OrangeHRM is designed in such a way that an organization can empower users based on their Roles. The system consists of three pre-defined Roles as described below.
- Global / Default Admin: has access to all the modules in the system and can view/access all employee information within the system working in multiple locations/regions of the organization (Regional access configuration is available only in OrangeHRM Enterprise system)
- Default Supervisor: this profile allows access to self-service as well as direct reports information.
As a default setting, the accessibility privileges are configured for the Default Supervisor and Default ESS roles
Default User Role - Supervisor
Default User Role - ESS
Data Group Permissions can be edited only by a Global Admin for Default ESS and Default Supervisor if needed. However, Workflow permissions are uneditable for the default user roles.
Refer to how to add supervisor/subordinator How to add/remove supervisors/subordinates. In addition to the default user roles, an organization has the privilege of creating custom user roles as well.
The User Roles section enables the Global Admin to create custom user roles with configurable privileges and manage employee data across multiple modules, manage the workflows of various processes in the organization, and assign these User Roles specific to regions.
The default user role types (ESS, Supervisor, and Global Admin) can not be changed or edited. You may create your own custom user role to cater to your organizational requirements by following the below-mentioned steps on Add User Role page
To view the User Role list, go to HR Admininistration > Manage User Roles and you will be taken to the below page.
Add User Role
Custom user roles are created based on the default user roles available. To add a custom user role;
Step 1 – Click on the ‘Add’ button on the user roles page. Then the Add User Role screen will appear.
Step 2 – Select the type of user role you want to create. (Admin, ESS, Supervisor)
Fill out the options in the form depending on your requirements.
Step 3 – Complete the following fields.
Field |
Description |
User Role name |
Desired name for the new user role |
Add Employee |
Allows the user to add employees to the system |
Delete Employee |
Allows the user to delete employees from the system |
Terminate employee |
Allows the user to terminate employees |
Workflow Management |
Select the workflow management options the user should be privileged to. Workflow management refers to the admin privileges related to actions in the system. Ex: As a standard practice, A supervisor has to approve a requested leave. However, an admin user with ‘Leave workflow’ access privilege may also approve the said request as well. |
Data Group Permissions |
|
HR Admininistration |
Select the sections and level of access in the admin module the user with the user role needs access to. |
Employee Management |
Select the sections and level of access in the EM module the user with the user role needs access to. E.g. A user is capable of accessing the EM employee profile yet salary information will still not be visible. This configuration can be done from the EM data group permissions. |
Advanced Training |
Defines what actions and information are available for the user in the training module. E.g. A user capable of taking reports out of the module yet not editing any course content added. |
Onboarding |
Defines what actions and information are available for the user in the onboarding module. E.g. A user that creates onboarding tasks, and assigns employees to them but can not delete any of the items. |
Asset |
Defines what actions and information are available for the user in the assets module. |
Discipline |
Defines what actions and information are available for the user in the discipline module. E.g. A user that can view disciplinary cases in the system but can not create any. |
Step 4 – Select Data Group Permissions. Click each category to expand. You can decide the level of permission.
In the screenshot above, the User Role is configured so that the user can only view it in the Asset Tracker. The user will not be able to Add, Delete or Edit data in the plugin.
Step 5 – Click ‘Save.’