Are group and object authorities available at level 20 security?
Yes, all i5/OS security options, including group profiles and granting object authorities, are available at security level 20. The authority-checking algorithm is exactly the same at all security levels. It may not look like it, but that's because, by default, when a profile is created at level 20, it is created with *ALLOBJ special authority. But you can remove this special authority from users and then use private authorities or set objects' *PUBLIC authority to *EXCLUDE, etc.

