A growing SaaS company uses Salesforce to manage customers and sales activities. Recently, the leadership team discovered a security concern.
Sales reps are able to see and edit Accounts that belong to other sales reps, even though management wants each rep to only access the records they own.
However, there are a few important conditions:
• Sales Managers must still see all records owned by their team
• The company does not want to create additional profiles
• The company wants to avoid unnecessary sharing rules if possible
• Current object permissions such as Read, Create, Edit are already correct
As the Salesforce Admin, you have been asked to redesign the security model to meet these requirements while keeping the system simple and scalable.
What is the best solution? Explain below why you think your answer is correct
Only one option correctly aligns with Salesforce security architecture best practices.
Who can fix this? 🧠