Predefined User Roles

Roles link users to the business activities that they are permitted to perform within Tax Reporting, and the data that they can access.

Access to Tax Reporting instances is granted by assigning users to roles. For example, to permit users to view reports belonging to an application, they should be assigned to the Viewer role for the instance.

With the exception of the Identity Domain Administrator role, Tax Reporting roles are hierarchical. The Identity Domain Administrator creates users and assigns them to predefined roles that grant them access to business functions and associated data. Access granted through lower-level roles is inherited by higher-level roles. For example, Service Administrators also inherit the access granted through Power User and Viewer roles.

Note:

If you require different or additional access to the application, contact your Service Administrator.

The following predefined roles are available:

Table 2-1 Tax Reporting

Role Description

Identity Domain Administrator

Uses the Security page of My Services to perform all identity domain management tasks, including creating users and assigning them to roles.

The Identity Domain Administrator is not a functional role; it does not inherit access privileges granted through functional roles. To access service features, the Identity Domain Administrator must be granted one of the four functional roles in Tax Reporting.

See "Understanding Predefined Roles" in Getting Started with Oracle Enterprise Performance Management Cloud for Administrators for a detailed description of this role.

Service Administrator

Read, write, and update everything in the application, including metadata and data, for all entities or a specific group or of entities. The Service Administrator has automatic access to the Approvals card. Also performs Tax Automation.

Power User

Views and interacts with data. This role grants high-level access to several Tax Reporting functional areas. The Power User has automatic access to Approvals card. Also performs Tax Automation.

Note:

Users with a Power User role and User role cannot save Global and Domicile Rules in Tax Automation, but they can save Entity Rules.

However, the Service Administrator can provide permission for Tax Automation Global Save Rule to the user or group from the Rules card, which will enable them to save Global and Domicile Rules.

User

Read, write, and update only tax related forms for which access has been assigned, including the following tasks:

  • Enters and submits data for approval. The User has automatic access to the Approvals card.
  • Analyzes forms using ad hoc features
  • Consolidates data as needed for entities to which they have access.

Also performs Tax Automation.

Viewer

Read-only access to specified forms to view and analyze data through forms and any data access tools. Data Access tools include reports and ad hoc grids.

Note:

Users with the Viewer role are never granted Write access.