Skip to main content

Like many Admins, I’m attempting to move our user access (particularly Object/Field access) to be on Permission Sets instead of Profiles.

 

I am struggling with how to handle what I consider default Users with default Profiles created by Salesforce. I’m talking about users such as:  Integration User, Security User, Insights Integration, etc. 

 

My understanding is that these users should have Field-Level Security set to visible for all fields, but these users by default only have a Profile. Are others creating a special Permission Set for these users in order to easily give access when fields are created? Or do you just continue to assign to Profiles when creating new fields, then add to Permission Sets for your “regular” users later?

 

Frankly, I don’t have a good understanding of the function of these users, so I’m unsure of what access I need to be sure to grant as our org evolves. Any insight/advice would be appreciated. 

 

@The Future of User Management

4 Antworten
  1. 7. Feb., 22:06

    Hi @Marie Garmoe

     

     

    Best practice is to keep Profiles minimal and give all object/field access via dedicated Permission Sets for Integration/System users. When new fields are created, update those Permission Sets—not Profiles.

0/9000