find answers to frequently asked questions about Access Management |
