4.37 out of 5
508 reviews on Udemy

Salesforce Certified Advanced Administrator – Part 1

First of a Three-Course Certification Series for the Salesforce Advanced Administrator Certification - In Lightning
Mike Wheeler
3,287 students enrolled
English [Auto]
Gain an in-depth understanding of the first three knowledge areas of the Advanced Admin Exam Guide - Security and Access, Extending Custom Objects and Apps and Auditing and Monitoring
Learn Advanced Administrative techniques on the Salesforce Platform in Lightning Experience

We build an Asset Management App in this course.

If you have attained the Salesforce Administrator Certification, you are ready to start the journey to becoming an Advanced Administrator. Become a Salesforce Certified Advanced Administrator by enrolling in this first course of a three-course certification course series. Be sure to get the other two courses as well to complete the set!

I have taught over 110,000 students on the Salesforce platform and I want you to join me in my latest course. I have structured this course to go in-depth on the first three Knowledge Areas of the Salesforce Certified Advanced Administrator Exam Guide:

  • Security and Access

  • Extending Custom Objects and Applications

  • Auditing and Monitoring

  • The Salesforce Certified Advanced Administrator Certification has a pre-requisite that you have an active Administrator Certification on file – if you have not attained your Administrator Certification, I recommend that you first complete that certification and locate my relevant training courses for that certification via my instructor profile.

We will go in-depth on all of the core concepts and topics of the Salesforce Security Model in this course. It’s a deep dive on user accounts, licenses, profiles, permission sets, profiles, roles, groups, teams, territories and more.

This course is recorded in Salesforce Lightning Experience.

And tens of  thousands of Udemy Survey ratings for my courses, the students have spoken:

“Are you learning valuable information?” 99.6% answered YES

“Are the explanations of the concepts clear?” 99.8% answered YES

“Is the instructor knowledgeable about the topic?” 99.9% answered YES

Security and Access

Course Introduction, Exam Guide and Security and Access Introduction
Salesforce Security Model Overview

In this lesson, I provide a high-level overview of the Salesforce Security Model. 

User License Types

Data access in Salesforce begins with the User. Levels of access vary based on the type of user that is logging in. It is important that you understand the different license types available in Salesforce.

You can view your organization’s licenses in Company Information via Setup.


Profiles and permission sets provide object-level security by determining what types of data users see and whether they can edit, create, or delete records. For each object, the “View All” and “Modify All” permissions ignore sharing rules and settings, allowing administrators to quickly grant access to records associated with a given object across the organization. These permissions are often preferable alternatives to the “View All Data” and “Modify All Data” administrative permissions.

Permission Sets

In this lesson, we look at permission sets, and profiles vs. permissions 

Record and Field Level Access

In this lesson, we go over record and field access levels.

Sample Questions #1 & #3 from the Exam Guide
Setting Organization-Wide Defaults

In this lesson, we refer to the Salesforce Security Model Diagram, and how the Org-wide defaults specify the default level of access users have to each other’s records.

Controlled by Parent

In this lesson, we look at the relationship between various objects, first referring to the Sales Objects ERD Diagram found within the SOAP API Developer Guide. We then use the Schema Builder to further look at the relationship types between Account, Contract, Contract, Case and Opportunity.

Roles and the Role Hierarchy

A role hierarchy represents a level of data access that a user or group of users needs. The role hierarchy ensures that managers always have access to the same data as their employees, regardless of the organization-wide default settings. Role hierarchies don't have to match your organization chart exactly. Instead, each role in the hierarchy should represent a level of data access that a user or group of users needs.

Logging in as Another User

In this lesson, we grant the ability for administrators to log in as other users in our org. We then adjust the Session Settings to unlock the Force relogin after Login-As-User setting. We also adjust Jim Doe’s profile to make him a Lightning Experience user.

Profiles vs. Roles

In this lesson, I place myself at the bottom of the Role Hierarchy and place Jim Doe above me as my manager.

We then demonstrate how Jim is unable to create a new Account record.

Ownership-Based Sharing Rules

Ownership-based sharing rules allow for exceptions to organization-wide default settings and the role hierarchy that give additional users access to records they don’t own. Ownership-based sharing rules are based on the record owner only.

Criteria-Based Sharing Rules

In this lesson, I create a criteria-based sharing rule. We specify that any accounts that are named Sony or have a Start Year of 2018 should be shared with the Director, Channel Sales Role and Subordinates. We also create a new ownership-based sharing rule to better fit our scenario and to replace the one we created in the previous lecture. We then adjust an account record to verify that the sharing rule worked as intended. 

Manual Sharing

In this lesson, I manually share an account record with other users, after first confirming through the Sharing button that they don’t already have access through some other means.

Teams Access

In this lesson, we look at Team Access – specifically related to Account Teams, Opportunity Teams and Case Teams. We enable Account Teams and Opportunity Teams. We also cover how to specify default Account and Opportunity Teams. 

Record Ownership and Queues

In this lesson, we go over record ownership and queues. 

