Question

Difficulty: HardDelegated Administration

CloudMetrics is creating a Delegated Administration group named "Support Leads Delegation" to offload operational management for regional support teams and custom tracking tools. The primary administrator needs to configure the group to grant maximum allowable authority without granting full System Administrator permissions. Which two administrative tasks can be granted to members of this Delegated Administration group? (Select 2 options.)

  1. Creating and editing user accounts within specified roles and subordinate role hierarchies.Answer
  2. Managing custom fields, page layouts, and picklists for explicitly specified custom objects.Answer
  3. C
    Modifying profile permissions and field-level security settings directly on assigned user profiles.
  4. D
    Deactivating users who are set as default workflow owners without reassigning the dependency, instead of freezing them.

Answer

Delegated administrators can be granted authority to manage users within specified role hierarchies and administer specified custom objects (including fields and layouts). They cannot modify profile definitions directly or bypass system limitations on user deactivation.
Delegated Administration in Salesforce provides scoped administrative rights. Delegated admins can create and manage users within defined role hierarchies and manage specified custom objects (including custom fields, page layouts, and picklists).

Step-by-Step Solution

1
Evaluate user management capabilities in Delegated Administration.
Delegated administrators can create and edit users within specified role groups and their subordinates.
User administration delegation is scoped by explicit roles and subordinate roles defined in the delegation group setup.
2
Evaluate object management capabilities in Delegated Administration.
Delegated administrators can manage custom object definitions, fields, page layouts, and validation rules for specified custom objects.
Custom object delegation allows non-admin leads to maintain schema elements for designated custom objects without access to standard objects or system settings.
3
Evaluate security configuration and deactivation boundaries.
Profile permissions cannot be altered by delegated admins, and user deactivation restrictions apply universally.
Profile modification requires full system administration capabilities, and workflow owner dependencies prevent account deactivation.

Key Concept

Delegated Administration Boundaries
Rate this question