AECP treats security as one of its core capabilities in product design and applies the security design principles of being protectable, verifiable, and auditable throughout the platform architecture, default configurations, and key operation paths.
From a security domain perspective, AECP supports the following types of security capabilities:
| Security type | Security capabilities |
|---|---|
| Account and identity security | |
| Role and permission security | |
| Session and authentication security | |
| Host security | |
| Virtual machine security | |
| Network security | |
| Security operations and event management |