I have a project whose permission scheme is based on group membership. Two subsets of users in this group have been set up into two different groups, each associated with a security level so that only the subset can create/work on issues at their level. The problem is even with the level set the rest of the team still show up as possible assignees. How can I limit assignment to only those at the security level?