A retail company needs to grant two warehouse supervisors the ability to delete Inventory Audit records and perform mass inventory updates. The administrator must grant these additional permissions without creating new user profiles or modifying existing profile assignments. Which two actions should the administrator take to meet these access requirements? (Select 2)
- Create a Permission Set containing the Delete permission on Inventory Audit records and assign it to the two warehouse supervisors.Answer
- BCreate a new custom profile with the required delete permissions and reassign the two supervisors to this profile.
- Add the newly created Permission Set into a Permission Set Group assigned to warehouse supervisory staff for simplified permission management.Answer
- DModify the existing standard Warehouse Profile to grant the Delete permission on Inventory Audit records to all assigned users.
Answer
The administrator should create a Permission Set granting the required Delete permissions for Inventory Audit records and assign it to the targeted users, and optionally bundle this permission set within a Permission Set Group for streamlined administration.
In Salesforce security best practices, profiles set the minimum baseline permissions, while Permission Sets provide flexible, additive permissions to individual users who require extra capabilities. Grouping permission sets into a Permission Set Group further organizes role-based capabilities for efficient assignment.
Step-by-Step Solution
Key Concept
Additive Security Architecture using Permission Sets and Permission Set Groups