VERIFIED in 5.10.0.2 I was able to create a user assigned to super admin and other groups that had restricted access to the access control accordion. Logging on as that user as super admin allowed full control of RBAC objects. When I changed to the restricted group the user could only see group that matched the restricted access (Tagged w/ Department->Engieering)