Provide Access to Payroll Flow Corrective Actions Using Security Roles
Use the Allow Corrective Actions on All Tasks Within Payroll Flows aggregate privilege to let users perform corrective actions on payroll flows they didn’t start.
This aggregate privilege minimizes the need to configure group ownership at the individual task level, especially when multiple users are responsible for managing payroll flows.
Here's how you provide access:
- Create a job role and include the Allow Corrective Actions on All Tasks Within Payroll Flows aggregate privilege.
- Create a payroll flow security profile that includes the specific payroll flows the user should manage.
- Create a data role and associate it with the payroll flow security profile.
- Grant the data role to the user.
Important considerations:
- This aggregate privilege isn't included in any predefined job role. You must copy an existing role and add the privilege to the custom role. For more information, see Copy and Edit Duty Roles.
- If both group ownership and security configuration are applied to the same flow, both controls will be enforced.
- Existing group ownership settings remain unchanged and continue to function as configured.
- For better control, limit the scope of payroll flow security profiles to only the flows users need access to. For example, separate profiles for calculation and payment flows.