A Salesforce Administrator at a financial services enterprise must resolve two urgent user management requirements:
1. A temporary internal Risk Auditor requires read-only access to custom Compliance Audit records for 90 days. This access must not be granted to other users assigned to the standard auditor profile.
2. An active Risk Manager who serves as a default record owner in automated Lead routing rules and is referenced in custom user hierarchy fields must have their system login access blocked immediately.
Which TWO administrative actions should be taken to satisfy these requirements while adhering to Salesforce best practices? (Select TWO)
- Assign a permission set granting Read access to Compliance Audit records to the Risk Auditor and set an expiration date on the permission set assignment.Cevap
- BClone the standard auditor profile, grant Read access on Compliance Audit records in the new profile, and set a profile expiration date of 90 days.
- Freeze the Risk Manager's user record from Setup to instantly prevent user login while preserving automated processes and hierarchy references.Cevap
- DDeactivate the Risk Manager's user account immediately from Setup to revoke all system access and reassign their active licenses.
Cevap
The correct actions are assigning a permission set with an expiration date to the temporary Risk Auditor and freezing the Risk Manager's user account from Setup.
The correct options state that assigning a permission set with an expiration date grants temporary object permissions efficiently without modifying base profiles, and freezing the user account immediately blocks login capability without disrupting automated Lead routing rules or custom hierarchy references.
Adım Adım Çözüm
Anahtar Kavram
User Provisioning via Permission Set Expiration and User Freezing vs Deactivation