Skip to main content
Administrator Guide
Last Updated: 2026-07-10
Create Integration System Security Group for Time Kiosk

Create Integration System Security Group for Time Kiosk

You can create an integration system security group (ISSG) for the Workday Time Kiosk. You can then assign the integration system user (ISU) to the ISSG so that your ISU has permissions to access the required integrations.
  1. Access the
    Create Security Group
    task.
  2. Complete the task:
    Option Description
    Type of Tenanted Security Group
    Select
    Integration System Security Group (Unconstrained)
    .
    Name
    We recommend that you choose a name that identifies or references the app. Example: Time Kiosk Security Group.
  3. Click
    OK
    .
  4. From the
    Integration System Users
    prompt, select
    ISU_WD_Time_Clock
    .
  5. Click
    OK
    .
  6. From the related actions menu of the new ISSG, select
    Security Group
    Maintain Domain Permission for Security Group
    .
  7. Complete the task:
    Option Description
    Domain Security Policies permitting Modify access
    Select:
    • Manage: Time Kiosk
    • Process: Time Clock Event REST API’s
    Domain Security Policies permitting View access
    Select:
    • Worker Data: All Positions
    • Worker Data: Current Staffing Information
    • Worker Data: Public Worker Reports
    • Worker Data: Time Calendar
    • Worker Data: Time Tracking
    Domain Security Policies permitting Put access
    Select
    Process: Time Clock Integration
    .
  8. Click
    OK
    .
  9. Ensure Workday displays the
    Process: Time Clock Event REST API’s
    domain in the
    Report/Task Permissions
    section with Modify access.
  10. Click
    Done
    .
  11. (Optional) Edit Domain Security Policies.
    You can configure the security policy when Workday doesn't display the domain with Modify access.
    1. From the
      Functional Area
      prompt, select
      Time Tracking
      .
    2. Select the
      Process: Time Clock Event REST API’s
      domain.
    3. Click
      Edit Permissions
      .
    4. Enable Modify access for the ISSG.
  12. Activate Pending Security Policy Changes.
Workday assigns the SU_WD_Time_Clock ISU to the new ISSG.
Set up the Workday Time Kiosk app.