WP#4 - NEW Roles to Unlock Garnishment Data Access

Purpose: As part of the Work Package #4 -  The pages containing garnishment data are now segregated behind a specific security role. This guide is intended to outline how to approach testing this change in access to verify that the prior roles which granted access no longer grant that access and the NEW roles that grant this access in fact grant this access as intended.

Audience: Local Security Administrators and HR Staff participating in User Acceptance Testing.

During the solution design phase of the HCM Masking project, it was determined that all garnishment-specific pages and page sections would be isolated to dedicated garnishment security roles. This approach follows the precedent established by the page segregation implemented for Accessibility data and Sexual Orientation and Gender Identity (SOGI) data. 

As a result, garnishment content will be removed from the existing roles that provide access to pages containing garnishment data. Staff who already have access to pages that contain some garnishment date in addition to other content will retain access to the page; however, the garnishment tab or section will be inaccessible unless they are assigned one of the additional garnishment security roles. These roles effectively “unlock” the garnishment content, allowing authorized users to view and interact with the garnishment data. Pages that are specifically design for garnishment data alone will no longer be accessible to those with existing roles without the addition of one of the new garnishment roles.

The roles related to viewing garnishment data are as follows:

  • ZD Garnishment Inquiry - View Only Access
  • ZC Garnishment Data - Correct History Access
  • ZZ Garnishment Data - Add/Update Access

The recommended testing approach is:

  1. First navigate to each page with the security role that previously granted access to garnishment data.
  2. Once it is confirmed that this data is no longer visible, then the Local Security Administrator can add the new garnishment related security role.
  3. The tester will then re-visit the pages to confirm that garnishment data is now visible.
Expand or collapse content Create Garnishments

Navigation: Main Menu>Payroll for North America>Employee Pay Data USA>Deductions>Create Garnishments

The page will not be visible to a user without the assignment of one of the garnishment roles listed above being assigned to their User Profile.

To Verify Garnishment Data Does Not Appear: 
Navigate to this page using one of these existing security roles that used to grant access to garnishment data, but no longer does.
You should NOT see this page as access should be blocked.

  • ZC Payroll Data Maintenance
  • ZD Payroll Data Maintenance
  • ZZ Payroll Data Maintenance
  • ZZ Payroll Processing
  • ZZ SS Payroll

Next the LSA assigns one of the new garnishment roles shown at the top of this guide to "unlock" access to this page.  Navigate to this page again, where the data is now visible without masking.

Expand or collapse content Review Garnishments

Navigation: Main Menu>Payroll for North America>Employee Pay Data USA>Deductions>Review Garnishments

The page will not be visible on the menu for a user without the assignment of one of the garnishment roles listed above being assigned to their User Profile.

To Verify Garnishment Data Does Not Appear: 
Navigate to this page using one of these existing security roles that used to grant access to garnishment data, but no longer does.
You should NOT see this page as access should be blocked.

  • ZZ Payroll Processing
  • ZZ SS Payroll

Next the LSA assigns one of the new garnishment roles shown at the top of this guide to "unlock" access to this page.  Navigate to this page again, where the data is now visible without masking.

Expand or collapse content Update Paysheet Transactions

Navigation: Main Menu>Payroll for North America>Payroll Processing USA>Create and Load Paysheets>Update Paysheet Transactions

<page displaying error - issue reported to security team>

To Verify Garnishment Data Does Not Appear: 
Navigate to this page using one of these existing security roles that used to grant access to garnishment data, but no longer does.
You should NOT see this page as access should be blocked.

  • ZZ Payroll Processing

Next the LSA assigns one of the new garnishment roles shown at the top of this guide to "unlock" access to this page.  Navigate to this page again, where the data is now visible without masking.

Expand or collapse content Review Paycheck

Navigation: Main Menu>Payroll for North America>Payroll Processing USA>Produce Payroll>Review Paycheck

The section will not be visible to a user without the assignment of one of the garnishment roles listed above being assigned to their User Profile.

