Trailhead Week 2 - Tuesday Flashcards
By combining ________ ________ at different levels, you can provide just the right level of data access to thousands of users
security controls
Access to _________ ________ is the simplest thing to control
object-level data
You can restrict access to certain________, even if a user has access to the object. For example, you can make the salary field in a position object invisible to interviewers but visible to hiring managers and recruiters.
fields
You can allow particular users to view an object, but then restrict the individual ______ _______ they’re allowed to see.
object records
You can restrict access to certain ______, even if a user has access to the object
fields
You can allow particular users to view an ______, but then restrict the individual object records they’re allowed to see.
(ex) an interviewer can see and edit her own reviews, but not the reviews of other interviewers.
object
You use _________ ________ ________ to lock down your data to the most restrictive level, and then use the other record-level security and sharing tools to selectively give access to other users.
org-wide sharing settings
______ ________ give access for users higher in the hierarchy to all records owned by users below them in the hierarchy
Role hierarchies
________ ________ are automatic exceptions to organization-wide defaults for particular groups of users, so they can get to records they don’t own or can’t normally see.
Sharing rules
________ _______ allows owners of particular records to share them with other users.
(ex) when a recruiter going on vacation needs to temporarily assign ownership of a job application to someone else
Manual sharing
________ your system provides important information for diagnosing potential security issues or dealing with real ones.
Auditing
You can configure access to data at all of the following levels, except:
page layouts
Which of these is not a method for controlling record-level access?
profiles
A profile is a collection of __________ and ___________.
settings & permissions
The profiles functionality in an org depends on the user __________ type.
license
Users can have only one profile, but they can have multiple ________ ________.
Permission sets
You’ll be using permission sets for two general purposes:
- to grant access to objects or apps
- to grant permissions—temporarily or long term—to specific fields.
When object-level permissions conflict with record-level permissions, the most _________ settings win.
restrictive