Job Application Security Details

The ability to view job applications is tied to both the job requisition visibility and the job offer visibility.

In general, the job requisition visibility is broader than the job offer visibility. Because the job requisition's Hiring Team might be different from the job offer team, a user who can view a job offer might not have access to the original job requisition where the job application was created. However, the user will be able to view the job application associated with those offers.

A user with access to a set of job requisitions might not have access to any job applications. By default:
  • The Hiring Manager role has the View Non-Restricted Candidate Job Application (ORA_IRC_VIEW_NON_RESTRICTED_CANDIDATE_JOB_APPLICATION) aggregate privilege
  • The Recruiter role has the View Candidate Job Application (ORA_IRC_VIEW_CANDIDATE_JOB_APPLICATION) aggregate privilege

The difference is that if restricted phases are defined in the candidate selection process, the Hiring Manager role won't see job applications until they're moved out of these phases.

There's no need to define data security policies to view job applications from the Requisitions list. Only the concept of restricted phases applies. The conditions for those two aggregate privileges are:

  • For unrestricted job applications for the job requisitions and job offers I can see
  • For all job applications for the job requisitions and job offers I can see

These conditions will apply in all contexts where you can see job applications, including the Activity tab of candidates.