...
Managing sensitive data effectively is crucial for maintaining data security and privacy within Upvise. The below information can help minimise the risk of unauthorized access to sensitive information.
1. Review Employee Contact Information
Employee personal contact information can be captured in a form attached to their contact record in Upvise. This may include, but is not limited to, the following types of data which may be considered sensitive to the employee:
Residential Address
Personal Mobile Number (if they have a business phone)
.Personal Email Address
Emergency Contact Information
Licenses and Certificates
...
Examples of Employee-related Data
Employee contact data is not auto-created in Workbench from your financial systems, giving you control over the data input into Workbench, and then synced across to upvise. It is recommended that you consider the data you want to store in upvise and make available to your different users. Some examples of data that you may consider reviewing are:
Emergency Contact Information
Onboarding Details
Training Records
Assigned Assets (e.g., boots, laptops)
...
Utilising User Types & Roles in Upvise
Using the method of forms to capture this data, you are able to restrict visibility using a combination of roles and user types from other employees.
For example, where standard user types can only access forms they have submitted, other standard users will not be able to see the data. The owner of a form is inherited by the user submitting the form.
Read more on Roles & User Types here.
...
Employee personal contact information can be captured in a form attached to their contact record in Upvise. This may include, but is not limited to, the following types of data which may be considered sensitive to the employee:
Residential Address
Personal Mobile Number (if they have a business phone)
Personal Email Address
Emergency Contact Information
Licenses and Certificates
Checking Upvise System Options & User Configuration
Upvise provides a number of options (setting) and user based configurations you can apply to help restrict access to contacts.
Contacts > Options > User Rights |
|
Manage Users > Application Rights | Although “Data Shared by all users” will hide the contact module "Data Shared by All Users" limits data access for standard users if owners are assigned, you can in addition to this, remove the contact app from specified users. This may be used for Manager standard user permissions will apply when this option is deselected. If you need contacts available in forms, the best approach is to hide the Contacts app for specific users through the users' application rights. This method is useful for Manager-type users where the above setting above does not apply. You can also use forms to ringfence data to role based users. Other applications can also be hidden in using this menu. |
My Account> Roles |
|
Expand | ||
---|---|---|
| ||
Employee contact data is not auto-generated in Workbench from your financial systems, giving you the ability to control what data is entered when you create each employee. If you have recorded information on the person in workbench, and you no longer want that in upvise you should follow the below steps.
The contact data you deleted will be removed from upvise on the contact. | ||
Expand | ||
| ||
In Upvise, you can use a form template to capture employee-related information and you can use roles to restrict the visibility of this to specified users. Examples of Contact forms may include: a) Employee Emergency Contact Information b) Employee Onboarding Form c) Training Records d) Assigned assets (e.g. boots, laptops etc) Forms can be made easily accessible from the contact record by using Buttons. Form data related to that employee is available on the contact record, see the example: To enable users to access the form, you should use roles. Read more about Users and Roles See the example role configuration: Apply the role to the users who should have that particular level of access: |