Administrator Access and Permissions: Overview

Administrator Access allows organizations to securely delegate Control Panel access to authorized employees without making them the Super User. Depending on their responsibilities, administrators can be granted access to one or more modules, or their permissions can be restricted to specific Locations, Legal Entities, or Business Units.

This feature enables organizations to distribute administrative responsibilities across HR teams, department heads, regional administrators, and payroll teams while maintaining appropriate access controls and data security.

Administrator permissions are assigned independently of the organization's reporting hierarchy. The Super User, however, is always determined by the employee at the top of the organizational hierarchy.

Purpose

The Administrator Access feature helps organizations:

  • Delegate administrative responsibilities to authorized employees.
  • Control access to specific modules within the Control Panel.
  • Restrict administrator access based on organizational structure.
  • Improve security by granting only the permissions required for a user's role.
  • Distribute administrative responsibilities across multiple teams without providing unrestricted system access.

Who Should Use

Authorized Administrators

Authorized administrators can:

  • Grant or revoke administrator permissions.
  • Configure module-level administrative access.
  • Restrict administrator access by Location, Legal Entity, or Business Unit (where applicable).
  • Review and manage existing administrator permissions.

HR Leaders

HR Heads and senior HR team members can use administrator permissions to delegate operational responsibilities while maintaining centralized governance.

IT and System Administrators

IT administrators can configure secure administrative access based on organizational policies and ensure users receive only the permissions required for their responsibilities.

When to Use

The Administrator Access feature is commonly used when:

  • A senior HR team member requires access to manage employees or system configurations.
  • Payroll responsibilities need to be delegated without providing access to all modules.
  • Regional or branch administrators should manage only employees belonging to their assigned locations.
  • Organizations operate with multiple Legal Entities or Business Units and require controlled administrative access.
  • Administrative responsibilities need to be shared across multiple employees while maintaining data security.

Workflow and Guides

1. Configuration

Configure administrator permissions before assigning access to users.

Article Description
Grant Administrator Access Learn how to assign administrator permissions to an employee and control access to one or more modules.

2. Restricting Administrator Access

Restrict administrator access based on your organization's structure.

Article Description
Restrict Administrator Access by Location Allow administrators to manage employees belonging only to selected locations.
Restrict Administrator Access by Legal Entity Restrict administrator access to employees belonging to one or more legal entities.
Restrict Administrator Access by Business Unit Assign administrator permissions for specific business units or operational divisions.

3. Understanding Administrator Permissions

Understand how administrator permissions work and how they differ from the organizational hierarchy.

Article Description
Understanding Super User and Administrator Access Learn how the Super User is determined, how it differs from administrator permissions, and how different organizational structures are handled.

4. Best Practices

Follow recommended practices for secure administration.

Article Description
Administrator Permission Best Practices Learn recommended practices for assigning, reviewing, and managing administrator permissions securely.

5. Troubleshooting

Resolve common administrator access issues.

Article Description
Troubleshooting Administrator Access Issues Find solutions for common issues related to administrator permissions, visibility, and Control Panel access.

Where It Reflects

Administrator permissions determine what an administrator can access within the Control Panel.

Depending on the permissions assigned, administrators may be able to:

  • Access selected modules within the Control Panel.
  • View and manage employees based on assigned Locations, Legal Entities, or Business Units.
  • Perform administrative actions only within the scope of their assigned permissions.
  • Configure settings and manage operational activities for the modules they have access to.

Changes to administrator permissions take effect immediately. However, administrators may be required to log out and log back in for updated permissions to be reflected consistently across the application.

FAQ

Administrator Access allows authorized employees to access the Control Panel and manage selected modules based on the permissions assigned to them.

Only users with the necessary administrative rights to manage Security Settings can grant or modify administrator permissions.

Yes. Multiple employees can be granted administrator permissions based on business requirements.

Yes. Organizations using the applicable enterprise features can restrict administrator permissions by Location, Legal Entity, or Business Unit.

A Super User is automatically determined by the organization's reporting hierarchy and has complete administrative access by default.

An Administrator is granted administrative permissions manually and can have full or restricted access depending on the permissions assigned.

  • Super User/ Admin cannot be deleted
  • An admin cannot edit/ delete Super Admin's details

No. Administrator permissions and the reporting hierarchy are independent of each other. Assigning administrator permissions does not affect employee reporting relationships.

No.

There can be only one Super User / Super Admin in an account at any given time. The Super User is automatically determined by the organization's reporting hierarchy and always represents the employee at the highest level of that hierarchy.

Yes. Organizations can create multiple Administrators and assign permissions based on their responsibilities. Administrator access can also be restricted by module, Location, Legal Entity or Business Unit.