---
sourceDocument: Australia Employee Service Management
sourceDocumentLink: https://www.servicenow.com/docs/r/pt-BR/employee-service-management

 Release :

    - australia

ft:locale :

    - pt-BR

ft:publication_title :

    - Australia Employee Service Management

ft:clusterId :

    - emplsm

bundleId :

    - emplsm

workflow :

    - Employee


---

# HR profile and HR case security

# HR profile and HR case security {#ariaid-title1}

* Versão de lançamento: Australia
* 
* Atualizado 12 de mar. de 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 2 min. de leitura

Because HR profile information is sensitive and confidential, the System Administrator
\[admin\] cannot view it. The same is true for some of the information in HR cases and HR
tasks.

HR profile information is confidential and viewed only by authorized HR personnel who are assigned a role that includes sn_hr_core.profile_reader or sn_hr_core.profile_writer, such as sn_hr_core.secure_info_reader.

For HR cases and HR tasks, only authorized HR personnel are allowed to view attachments, work notes and comments, description, calendar, and payload (configurable). Authorized HR personnel are assigned a role with
sn_hr_core.case_reader and sn_hr_core.case_writer, such as sn_hr_core.secure_info_reader.

HR administrators \[sn_hr_core.admin\] will be able to perform all tasks and view all data.

## HR profile information that system administrators can access

System Administrators cannot create an HR profile. They can see the list of HR profiles and open HR profile records, but only have access to the following information.

* The HR profile number and prefix of an employee.
* Employment information that is synchronized with the user record \[sys_user\]. This information includes name, employee number, department, manager, and location.
* Work contact information, such as work email address and work phone number. Personal information is hidden.
* Information that appears in the following related lists.
  * Employment Information
  * Contact Information
  * Beneficiaries
  * Who is Covered
  * Emergency Contacts
  * Direct Reports
  * Colleagues
  * Cases
  {#c_HRProfileSecurity__ul_p2q_dh3_ms}
{#c_HRProfileSecurity__ul_sp2_jg3_ms}

## HR case and task information accessible by HR Administrators

HR Administrators can view the employee user information, such as location and department, and
the short description. Activities, such as state changes, are displayed in the activity stream,
but comments and work notes are hidden. System Administrators cannot view this information.

When the HR Administrator opens an HR case or HR task, a message describes the information
that is not displayed.

An HR case can be created from an HR profile. Click Create New Case
under Related Links and Case Creation appears.

## Impersonating a user

You can prevent a user from accessing HR information by impersonating a user that has HR access by using the If true, ACLs check if the user is being impersonated. property.

* Navigate to HR AdministrationProperties.
* Scroll to If true, ACLs check if the user is being impersonated.
* Check Yes (true) to enable ACLs to check when a user is impersonating another user and prevent the user from viewing HR information.

  COE security policies are a way to easily restrict access to
  different COEs via configuration. The underlying COE security policy implementations are [ServiceNow ACLs](https://www.servicenow.com/docs/access?context=access-control-rules&version=australia&pubname=australia-platform-security&ft:locale=en-US).
* Even if the logged in user has HR access and impersonates another HR user with the same access, HR information is not visible.  
  Nota:  
  This property was introduced for the HR Service Delivery scoped application and not applicable to the HR Services Delivery Non-scoped application.
{#c_HRProfileSecurity__ul_ikz_zl1_xdb}

See [Add field security in HR](https://www.servicenow.com/docs/v8BdiznuG7ccTPnISY~efg "You can secure a field on a form so that specific HR users cannot view it.").

See [Restricted caller access for HR](https://www.servicenow.com/docs/57fxLgosr1xbnGM7r_wUfg#RCA-HR "Restricted caller access (RCA) defines cross-scope access to HR Service Delivery applications.").

See [Manage HR roles](https://www.servicenow.com/docs/lDZQOdLz9QYh7L2KNaUHcw "Roles control access to features and capabilities in modules in the HR application.").

