🧠 WHO CAN FIX THIS, DATA SECURITY & USER MANAGEMENT EDITION
A growing SaaS company uses Salesforce to manage customers and sales activities. Recently, the leadership team discovered a security concern.
Sales reps are able to see and edit Accounts that belong to other sales reps, even though management wants each rep to only access the records they own.
However, there are a few important conditions:
• Sales Managers must still see all records owned by their team
• The company does not want to create additional profiles
• The company wants to avoid unnecessary sharing rules if possible
• Current object permissions such as Read, Create, Edit are already correct
As the Salesforce Admin, you have been asked to redesign the security model to meet these requirements while keeping the system simple and scalable.
What is the best solution? Explain below why you think your answer is correct
Only one option correctly aligns with Salesforce security architecture best practices.
Who can fix this? 🧠
🔘 A. Set the Account Organization Wide Default to Private, review existing profiles to ensure View All is removed, and rely on the Role Hierarchy so managers automatically inherit visibility of their team’s records.
🔘 B. Keep Organization Wide Defaults as Public Read Only, remove Edit access from profiles, and create owner based sharing rules to grant managers access to subordinate records.
🔘 C. Set Organization Wide Defaults to Private, create criteria based sharing rules for managers, and assign permission sets granting View All access to team leaders.
🔘 D. Leave Organization Wide Defaults unchanged, create account teams for each record, and assign managers manual sharing permissions through account team roles.
23 votes
15
10 comments
Godwin Mbah
7
🧠 WHO CAN FIX THIS, DATA SECURITY & USER MANAGEMENT EDITION
Pathway To Salesforce (PTS)
skool.com/pathway-to-salesforce
A community to help you transition into tech, master Salesforce skills, and unlock career opportunities with hands-on learning and real-world support.
Leaderboard (30-day)
Powered by