this is a very interesting question. I also worried about how to manage access to the data on the disk for different users.
the user on whose behalf the work service has administrative privileges on the local machine, and it is available all the data on the disk. So you must use Securityrules QS.
As I see it.
Rights to create Folder Data Connection has only RootAdmin, ContentAdmin, SecurityAdmin.
I think you need to create manually for specific groups of users Folder Data Connection and allow access.
c:\QVD folders has sub folder Dev, RnD, Support, Audit
Create Custom Propertis User_Type with value Dev, RnD, Support, Audit
Create 4 Folder Data connection and give the appropriate security rights in QS
Assign users to the required custom properties
Users will have access to a particular directory and files in it In accordance with the appointment of custom properties.
This is my vision to solve this problem. However, it is unclear what to do with the users who have the right to create a Folder Data connection