Security entries made at the company level (blank division) also apply to any division in that company which has no security entries of its own.
The number of records in 'Authorization by User. Display' (SES401) (CMNPUS) are fewer, especially for companies with many divisions and roles and many combinations of security settings. Also, the load on program SEMNGPER and auto job (SES900) decreases.
There is a referential link between company and division in M3 Business Engine Security. Security entries made at company level (blank division) will also apply to any division in that company which has no security entries of its own. This can be thought of as the divisions having no need for their own security, therefore adhering to company policy.
Restricting Company and Division with options 11='User permissions to Cmp/Div' and 21='Update User Access all Cmp/Div' in 'User. Open' (MNS150), as described in the earlier section Controlling Access to Companies and Divisions.
Further, if any new company/divisions are created with no restrictions, users can have access to them.
If the new user was created using Copy (copied from an existing user), only the responsibilities of the existing user are assigned to the new user.