Security Domains
Fivetran requires the following security domains to sync the corresponding tables:
HUMAN_RESOURCE domain
Expand for the list of security domains
| Table Name | Security Domain (s) |
|---|---|
| ETHINICTY | Set Up: Contact Info, IDs, and Personal Data |
| GENDER_IDENTITY | Set Up: Contact Info, IDs, and Personal Data |
| JOB_CLASSIFICATION_GROUP | Job Information |
| JOB_FAMILY | Job Information |
| JOB_FAMILY_GROUP | Job Information |
| JOB_PROFILE | Job Information |
| LGBT_IDENTIFICATION | Set Up: Contact Info, IDs, and Personal Data |
| LOCATION | Manage: Location |
| ORGANIZATION | Manage: Organization Integration |
| PRONOUN | Set Up: Contact Info, IDs, and Personal Data |
| QUALIFICATION_CERTIFICATION | Self Service: Skills and Experience Worker: Skills and Experience |
| QUALIFICATION_EDUCATION | Self Service: Skills and Experience Worker: Skills and Experience |
| QUALIFICATION_JOB_HISTORY_ACHIEVEMENT | Self Service: Skills and Experience Worker: Skills and Experience |
| QUALIFICATION_LANGUAGE | Self Service: Skills and Experience Worker: Skills and Experience |
| QUALIFICATION_TRAINING | Self Service: Skills and Experience Worker: Skills and Experience |
| QUALIFICATION_WORK_EXPERIENCE | Self Service: Skills and Experience Worker: Skills and Experience |
| SEXUAL_ORIENTATION | Set Up: Contact Info, IDs, and Personal Data |
| WORKER | Worker Data: Public Worker Reports Workday Usage Metrics |
| WORKER_ALLOWANCE_PLAN | Self Service: Compensation Worker Data: Compensation by Organization |
| WORKER_BONUS_PLAN | Self Service: Compensation Worker Data: Compensation by Organization |
| WORKER_COMMISSION_PLAN | Self Service: Compensation Worker Data: Compensation by Organization |
| WORKER_EVENT | Worker Data: Historical Staffing Information |
| WORKER_HISTORY | Worker Data: Public Worker Reports Workday Usage Metrics |
| WORKER_MERIT_PLAN | Self Service: Compensation Worker Data: Compensation by Organization |
| WORKER_POSITION | Self-Service: Current Staffing Information Worker Data: Current Staffing Information |
| WORKER_SALARY_AND_HOURLY | Self Service: Compensation Worker Data: Compensation by Organization |
| WORKER_STATUS | Self-Service: Current Staffing Information Worker Data: Current Staffing Information |
| WORKER_STOCK_PLAN | Self Service: Compensation Worker Data: Compensation by Organization |
The WORKER and WORKER_HISTORY tables include several columns that require additional security domains beyond Worker Data: Public Worker Reports. If the Integration System User (ISU) lacks a required domain, Workday silently returns null for the affected columns - no error is raised.
| Affected columns | Required security domain(s) |
|---|---|
contract_pay_rate, contract_end_date, and related contract columns | Self-Service: Current Staffing Information Worker Data: Current Staffing Information |
employee_compensation_*, annual_summary_*, annual_currency_summary_*, compensation_grade_id, and related compensation columns | Self Service: Compensation Worker Data: Compensation by Organization |
PAYROLL domain
Expand for the list of security domains
| Table Name | Security Domain (s) |
|---|---|
| PAYROLL | Reports: Pay Calculation Results for Worker (Results) |
| WORKER_COSTING_ALLOCATION | Worker Data: Payroll (Costing Override) Worker Data: Payroll Interface (Costing Overrides) |
TALENT domain
Expand for the list of security domains
| Table Name | Security Domain (s) |
|---|---|
| ASSESS_TALENT | Worker Data: Talent |
| CALIBRATION_PROGRAM | Set Up: Calibration |
| TALENT_POOL | Set Up: Talent |
LEARNING domain
Expand for the list of security domains
| Table Name | Security Domain (s) |
|---|---|
| LEARNING_COURSE_OFFERING | Set Up: Learning Catalog Manage: Learning Content |
| LEARNING_ENROLLMENT | Reports: Learning Record |
| LEARNING_LESSON | Set Up: Learning Catalog Manage: Learning Content |
ABSENCE domain
Expand for the list of security domains
| Table Name | Security Domain (s) |
|---|---|
