Data obfuscation
Personally identifiable information (PII) is masked after a tenant data refresh when production data is copied to lower environments, such as testing, quality assurance, or training.
Data Obfuscation masks PII fields across HCM, including employee and candidate data. Masking is performed as part of the data refresh and cannot be initiated from the application.
By replacing sensitive data with obfuscated values, organizations can use realistic data for testing and training purposes without exposing actual employee or candidate information. This helps reduce the risk of unauthorized access to sensitive data while supporting compliance with data privacy and security requirements.
Masked values are derived from employee or candidate numbers, ensuring that the same records receive consistent obfuscated values in every data refresh. The masking covers both current records and archive tables to provide comprehensive data protection across the environment.
One obfuscation setup record is required for each HR organization. These records are automatically created by the Create Data Obfuscation Records post-upgrade action.
If the menu in System Administration is not displayed, manually run the Create Data Obfuscation Records post-upgrade action.
See Customer updates.
Configuring data categories
Administrators can configure how personal data categories are masked after a data refresh.