Skip to main content
Administrator Guide
Last Updated: 2025-03-14
Create an Integration System User (ISU) for Engagements

Create an Integration System User (ISU) for Engagements

Security:
  • Administer Campaigns
    domain in the Learning Core and System functional areas.
  • Indexed Data Source: Workers
    domain in the Staffing functional area.
  • Manage: Extended Enterprise
    domain in the Extended Enterprise for Learning functional area.
Workday uses ISUs to run engagements. You can use the same ISU and ISSG for each engagement.
Engagement Builder runs using an ISU for security evaluation, which relies on data source and report field access to resolve the targeted audience.
For example, if your engagement targets an audience that uses a report field containing sensitive information, the Integration System Security Group (ISSG) must have the required security permissions to enable the ISU to access that field. If the ISU does not have appropriate access, the audience won’t resolve and the engagement won’t run.
It’s crucial to confirm that your ISSG is configured to access all necessary report fields and security domains. Regularly review and update your ISSG configuration to include access to any new report fields. If your ISSG does not have the required access, an error is logged in the engagement run log. See Concept: Manage an Engagement.
The ISU’s time zone doesn’t affect the timing of audience evaluation.
  1. Access the
    Create Integration System User
    task to create an ISU.
  2. Access the
    Create Security Group
    task.
    As you complete the task, consider:
    Field
    Value
    Type of Tenanted Security Group
    Select
    Integration System Security Group (Unconstrained)
    .
    Name
    Workday recommends using
    Campeng System Security Group
    .
    On the
    Edit Integration System Security Group (Unconstrained)
    section, enter the name of your ISU in the
    Integration System Users
    field.
  3. Access the
    Maintain Permissions for Security Group
    task.
    Select
    Campeng System Security Group
    on the
    Source Security Group
    prompt.
    As you complete the task, consider:
    View/Modify Access
    Domain Security Policy
    Get and Put
    Administer Campaigns
    View and Modify
    Administer Campaigns
    Get and Put
    Indexed Data Source: Workers
    View and Modify
    Indexed Data Source: Workers
    Get and Put
    Manage: Extended Enterprise
    View and Modify
    Manage: Extended Enterprise
    View Only
    Worker Data: Contingent Worker Assignment Details
    Worker Data: Current Job Profile Information
    Worker Data: Current Staffing Information
  4. Activate Pending Security Policy Changes.
Workday assigns your ISU to the
Campeng System Security Group
ISSG. You can select the ISU to run your engagement.