Skip to main content
Administrator Guide
Last Updated: 2023-06-23
Steps: Set Up Candidate Security

Steps: Set Up Candidate Security

Set up candidate security so you can determine who can view candidate information and perform candidate-related actions. You can also enable self-service access for candidates by configuring the
Candidate as Self
security group.
You can also enable domain access for these security groups to provide them with candidate information:
  • Active Interviewer
  • Interviewer
  • Candidate Share
You can't view the members of these security groups. You can only test to determine if a given user is a member of these groups. Additionally, you can't remove users from these security groups.
Workday automatically assigns interviewers of a job application to the
Active Interviewer
security group.
Active Interviewer
members have access to the candidate that they’re interviewing for as long as the Interview event is in progress. If you want interviewers to always have access to the information of their candidate, you can configure domain access for the
Interviewer
security group instead.
When a recruiter shares a candidate, Workday automatically assigns the recruiter that receives the shared candidate to the
Candidate Share
security group.
  1. Edit Domain Security Policies.
    Configure the security policy for these domains in the Recruiting functional area:
    Domain
    Controls Access To
    Candidate: Global Search
    Candidate information accessed in global search.
    Candidate Communication
    All communications sent to a candidate.
    Candidate Data: Edit Job Application
    Edit job application information for candidates.
    Candidate Data: Employee Referrals
    Referral management-related tasks and reports.
    Candidate Merge
    View and merge duplicate candidates.
    Invite to Apply
    Invite candidates to apply to job requisitions.
    Manage: Candidates
    Candidate status tasks.
    Configure these super domains, or their subdomains, in the Recruiting functional area:
    Domain
    Controls Access To
    Candidate Data: Job Application
    Candidate job application with details such as assessment results, language skills, and interview feedback.
    Candidate Data: Other Information
    Additional candidate data such as attachments on the Candidate Profile through the
    Candidate Data: Attachment
    subdomain.
    Candidate Data: Personal Information
    Personal information that candidates can submit either with their applications or during the
    Job Application
    business process. The information is often highly sensitive. Includes access to the Personal Information tab on the Candidate profile page.
    Candidate Reporting
    Recruiting standard reports data.
    Move Candidate
    View and move candidates.
    Prospects
    Prospect tasks, reports, and profiles.
    Self-Service: Recruiting Personal
    Personal notes for candidates as well as contacts, prospects, and candidates linked to a job requisition.
    If a candidate has a worker record, configure the security policies for these super domains in the Staffing functional area:
    Domain
    Controls Access To
    Person Data: Home Contact Information
    Contact information of the candidate, including contact information marked as private.
    Person Data: Work Contact Information
    Work contact information of the candidate.
  2. Configure permissions for these security groups:
    • Candidate as Self
    • (Optional)
      Active Interviewer
    • (Optional)
      Interviewer
    • (Optional)
      Candidate Share
  3. Configure access to questionnaire response context security segments.
  4. Activate Pending Security Policy Changes.
Set up job applications and configure internal and external career sites so candidates can apply for jobs.