An area of our business is an independent auditor who audits our own organisation, as well as other similar organisations (competitors). Although we still need the staff in that ‘group’ to access HR, finance, IT and corporate processes, we do not want them accessing (e.g.) operations processes. Firstly, they may see something (accidentally or otherwise) that will make them focus attention during a future audit. Secondly, having access to those processes could undermine their position as an ‘independent’ auditor in the eyes of our competitors and leave us exposed.
Using the Process Group Permissions, it’s relatively simple to restrict viewing access to just those (@20 staff) within that group, but it looks like I will have to remove ALL STAFF from every other group in the organisation, then individually add the other @1200 staff to every group, making sure that I don’t include those who are in the auditing group.
Does anyone know of a better way to do this?