Option B is ideal when an organization has several teams and each team requires restriction of assets and access so only member of each team can see and access their own data, whereas other teams cannot. I have applied this solution and made it open ...