Revise a role so it does not have access to all courses

Currently, our Dean role has access to all courses. Despite using different templates for different departments and only having the necessary dean on those templates, all users with the role of Dean show up in all classes. I cannot figure out which permission to remove to stop this from happening.
Answers
-
It sounds like your cascading role may be applied to the user at the home level of your version of brightspace.
You should make them a "normal" un cascaded role at the Home level of your brightspace instance and then if your hierarchy is set correctly then the cascading dean role should be enrolled onto the correct Department for the area.
"Cascading rolesIf a role is cascading, a user enrolled in any org unit in that role is automatically enrolled in all other org units beneath it. For example, if you enroll a user in the science department in a cascading role, the user is automatically enrolled in all course templates, course offerings, and groups and sections under that department. Cascading roles are normally used for site administration."