Create data segments of administrative access that you can delegate to others. There are two components to define: which users the policy affects and what objects (or records) those users are authorized to view.
This is the companion discussion topic for the documentation at https://documentation.sailpoint.com/saas/help/segmentation/create_data_segments.html