is based on an XACML authorization framework to get JavaScript Object Notation (JSON)-encoded assertions for end-to-end communication with devices. While our approach follows a similar process, we provide specific solutions for the discovery and secure access to services which are deployed in smart buildings scenarios. Additionally, these components have been integrated into a holistic platform for efficient management of services, by instantiating an ARM-compliant security framework which promotes its applicability and interoperability in a wide range of IoT scenarios in which security and privacy are required.