To Verify Garnishment Data Does Not Appear: 
Navigate to this page using one of these existing security roles that used to grant access to garnishment data, but no longer does.
You should NOT see this page, as access should be blocked.

  • ZZ Payroll Processing
  • ZD Benefits Employee Data Inq
  • ZD Payroll Inquiry

Next the LSA assigns one of the new garnishment roles shown at the top of this guide to "unlock" access to this page.  Navigate to this page again, where the data is now visible without masking.

Expand or collapse content By Payline Security

Navigation: Main Menu>Payroll for North America>Payroll Processing USA>Update Paysheets>By Payline Security

The tab will not be visible to a user without the assignment of one of the garnishment roles listed above being assigned to their User Profile.

To Verify Garnishment Data Does Not Appear: 
Navigate to this page (tab) using one of these existing security roles that used to grant access to garnishment data, but no longer does.
You should NOT see this tab, but should see the rest of the tabs that are not garnishment related, as access to only the garnishment data should be blocked.

  • ZD Payroll Data Maintenance
  • ZZ Payroll Data Maintenance
  • ZC Payroll Data Maintenance
  • ZD Payroll Inquiry
  • ZZ SS Payroll

Next the LSA assigns one of the new garnishment roles shown at the top of this guide to "unlock" access to this page.  Navigate to this page again, where the data is now visible without masking.

Expand or collapse content By Paysheet

Navigation: Main Menu>Payroll for North America>Payroll Processing USA>Update Paysheets>By Paysheet

The tab will not be visible to a user without the assignment of one of the garnishment roles listed above being assigned to their User Profile.

To Verify Garnishment Data Does Not Appear: 
Navigate to this page using one of these existing security roles that used to grant access to garnishment data, but no longer does. 
You should NOT see this page as access should be blocked.

  • ZC Payroll Data Maintenance
  • ZD Payroll Data Maintenance
  • ZZ Payroll Data Maintenance
  • ZZ Payroll Processing
  • ZZ SS Payroll

Next the LSA assigns one of the new garnishment roles shown at the top of this guide to "unlock" access to this page.  Navigate to this page again, where the data is now visible without masking.

Expand or collapse content Balance Adjustments > Garnishments

Navigation: Main Menu>Payroll for North America>Periodic Payroll Events USA>Balance Adjustments>Garnishments

The page will not be visible to a user without the assignment of one of the garnishment roles listed above being assigned to their User Profile.

To Verify Garnishment Data Does Not Appear: 
Navigate to this page using one of these existing security roles that used to grant access to garnishment data, but no longer does. 
You should NOT see this page as access should be blocked.

  • ZC Payroll Data Maintenance
  • ZD Payroll Data Maintenance
  • ZZ Payroll Data Maintenance
  • ZZ Payroll Processing
  • ZZ SS Payroll

Next the LSA assigns one of the new garnishment roles shown at the top of this guide to "unlock" access to this page.  Navigate to this page again, where the data is now visible without masking.

Expand or collapse content Balance Reviews > Garnishments

Navigation: Main Menu>Payroll for North America>Periodic Payroll Events USA>Balance Reviews>Garnishments

The page will not be visible to a user without the assignment of one of the garnishment roles listed above being assigned to their User Profile.

To Verify Garnishment Data Does Not Appear: 
Navigate to this page using one of these existing security roles that used to grant access to garnishment data, but no longer does.
You should NOT see this page as access should be blocked.

  • ZC Payroll Data Maintenance
  • ZD Payroll Data Maintenance
  • ZZ Payroll Data Maintenance
  • ZD_PY_REVIEW_PAY_BALANCES
  • ZZ Payroll Processing

Next the LSA assigns one of the new garnishment roles shown at the top of this guide to "unlock" access to this page.  Navigate to this page again, where the data is now visible without masking.

0 Comments

Add your comment

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.