Simply put, the answer is: Security Roles 🔐
In Dynamics 365 CRM, Security Roles determine what a user can do inside the system, and they’re the foundation for controlling permissions and protecting data.
🔑 What are Security Roles? They’re a set of Privileges, or permissions, grouped together and assigned to users to define their level of access to different Records and Features.
- ⚙️ The most common operations they control: ➕ Create (creating new Records), 👀 Read (viewing data), ✏️ Write (editing data), 🗑️ Delete (deleting data), 🔗 Append (linking a Record to another one), 📎 Append To (allowing other Records to be linked to it), 🤝 Assign (transferring ownership of a Record to another user), 📤 Share (sharing a Record with other users).
- 🎯 Access Levels in Security Roles: 🟢 User (only Records owned by the user), 🟡 Business Unit (Records within the same Business Unit), 🟠 Parent: Child Business Units (the parent unit and its child units), all the way up to the full Organization level.