Soru

Zorluk: OrtaOrganization-Wide Defaults (OWD)

A financial advisory firm uses a custom object named Wealth_Plan__c to track confidential client investment strategies. To maintain strict data privacy, advisors must only access the wealth plans they own. However, branch managers directly above the advisors in the organizational role hierarchy must be able to view and edit all wealth plans owned by their direct reports.

Which Organization-Wide Default (OWD) setting and hierarchy configuration should the administrator implement for the Wealth_Plan__c object?

  1. Set the Organization-Wide Default to Private, and leave Grant Access Using Hierarchies selected.Cevap
  2. B
    Set the Organization-Wide Default to Private, and deselect Grant Access Using Hierarchies.
  3. C
    Set the Organization-Wide Default to Public Read-Only, and assign a Profile that revokes view access for non-owner advisors.
  4. D
    Set the Organization-Wide Default to Public Read/Write, and create a Permission Set to restrict access to record owners only.

Cevap

Set the Organization-Wide Default to Private, and leave Grant Access Using Hierarchies selected.
Setting the Organization-Wide Default to Private ensures that advisors only have access to records they own. Leaving 'Grant Access Using Hierarchies' enabled allows users higher in the role hierarchy (such as branch managers) to automatically inherit the ownership access rights of their direct reports.

Adım Adım Çözüm

1
Determine the baseline access required for individual record owners.
Since advisors should only access their own records, the most restrictive baseline access level required is Private.
Organization-Wide Defaults set the baseline level of access across the organization.
2
Evaluate role hierarchy requirements for upper management.
Branch managers above advisors in the role hierarchy require full view and edit access to records owned by their subordinates.
By default, Grant Access Using Hierarchies is enabled for custom objects, allowing access to propagate up the role hierarchy.
3
Combine the OWD setting with the hierarchy setting.
Configuring Private OWD while keeping Grant Access Using Hierarchies enabled fulfills both security requirements without redundant sharing rules.
This maintains strict record ownership privacy while granting automatic supervisory access.

Anahtar Kavram

Organization-Wide Defaults (OWD) and Role Hierarchy Access
Bu soruyu puanla