'Full Download' from 'View Admin Reports' compromising security — Cloud Customer Connect
You're almost there! Please answer a few more questions for access to the Applications content. Complete registration
Interested in joining? Complete your registration by providing Areas of Interest here. Register

'Full Download' from 'View Admin Reports' compromising security

edited Sep 5, 2020 12:17AM in Compensation 4 comments

Summary

Delegates acting on behalf of high level managers are able to see salary details of that high level manager.

Content

We are trying to meet below two requirements: 

1) Business line pay reps (BLPR) will proxy as a certain EMPLID (high level managers)  and perform merit allocations. They have visibility to direct and indirect reports of that EMPLID. 
2) They click 'View Admin Reports' link and then access the delivered reports which will contain sensitive data of direct and indirect reports of that EMPLID. 

We created a custom role and assigned it to those BLPR. Used below custom sql to pull scope of audience for that BLPR. 

Howdy, Stranger!

Log In

To view full details, sign in.

Register

Don't have an account? Click here to get started!