Employee Central Permissions
The role-based permission framework is vast and encompasses permissions for all SAP SuccessFactors solutions. For this course, we'll focus on the common permissions for Employee Central.
Note
The permissions mentioned in this section are not the complete list used in Employee Central. Additional Resources are included at the end of this unit.Permission Roles control the access permissions in the system and define the overall access to data and application functionality. To create and manage permission roles, complete the following steps:
1. Choose Manage Permission Roles.
2. Use Create to add a new role or use the menu in the Actions column to manage the existing roles.
3. Select next to manage the permissions for the role.
Managers and employees in EC use the following permission categories: Employee Data, Employee Central Effective Dated Entities, and Employee Views. Customers who use custom fields in these categories must also receive permissions for the relevant roles.
In this lesson, we will cover the following permissions:
- Employee Views
- Employee Central Effective-Dated Entities
- Employee Data
- Employee Central Import Entities
- Manage Foundation Object Types
- Manage Foundation Objects
- MDF Foundation Objects
Employee Views
The Employee Views permission defines whether you can see the sections configured in People Profile. This permission is only visible once People Profile has been initially configured during the implementation. Relevant Employee Central sections include:
- Personal Information
- Employment Information
- Total Rewards
Employee Central Effective-Dated Entities
The Employee Central Effective-Dated Entities permission grants field-level access for effective-dated elements and fields. These objects can keep track of historical and future changes. This permission is only available when the succession data models have been initially uploaded during implementation. Employee Central comes with standard effective dated elements, such as the following:
- Personal Information (personalInfo)
- Addresses (homeAddress)
- Dependents (personRelationshipInfo)
- Job Information (jobInfo)
- Compensation Information (compInfo)
- Job Relationships (jobRelationsInfo)
There are several layers of permission to consider when you grant permissions to effective-dated blocks. The first layer is the basic understanding of the different field permission types, such as View Current, View History, Edit/Insert, Correct, and Delete.
Additionally, there are permissions for button options when you want to view and edit data. This section will detail the differences between each of the following permission:
- Block Actions Permissions,
- Edit (Pencil) Link Permissions,
- Field Level Permissions
Block Actions Permissions
Block Actions control the user access level to the effective-dated block overall and block buttons.
Permissions | Description |
---|---|
View Current | Makes the block visible in the profile |
View History | Makes the clock icon appear and allows access to history window |
Edit/Insert | Allows the use of the Insert New Record button in the history window |
Correct | Allows the use of the Edit button in the history window |
Delete | Allows the use of the Delete button in the history window |
Note
Having Edit/Insert available allows someone to bypass event reason derivation and workflows. This does not make the Edit (pencil icon) button appear on the block.
Edit (Pencil) Link Permission

The Edit Link controls whether the Edit (pencil icon) function is available on the block for the users. The only level of access that matters is the Edit/Insert. The rest are ignored.
The permission allows the users to open and edit the block to initiate transactions in People Profile.
You can also perform the edit action from the Actions Menu in People Profile. Just add the Update Employment Records permission as seen on the screenshot.

Field-Level Permissions

Field-level permissions control each field’s specific ability to be maintained. Each field can be controlled on its level of visibility and editability.
Permission Level | Description |
---|---|
View Current | View current value of the field |
View History | View historical values of the field if accessed in the History view of the block |
Edit/Insert | Update the value of the field using Insert New Record in the History view of the block (allows updating a field when creating a new record) |
Correct | Update the value of the field using the Correct Button, which is available in the History view |
Delete | Not applicable to individual fields, entire records are deleted |
Employee Data Permissions
The permissions for non effective-dated entities are in a separate category, the Employee Data permissions.
Use the interaction below to learn the relevant Employee Data permissions used in Employee Central.
Employee Central Import Entities
This allows you to perform or restrict imports to Person and Employment objects.
Manage Foundation Object Types
These are admin permissions that define the actions allowed for XML-based corporate data found in Manage Organization, Pay, and Job Structures. This permission is only available when the Corporate Data models have been initially uploaded during implementation.
Manage Foundation Objects
This enables the admin permissions that set the actions for importing foundation data, translations, and corporate data models.
MDF Foundation Objects
This sets the admin permissions that define the actions allowed for MDF-based corporate data.