ABAC and RBAC: Scalable, Flexible, and Auditable Access Management

Is it possible to obtain the flexibility and advantages of attribute-based access control while maintaining role-based access control's advantages for analysis and risk control?