An administrator at a financial services firm needs to grant Read and Edit access on a custom object named 'Investment Audit' to 5 wealth managers for a temporary compliance project. These 5 wealth managers share the baseline 'Wealth Advisor' profile with 50 other advisors who must not receive access to this object. Which administrative approach best fulfills this requirement while adhering to security best practices?
- Create a Permission Set that grants Read and Edit access on the Investment Audit object and assign it to the 5 wealth managers.Cevap
- BClone the 'Wealth Advisor' profile, enable Read and Edit access on the Investment Audit object in the new profile, and reassign the 5 wealth managers to it.
- CModify the baseline 'Wealth Advisor' profile to include Read and Edit permissions on the Investment Audit object for all wealth advisors.
- DCreate a Muting Permission Set containing Read and Edit access on the Investment Audit object and assign it directly to the 5 wealth managers.
Cevap
Create a Permission Set that grants Read and Edit access on the Investment Audit object and assign it to the 5 wealth managers.
Permission Sets are used to grant additional permissions to specific users on top of their baseline profile. By creating a permission set with Read and Edit access on the Investment Audit object and assigning it to the 5 wealth managers, the administrator satisfies the business requirement without granting unnecessary access to the other 45 wealth advisors who share the baseline profile.
Adım Adım Çözüm
Anahtar Kavram
Additive Access with Permission Sets