Account Reconciliation Granular Roles Mapping

The following table lists and describes the Account Reconciliation granular roles and shows how they map to predefined roles.

Note:

All predefined roles can drill through to Data Exchange detail data based on their data access in Account Reconciliation.

Table 2-1 Account Reconciliation Granular Roles and Predefined Role Mapping

Granular Role Description Included in this Predefined Role
Access Control - Manage Performs all Access Control activities including managing groups, assigning granular roles to users and groups, and generating and viewing available reports. Service Administrator
Access Control - View Generates and views user security-related reports such as the Role Assignment Report, User Login Report, Group Assignment Report, and User Group Report. Users with this role cannot assign granular roles, manage groups, or modify Access Control settings. Service Administrator
Alert Types - Manage

Manages alert types that define procedures to follow when specific issues occur.

Service Administrator
Announcements - Manage Manages announcements displayed to users on the Welcome Panel, such as notifications for system maintenance or running of jobs. Service Administrator
Audit - View Provides access to audit details. This role does not allow users to launch the Reconciliation Actions dialog. Service Administrator
Currencies - Manage Configures Currencies, Rate Types, and Currency Buckets. Users with this role can control which currency codes are active in the system. Service Administrator
Dashboards - Manage Constructs and manages custom dashboards. Users with this role can:
  • Configure Compliance
  • Add, Edit, Duplicate and Delete
  • Import and Export
Service Administrator
Data Integration - Administrator Performs all functional activities in Data Integration. Users with this role can create, perform, and run:
  • Integrations between source and target systems
  • Pipeline activities
  • Extraction and transformation of data and metadata from on-premises sources using the EPM Integration Agent
Service Administrator
Data Integration - Create Uses Data Integration to create mappings to integrate data between source and target systems. This role can define data rules with various run time options. Service Administrator
Data Integration - Run

Users with this role use Data Integration to run an integration between the source and target.

If this is the only role assigned to the user, and if they are not a Power User or Service Administrator, they can also view the integration details, but are not able to make any changes.

Service Administrator
Data Loads - Manage Defines data load definitions in order to load data using Data Integration and save those same data load parameters.

Views the latest status of data loads and monitor the processing of user change requests.

Service Administrator
Jobs - View Views Account Reconciliation jobs and jobs status.
  • Power User
  • Service Administrator
Match Types - Manage Can manage match types, adjustment attributes, support attributes, journal columns, and group attributes. Service Administrator
Match Types - View Can view the details of match types, adjustment attributes, support attributes, and journal columns. Service Administrator
Migrations - Administer

Can:

  • Export snapshots and artifacts from the business process
  • Import snapshots and artifacts into the business process
  • Create business processes by migrating snapshots
  • Delete business processes created through migration
  • Clone the environment - To clone users and roles, the target user must have both the Identity Domain Administrator and Service Administrator roles
  • View and adjust the daily maintenance start time and time zone
Service Administrator
Organizations - Manage Assigns a hierarchical organizational unit structure to profiles and reconciliations. Service Administrator
Periods - Manage Manages the period properties. They can also set the status of the periods, load data and do other operations on the existing periods. Service Administrator
Periods - View Users with this role can view (read access only) the number of periods associated with the reconciliations, and also load data against the period.
  • Power User
  • Service Administrator
Profiles - View Users with this role can access profiles for which they have been assigned workflows, aligning with Reconciliations they can view.
  • Power User
  • Service Administrator
  • User
Profiles and Reconciliations - Manage Manages profiles, reconciliations, and attributes

You can set the security scope for this role in the Power User Security screen.

  • Power User
  • Service Administrator
Public Filters and Views - Manage Filters control the records that you see in list views and reports. You can apply filters against profiles, reconciliations, or reconciliation transaction attributes, including system attributes, balances, and balance details.

Users with this role can create complex filters and logics to determine the order in which filters are applied.

Service Administrator
Reconciliation - Commentator View the reconciliations and add comments to the reconciliation or to transactions of the reconciliation.
  • Power User
  • Service Administrator
  • User
Reconciliation - Preparer Users with this role prepare Reconciliations, assign panels, import pre-mapped data, and add attachments to submit, claim and release reconciliations.
  • Power User
  • Service Administrator
  • User
Reconciliation - Reviewer Users with this role review reconciliations, assign panels and add attachments to approve, reject, claim, and release reconciliations.
  • Power User
  • Service Administrator
  • User
Reports - Manage Configures the business process settings to display reconciliation reports. Service Administrator
Teams - Manage Users with this role may add, edit or remove teams, and manage members of the teams.
  • Power User
  • Service Administrator
Users - Manage Users with this role can manage members of the teams.
  • Power User
  • Service Administrator