Protecting sensitive client data from other teams

Hi all, I’m having an issue setting up my teams permission sets.

Here’s what I’m trying to do:

I have a sales team in the US that deals with sensitive clients and I need to enshrine that data from any other team seeing it.

I’ve created them a unique permission set that means they can see the objects created by the wider sales team but only they can see their own objects.

My issue comes when I add in our Customer Success team. They need to see all client data but I need to hide the US data from them! When I set up their permission set I only have the options of:

Everyone

Team

Own

So I obviously can’t be granular enough on the teams they can see.

I tried to circumvent this by adding customer success as ‘additional team members’ on the wider sales team profile and then selecting ‘Team’ object view on the permission set. But this doesn’t seem to be working either!

Does anyone have any ideas how I can fully protect the client data inputting my by US team?
Thanks so much!

Hi @SGreenbergJames,


@SGreenbergJames wrote:

But this doesn’t seem to be working either!

What exactly isn’t working? Generally, if you create a Team for ‘Outside of US’ and limit record access for the members of the team to team only, that would work for both sales and customer service.

The US users wouldn’t even have to be in the team, their permissions could be set to all records.

Maybe I’m missing something, if so, could you provide more context?

Best regards!