| ABSENCE_INPUT | Worker Data: Time Off (Accrual and Time Off Adjustments/Overrides by Batch ID). |
| CARRYOVER_OVERRIDE | Worker Data: Time Off (Time Off Balances) |
| OVERRIDE_BALANCE | Worker Data: Time Off (Time Off Balances) |
| TIME_OFF_PLAN_BALANCE | Worker Data: Time Off (Time Off Balances) |
RECRUITING domain
Expand for the list of security domains
| Table Name | Security Domain (s) |
|---|---|
| ADDRESS | My Contact Information Worker Private Contact Information Applicant Data: Contact Information |
| CANDIDATE | Prospects Candidate Data: Job Application |
| EXTERNAL_REFERENCE_LINE | Manage: External References |
| INTERVIEW | Candidate Data: Interview Schedule |
| INTERVIEW_FEEDBACK | Candidate Data: Interview Feedback Results* Self-Service: Give Interview Feedback |
| JOB_REQUISITION | Job Requisition Data Manage: Evergreen Requisitions |
| MILITARY_SERVICE | Military/Citizenship for Worker |
| PERSON_CONTACT_PHONE | My Contact Information Worker Private Contact Information Applicant Data: Contact Information |
| PERSON_DISABILITY | Person Data: Disabilities |
| PERSON_IDENTITY_DOCUMENT | My ID Information Worker ID Information Applicant Personal Data: ID Information |
| PERSON_IDENTITY_EMAIL_ADDRESS | My Contact Information Worker Private Contact Information Applicant Data: Contact Information |
| PRE_HIRE | Manage Pre-Hire Process: Manage Pre-Hires |
| PRE_HIRE_POSITIONS_CONSIDERED | Manage Recruiting: Consider Applicants |
| PRE_HIRE_REFERRED_BY_WORKER | Manage Recruiting: Consider Applicants |
| QUESTIONNAIRE | Questionnaire Creation and Distribution* |
| WEB_ADDRESS | My Contact Information Worker Private Contact Information Applicant Data: Contact Information |
The PRE_HIRE table includes several columns that require additional security domains beyond Manage Pre-Hire Process: Manage Pre-Hires. If the Integration System User (ISU) lacks a required domain, Workday silently returns null for the affected columns - no error is raised.
| Affected columns | Required security domain(s) |
|---|---|
entered_date, comments, eligible_for_rehire, source_code | Manage Recruiting: Consider Applicants |
COMPENSATION domain
Expand for the list of security domains
| Table Name | Security Domain (s) |
|---|---|
| BENCHMARK_JOB | Set Up: Benchmark Jobs* |
| COMPENSATION_ELIGIBILITY_RULE | Set Up: Compensation |
| COMPENSATION_GRADE | Set Up: Compensation Packages |
| COMPENSATION_STEP | Set Up: Compensation Packages |
| COMPENSATION_MATRIX | Set Up: Merit and Bonus* |
| COMPENSATION_PLAN | Set Up: Compensation |
| SCORECARD | Set Up: Merit and Bonus* |
PERFORMANCE_MANAGEMENT domain
Expand for the list of security domains
| Table Name | Security Domain (s) |
|---|---|
| EMPLOYEE_REVIEW | Set Up: Employee Reviews |
| REVIEW_QUESTION | Set Up: Employee Reviews |
| REVIEW_QUESTION_CATEGORY | Set Up: Employee Reviews |
| REVIEW_TYPE | Set Up: Employee Reviews |
STAFFING domain
Expand for the list of security domains
| Table Name | Security Domain (s) |
|---|---|
| POSITION | Worker Data: All Positions |
TIME_TRACKING domain
Expand for the list of security domains
| Table Name | Security Domain (s) |
|---|---|
| CALCULATED_TIME_BLOCK | Process: Export Time Blocks |
For the security domains marked with *, if you are not able to find these security domains when searching in the Domain Security Policies permitting Get access field, then search for the security domain in the Search Bar (under Security section) and add the Security Group that you created to the Domain Security Policy by Edit Domain Security Policy Permissions and allowing Integration Permissions Get Access.
The security domains listed above apply to the parent table (as mentioned) and all of its child tables. Refer to the ERD to identify all child tables associated with the parent table.
If the listed security domains above do not work, identify the required security domains by searching for table names using the View Security for Securable Item task. Look for the GET request for the object and configure the associated domains accordingly in the Workday tenant.