Skip to main content

How to view/edit security restrictions for Mobile Employee Experience users

Mobile Employee Experience (MEE) users who have a User Type of <External Employee> or <External Employee Delegate> are automatically granted the “Equus - Employee Experience” security role

Updated over 2 weeks ago

Mobile Employee Experience (MEE) users who have a User Type of <External Employee> or <External Employee Delegate> are automatically granted the “Equus - Employee Experience” security role when the MEE is set to active.

To view the security role which comprises of Data Sensitivity Access and Field Decryption Rights navigate to the Employee Experience Configuration screen, click the

show_advanced_settings_button.png

button and click on the Security Role Maintenance hyperlink.

Note - the Security Role Maintenance hyperlink does not display immediately after activating the MEE. For this to display, refresh the system cache or navigate away from the screen, then re-open the screen.

employee_experience_config_screen.png

employee_experience_config_sec_role_maint.png

Click the hyperlink to navigate to the Security Role Maintenance screen for the "Equus - Employee Experience” security role. Note - this security role cannot be accessed directly from the Role Maintenance screen at the Configuration Level.

Data Sensitivity Access

Allows administrators to govern whether employees can see documents with a specific Document Type.

Default Access Type: Identifies the default access to Document Types.

  • If <Grant> is selected, Document Types identified as exceptions will not be visible to MEE users

  • If <Deny> is selected, Document Types identified as exceptions will be visible to MEE users.

Exceptions: Identifies the Document Type(s) that are shown or hidden based on the Data Sensitivity Category. If no Exceptions are shown, click

new_button.png

to add a new row to the Exceptions grid to add a Data Sensitivity Category from the drop down list.

employee_experience_config_sec_role_maint_screen.png

Field Decryption Rights

Allows administrators to govern whether employees can see values within encrypted fields.

Decrypt: When checked, then the actual value will be shown to MEE users. When NOT checked, MEE users see (Encrypted) in place of the actual value.

employee_experience_config_sec_role_maint_screen_field_privacy.png

Below is an example of encrypting the City of Birth field for the employee:

encrypted_field_example_MEE.png
Did this answer your question?