After deleting an Active Directory (AD) user or group from the domain, the corresponding permissions are not automatically removed from the vCenter Server object hierarchy.
VMware vCenter Server
vCenter Server permissions establish a static association between an inventory object and a user or group's Active Directory SID. When the object is destroyed in AD, the permission mapping remains orphaned within the vCenter database.