We need to remove Authenticated users by default in the security descriptors to avoid that all profiles can be read by users.