Every record must be owned by a single user or a queue. The owner has access to the record, based on the Object Settings for the owner’s profile. For example, if the owner’s profile has Createand Read permission on an object, but not Editor Delete permission, the owner can create a record for the object and see the new record. However, the owner won't be able to edit or delete the record. Users higher in a hierarchy (role or territory) inherit the same data access as their subordinates for standard objects. Managers gain as much access as their subordinates. If the subordinate has read-only access, so will the manager. This access applies to records owned by users, as well as records shared with them. 

Queues help you prioritize, distribute, and assign records to teams who share workloads. Queue members and users higher in a role hierarchy can access queues from list views and take ownership of records in a queue. 

Public Groups

In this lesson, I demo how to create a public group. 

Running the Health Check

In this lesson, we run the Health Check for our org. I address one of the issues listed in the report and then re-run the Health Check to see the impact on our scores.

Account Owner Report

In this lesson, I enable the Account Owner Report. We then run the report while logged in as Jim Doe. I also removed Jim Doe from my Default Account Team and also removed my Role designation on my user account to block access to my records for Jim. This was to demonstrate that although Jim does not have access to my account records and our org wide defaults are set to private on the Account object, Jim is able to see limited details about the accounts in our org, such as account name, owner and last updated date.

Communities’ Security Settings
Record Type Security Considerations

In this lesson, we introduce Record Types to the Asset object. We create Record Types for Medical Equipment and Office Equipment. We discuss how Record Types are leveraged to associate Page Layouts by Profile, as well as Picklist Values that are available. In addition, we discuss how Record Types can be assigned on the Profile and a Default Record Type designated.

But we don’t stop there. We look at assigning Record Types by Permission sets. I then share a help article that contrasts the ins and outs of what happens if a user either has the Master Record Type or a Custom Record Type on their Profile and the various combinations of Record Types assigned via Permission Sets.

Delegated Administration

In this lesson, we explore the use cases and functionality of Delegated Administration. Use delegated administration to assign limited admin privileges to users in your org who aren’t administrators. For example, let’s say you want the Customer Support team manager to manage users in the Support Manager role and all subordinate roles. Create a delegated admin for this purpose so that you can focus on other administration tasks.

Territory Hierarchy Access Introduction

In this lesson,  we explore the territory hierarchy and its single dimensional, additional hierarchy. Which can be structured by business units or any kind of segmentation in a hierarchical structure.

Enabling Territory Management

In this lesson, we go over how to enable territory management.

Configuring Territory Management

In this lesson, we look at the various security settings available under Territory Settings:

  • Account Access

  • Opportunity Access

  • Case Access

Creating Territory Models

In this lesson we create the following Territory Models:

  • This Year

  • Next Year

Creating Territories

Now that we have created Territory Models, it’s time to create Territories for them. In this lesson, we create four Territories for the This Year Territory Model:

  • Western

  • Eastern

  • Northern

  • Southern

We assign each of these Territories the Type of Geographic.

Assigning Accounts to Territories

You can assign accounts either manually or by running Territory Assignment Rules. In this lesson, we look at the implications of both.

Assigning Users to Terriotories

In addition to accounts, users can also be assigned to multiple territories. In this lesson, we assign users to the Western and Eastern Territories in our org.

Activating a Territory Model

In this lesson we learn about customer scenarios for territory management. Only one Territory Model can be active in an org.

Extending Custom Objects and Applications

Extending Custom Objects and Applications Introduction

In this introductory lesson, we go  over extending custom objects and applications.

Creating a Custom Object

In this lesson, we begin creating the underlying foundation for our eventual Asset Management Application. We create a Room custom object via the Schema Builder. Since custom object creation via the Schema Builder does not give you the opportunity to create a Custom Tab for your new Custom Object, we create one and do not associate it with any apps at this point.

Creating a Junction Object
Creating a Hybrid Junction Object
Leveraging a Junction Object Across Multiple Record Types
Assigning an Asset to a User via the Hybrid Junction Object
Considerations for Relationships
Creating the Asset Management App

Auditing and Monitoring

Auditing and Monitoring Introduction

In this introductory lesson, I prepare you for the topics included in this Knowledge Area of the course.

View Setup Audit Trail
Email Log
Debug Log
Event Monitoring
Session Management
Bonuses - Free Courses and Coupons
You can view and review the lecture materials indefinitely, like an on-demand channel.
Definitely! If you have an internet connection, courses on Udemy are available on any device at any time. If you don't have an internet connection, some instructors also let their students download course lectures. That's up to the instructor though, so make sure you get on their good side!
4.4 out of 5
508 Ratings

Detailed Rating

Stars 5
Stars 4
Stars 3
Stars 2
Stars 1
30-Day Money-Back Guarantee


5 hours on-demand video
2 articles
Full lifetime access
Access on mobile and TV
Certificate of Completion
Salesforce Certified Advanced Administrator – Part 1
$218.98 $159


For Professionals

For Businesses

We support Sales, Marketing, Account Management and CX professionals. Learn new skills. Share your expertise. Connect with experts. Get inspired.


Partnership Opportunities

Layer 1
Register New Account
Compare items
  • Total (0)