User profiles
Each user must have a user security role and a user profile defining what they can access.
- Assign each system user (basys UniData database ID) to a role to govern access to sessions, functions, and fund-level data.
- Add a Member Control to prevent access to a particular group of member's data.
- Create an Employer Control to prevent access to a particular group of employer's data.
- Add a Sensitive Data Control to mask the actual values for employer or member's sensitive data like social security numbers (SSN/SIN), Protected Health Information (PHI)
Any health information that could identify a person. This can include a person's past or present medical status or condition, payments made for health care, and health care services received., or salary information.
- Configure additional administration view settings.
Go to: Home > Menu > System Administration > Security.
Set up a user profile
-
Double-click
Authorization Profile Editor
. - In the Authorization Profile Editor window, complete the required fields.
- Select the UniData database user ID from the
Username
list. - At the
Role Description
, select a role. -
Select the appropriate controls from the options.
Authorization Profile Editor Field Descriptions
* indicates a required field
Field Description Username
The UniData database user ID. An ID can only be associated with one profile.
Role Description
The description of the role. The roles that display are those already created in the system. See Manage system security and data access for details.
Member Control
The member control identifies the members (and dependents) this profile can't access. See Member Control for details.
Sensitive Data Control
The sensitive data control identifies the types of data that will be masked in tabs, windows, navigation panes, tables, etc. See Sensitive Data Control for details.
Employer Control
The employer control identifies the employers that this profile can't access (black-listed). See Employer Control for details.
Administration Area
Shared View Administrator
—Allows the user to add, edit or delete a "shared" view in functions that have customizable data views. All ServiceXG users with access to that function can use the shared views. Refer to Views for information.Note: To ensure consistency and avoid duplicate views, give the Shared View Administrator functionality to a limited number of users with the business knowledge and experience to create and define custom views and manage the shared views.
Display Invalid Data Values
—Displays the original invalid data values. Refer to Invalid data table for details.Display All Follow-ups
—Enables aMy Follow-Ups
andAll-Follow-Ups
(for all employees) option in the home session My Tasks.Note: Give this functionality only to supervisors in each department.
Maintain Links
—Enables the ability to add, update or delete links to documents or websites on the Home session's Links tab.Pension Administrator
—Enables the ability to set a Pension Credit default fund display view (whatever view is saved as the default becomes the default view for everyone who views that fund.) The user can also turn Pension Projection on for a fund (it defaults to off). - Choose any Administration options to apply to the profiles.
- Click
Save
to apply update the user's profile.
Update a profile
- Select the UniData database user ID from the
Username
list. - Make changes to the profile's settings as necessary.
-
Click
Save
to apply the changes.