Skip to main content

Manage user access


Manage user access

Zuora Revenue uses role-based access control to restrict system access to authorized users. A role is a collection of permissions that control the actions a user can take in Zuora Revenue. You can create different roles with different permissions in Zuora Revenue. Then, you create users for individuals who need to log into Zuora Revenue and assign appropriate roles to the users. In this way, after a user logs into Zuora Revenue, he/she can perform only the allowed actions according to the user's role assignment.

Create a role

By default, a role named RevPro Super User is provided with full access to all functions. You can create your own roles and grant different permissions for this role.

Complete the following steps to create a role:

  1. Log into Zuora Revenue as a superuser or another user who has full access to security setups.

  2. Navigate to Setups > Security. The Roles page is displayed listing all the defined roles.

  3. To add a role, click the New Role icon icon-add.png. The New Role window is displayed.

  4. In the Role Details tab, specify the role name.

  5. (Optional): Use the toggle switches in the Controls section to have some high-level control of this role:

    • To create a read-only role, toggle the Read Only switch to Yes. Then, all privileges in the Role Privileges tab are set to READ ONLY by default.

    • For the role to run some programs that are blocked by soft freeze during period-open or period-close process, toggle the Override Soft Freeze switch to Yes.

  6. Click icon-save.png. The role is created.

  7. To assign different permissions for the role, complete the following steps:

    1. Click the Role Privileges tab. 
      All categories on the main menu are listed as the MENU type. Expand each category to view the menu options listed as SUB MENU type under the category. The Privilege column displays the current permission assigned, which can be NONE, READ ONLY, PARTIAL ACCESS, or FULL ACCESS.

    2. Locate the line that you want to change the permission.

      • To assign the same permission for all menu options under the same category, locate the MENU type line.

      • To control permissions for a submenu option under a category, expand the category and locate the SUB MENU type line.

      • To control permissions for a specific operation on a submenu, expand the submenu and locate the ACTION or BUTTON type line.

    3. In the Actions column on the located line, click the Revoke icon icon-reject.png to set the privilege to NONE, which means the role cannot access the item. Or click icon-edit-privileges.png to switch the privilege between FULL ACCESS and READ ONLY.

  8. If users are already created, to assign this role to appropriate users, complete the following steps.

    1. Click the User Assignment tab.

    2. To assign this role to a user, click icon-add-green.png. A new user line is added.

    3. In the User Name column, select the target user name from the drop-down list.

    4. (Optional): Specify the period when this user is assigned to this role in the Active From and Active To columns.

    5. Toggle the Enabled switch to Yes.

    6. Click icon-add-green.png to add other users if necessary.

    7. After all users are added, click icon-save-green.png.

Create a user

A user must be created for each individual that needs to log into Zuora Revenue.

After a user is created and you want to change the user name, it is recommended to create another user with the new name assigned instead of updating the existing user. This is because all the audit information is recorded based on the user name.

Complete the following steps to create a user:

  1. Log into Zuora Revenue as a superuser or another user who has full access to security submenu options.

  2. Navigate to Setups > Security.

  3. Click side-menu-open.png to open the side menu and click Users. The Users page is displayed.

  4. To add a user, click the New User icon icon-add.png. The New User window is displayed.

  5. Specify the user name, email, and password for this user. This information is used for login.

  6. Provide other optional information if necessary.

    If the Override Approvers switch is toggled to Yes, it means the current user can provide approvals or rejections on behalf of the assigned approver. For example, the MJE for some lines are submitted for approval, however, the approver is out of the office. In this case, an override approver can approve or reject the MJE.

  7. Click icon-save.png. The user is created.

  8. If the user role is already created, click the Role Assignment tab to assign appropriate rules to this user:

    1. Click icon-add-green.png to add a line.

    2. In the Role Name column, select the role from the drop-down list.

    3. (Optional): Specify the period when this role is assigned to this user in the Active From and Active To columns.

    4. Toggle the Enabled switch to Yes.

    5. Click icon-add-green.png to add other roles for this user if necessary.

    6. After all roles are listed, click icon-save-green.png.