Use Case: Create Security Groups
Audience
Administrators in these roles who are responsible for carrying out each step of the process for configuring and maintaining security group membership in Workday:
- Security Administrators
- Security Configurators
Prerequisites
Security: The
Security Configuration
domain in the System functional area.Overview
You can organize security groups around shared characteristics like user types, roles, and organizations. You then use security policies to grant those groups access to domains and business processes, which secure and organize tasks, data sources, reports, and business process steps. At the highest level, domains and business processes are organized by functional area.
While you can edit domain or business process security policies to assign different groups and change their item access, many domains only allow specific groups to be secured to related policies.
Before you create a security group, you should consider such factors as whether a group already exists, what type of group you’re looking to create, and how you want to constrain that group in your tenant.
This use case provides an example of how to configure a security group. While your process might look different from the one outlined here, this use case offers guidance for determining the membership and restrictions of a new security group.

Impacted Product Areas
Data Access Security (also known as Configurable Security)
Workday Documentation Resources
For more information about security group configuration, see: