<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="https://community.appian.com/cfs-file/__key/system/syndication/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>Security MCQ</title><link>https://community.appian.com/discussions/f/general/25596/security-mcq</link><description>Hi All, 
 4 environment &amp;ndash; Dev, Test, UAT and Prod. Production support team are not given administrative access to Prod. 
 Which is the least level of access that they should be given? 
 Best Regards.</description><dc:language>en-US</dc:language><generator>Telligent Community 12</generator><item><title>RE: Security MCQ</title><link>https://community.appian.com/thread/99984?ContentTypeID=1</link><pubDate>Tue, 23 Aug 2022 13:06:20 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:b0c6d978-5d3f-4528-bdca-9320a62c3a42</guid><dc:creator>Peter Lewis</dc:creator><description>&lt;p&gt;I&amp;#39;d recommend looking a bit more a the page on &lt;a href="https://docs.appian.com/suite/help/latest/object-security.html"&gt;security&lt;/a&gt; in the Appian documentation. Basically there are two types of users in Appian: System Adminsistrators and Basic Users:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;System Administrators have access to all Appian Design objects and the Admin Console.&lt;/li&gt;
&lt;li&gt;Basic users must be explicitly granted access to any part of the platform they use, including both design objects like Record Types or Process Models, and parts of the platform like the Appian Designer.&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Then, for each design object, there are typically three different security roles: Viewer, Editor, and Administrator. Based on your statement above, it sounds like you don&amp;#39;t want the support team to have administrative access to prod. So, that means you would set them as Basic Users and explicitly grant them access to the objects they need to access with the appropriate security role (which sounds like Viewer or Editor in your case).&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item></channel></rss>