This document proposes a new scheme for secure and scalable access control in cloud computing. It extends ciphertext-policy attribute-set based encryption (CP-ASBE) by incorporating a hierarchical structure of system users using a delegation algorithm. The proposed scheme allows a trusted authority and multiple domain authorities to generate keys for data owners and consumers. It defines access structures for encrypting files and issuing user keys with associated attributes. The scheme supports flexible attribute combinations, efficient revocation, and fine-grained access control for outsourced data in cloud computing.