I found that it is often convenient to set up access rights dynamically. You need to add an attribute like BO.CreatorID and a rule
If BO IS NEW Then BO.CreatorID=LoggedInMember.ID
You can then add a protection rule
If LoggedInMember.ID<> BO.CreatorID
Then PROTECT BO FROM ALL EXCEPT Administrator AND System
Or you can only protect some attributes, even hide them by using READ PROTECT
This approach is similar to setting up Access level to creator only but it allows more flexibility. You may wish to have the BO or an attribute available to other users depending on other attributes. For example, you may only want to block access to records which were entered more than 2 days ago. If you write a record creation day in BO.CreatedOn and initialise it as CURRENT_DATE, then you can add a rule like this one
If LoggedInMember.ID<> BO.CreatorID AND
DAY_DIFFERENCE(BO.CreatedOn, CURRENT_DATE)>2
Then PROTECT BO FROM ALL EXCEPT Administrator AND System