Dandee Consulting logo

Workday consulting

Workday Security Consulting

Workday security role design, segregation of duties analysis, audit remediation and access governance from independent consultants.

50+
UK projects delivered
12
European markets supported
GDPR
and payroll compliant
London
headquartered

Workday security models degrade quietly. Exceptions become permanent, leavers keep access, and an auditor eventually asks a question nobody can answer from the tenant. Dandee Consulting rebuilds security models so access is designed, evidenced and maintainable.

What's included

What Our Security Consultants Deliver

Work is grounded in your actual role assignments and domain policies, not a reference model.

  • Security role design across user-based, job-based and organisation role types
  • Domain security policy and business process security policy configuration and rationalisation
  • Segregation of duties analysis with a documented conflict matrix
  • Access reviews and recertification processes your managers can realistically complete
  • Audit finding remediation with evidence suitable for internal and external auditors
  • Proxy access, delegation and privileged access governance
  • Security testing by persona as part of implementation or release regression

What Our Security Consultants Deliver

Engagement Models And Indicative Pricing

  • Security assessment — two to three weeks, fixed fee, with a conflict matrix and remediation plan.
  • Redesign project — fixed scope, typically six to twelve weeks depending on population and module count.
  • Audit response — short, focused engagement to close specific findings before a deadline.
  • Day rate — senior security consultants from GBP 750 per day.

Effort depends on worker population, module footprint and how much of the model was built by exception. We quote fixed scope after an assessment.

Engagement Models And Indicative Pricing

Common Problems We Are Called In To Fix

  • Role proliferation — dozens of near-identical roles nobody can explain
  • Users retaining access after transfers and leavers not fully removed
  • Segregation of duties conflicts between payroll, HR and finance functions
  • Audit findings on access recertification and privileged access
  • Reports exposing compensation or personal data to the wrong population

Common Problems We Are Called In To Fix

How A Security Engagement Runs

  1. 01

    Extract

    current roles, assignments and policies pulled from the tenant

  2. 02

    Analyse

    conflicts, orphans and over-provisioning quantified

  3. 03

    Design

    a target role model mapped to real job profiles and organisations

  4. 04

    Build and test

    configuration in a sandbox with persona-based testing

  5. 05

    Migrate

    controlled move to production with a recertification cycle

  6. 06

    Sustain

    recertification calendar and joiner-mover-leaver process documented

Talk To A Workday Security Consultant

Tell us what triggered the review — an audit, a merger, or role sprawl — and we will scope the assessment. 📞 Contact us or 📞 book a call.

Talk To A Workday Security Consultant

FAQs

Frequently asked questions

A security assessment is a fixed fee over two to three weeks. Redesign projects are quoted on population and module scope; senior day rates start from GBP 750.

Contact

Talk to us about Security Consulting

Send a short brief and a Workday specialist replies within one working day.

Send a message

Ready to get more out of Workday?

Book a 30-minute call with a specialist. No pitch — just a clear view of what to fix first.

Book a Call