@james-mke It should be achievable using user permissions(ACLs).
1. Create custom dam user group(dam-users-test) and
2. assign permissions as read and modify only on given folder path(ex: /content/dam/myassets).
3. Map user to this dam-users-test user group