Scenario: All users can view objects and some users can update objects
Objects can be stored in a common area and shared across GRC domains. In this scenario, only a few users are allowed to update the objects. All other users have read access only.
This scenario is a variant of Scenario: Objects that are shared across GRC domains.
Role-based security is defined for all users to be able to read the objects in the folder. You want a small group to be able to create and another group to be able to update and associate.