QuestionQ1289

Security and Access

Universal Containers uses a public read-only sharing model for accounts. A new sales team has been created to work with high-security customers. The administrator has been asked to conceal these accounts from anyone not on that team.

Which two actions must be taken to hide these accounts without affecting access for the rest of the Sales team?

Choose two
  • A Change the new team role to be outside the company hierarchy.
  • B Change organization-wide default on accounts to private.
  • C Create ownership-based sharing rules.
  • D Create a new account record type to separate both teams.
Explanation

A Private Account organization-wide default removes automatic access to all Account records except through ownership, role hierarchy, permissions, manual sharing, or sharing rules. Ownership-based sharing rules can selectively grant the regular Sales team access to accounts owned by the appropriate non-high-security owners, without granting access to the high-security accounts. Sharing rules extend access; they cannot restrict access below a Public Read Only default. Record types classify records but do not provide record-level sharing control.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!