Skip to main content
Administrator Guide
Last Updated: 2026-08-07
Set Up Workday Security Policies for Zero-Copy Data In

Set Up Workday Security Policies for Zero-Copy Data In

Security:
  • Set Up: Assignable Roles
    domain in the Organizations and Roles functional area.
  • These security domains in the Prism Analytics functional area:
    • External Catalog Create
      : Controls who can create a Catalog.
    • External Catalog Manage
      : Controls who can edit a catalog, including access to view existing catalogs, edit catalog metadata, and delete catalogs.
    • External Catalog Owner Manage
      : Controls who can perform specific catalog operations, such as sharing the table with other users and syncing the catalog.
    • External Tables Manage
      : Controls who can edit a table, including viewing the table and metadata, editing table metadata, and enabling or disabling for analysis.
    • External Tables Owner Manage
      : Controls who can perform specific table operations, such as sharing the table with other users.
    • Prism: Manage Connection:
      Controls who can create a connection.
Domain security policies secure access to configurable items in Workday. Configure the assignable roles for the Data In security domains, and set up the security policy for each of the prerequisite security domains.
  1. Access the
    Maintain Assignable Roles
    task.
  2. In the
    Maintain Assignable Roles
    grid, add rows for each of these role names, with their corresponding role assignment values:
    Role Name
    Workday Role
    Enabled for
    Self-Assign
    Is Leader / Is Supporting
    Role Assignees Restricted To
    Assigned/Reviewed By Security Groups
    External Table Editor
    02. External Table Editor - Prism
    Prism External Table
    Leave the box unchecked
    None of the Above
    • Accountant (Unconstrained)
    • Data Analyst
    • Data Administrator
    • Prism External Table Owner (Workday Owned)
    • Prism Table Owner (Workday Owned)
    External Table Owner
    01. External Table Owner - Prism
    Prism External Table
    Select the check box
    Is Leader
    Leave blank
    • Data Administrator
    • Prism External Table Owner (Workday Owned)
    • Prism Table Owner (Workday Owned)
    External Table View
    03. External Table Viewer - Prism
    Prism External Table
    Leave the box unchecked
    None of the Above
    • Accountant (Unconstrained)
    • Data Analyst
    • Data Administrator
    • Prism External Table Owner (Workday Owned)
    • Prism Table Owner (Workday Owned)
  3. Edit the security policy for each required security domain. Repeat the substeps below for each security domain in the table.
    1. In the Search box, enter domain: <security domain name>. Example: domain:
      External Catalog Create
      .
    2. On the View Domain report, select Domain > Edit Security Policy Permissions from the related actions menu of the domain. For each of the security domains in this table, add the security groups and their corresponding permissions:
      Security Domain
      Report/Task Permissions Security Groups
      Report/Task Permissions
      Integration Permissions
      Integration Permissions Security Groups
      External Catalog Create
      View and Modify for Prism: Tables Owner Manage
      View
      Modify
      Get and Put for Prism: Tables Manage
      Get
      Put
      External Catalog Manage
      View Only for Prism: Tables Manage
      View
      Get and Put for Prism: Tables Manage
      Get
      Put
      View and Modify for Prism: Tables Manage
      View
      Modify
      Get and Put for Prism: Tables Manage
      Get
      Put
      External Catalog Owner Manage
      View and Modify for Prism: Tables Owner Manage
      View
      Modify
      Get and Put for Prism: Tables Manage
      Get
      Put
      External Tables Manage
      View Only for Prism: Tables Manage
      View
      Get and Put for Prism: Tables Manage
      Get
      Put
      View and Modify for Prism: Tables Manage
      View
      Modify
      Get and Put for Prism: Tables Manage
      Get
      Put
      External Tables Owner Manage
      View and Modify for Prism: Tables Owner Manage
      View
      Modify
      Get and Put for Prism: Tables Manage
      Get
      Put
    3. Click
      OK
      .
      The
      Edit Domain Security Policy Permissions
      page displays the updated configuration.
    4. Click
      Done
      .
  4. Access the
    Activate Pending Security Policy Changes
    task.
    1. Describe your changes in the
      Comment
      field.
    2. Click
      OK
      .
    3. Select the
      Confirm
      check box to activate your changes.
      The
      View All Security Timestamps
      report displays the confirmation.
    4. Click
      OK
      .
Your Data In security domain policies have been updated and activated.