Oracle Fusion 25D · Risk & Compliance · Access Certification

Oracle Access Certification 25D Release Intelligence

5 feature changes for Oracle Access Certification in 25D (October 2025) — covering process logic, accounting rules, integration payloads, security policies and reporting outputs. 3 High/Critical items require prioritised regression validation; 2 Medium items should be sampled.

3 High/Critical
0 Med-High
2 Medium
0 Low
7 pages
6 APIs
25D Access Certification Command Center
LIVE · OCT 2025
Total Features
5
High Severity
3
Affected Pages
7
Affected APIs
6
High/Critical3
Med-High0
Medium2
Low0
RELEASE OVERVIEW

What Changed in Oracle Access Certification 25D

Oracle Fusion 25D (October 2025) delivered 5 feature changes for Oracle Access Certification — covering process logic, accounting rules, integration payloads, security policies and reporting outputs. 3 are marked High or Critical severity and require prioritised regression validation before production cutover. Below: every individual change with affected components, recommended test cases and business impact.

5
Total Changes
3
High / Critical
7
Pages Affected
6
APIs Affected
FEATURE-BY-FEATURE BREAKDOWN

All 5 Access Certification 25D Changes

Each card shows the change type, severity, affected pages and APIs, recommended test cases and business impact rationale.

Enhanced certification campaign automation

High
Type: Process / UI Opt-in: Opt-in

Improved automated generation of user access certification campaigns with smarter scheduling and assignment rules

Affected pages
Security REST APIs, User Role API
Affected APIs
Run Access Certification Campaign Job
ESS jobs
Certification Rules, Scheduling Profiles
Configuration
User Access Review, SOX Compliance Certification
Business processes
Create campaign for business unit roles, validate auto-assignment, verify reminders
Data objects
User Accounts, Roles, Role Assignments (Access Certification Work Area, Campaign Dashboard)
RECOMMENDED TEST CASES

Reduces manual effort in compliance audits and improves SOX readiness

Improved reviewer experience with bulk actions

Medium
Type: UI Opt-in: Opt-in

Allows managers/auditors to approve/revoke multiple user roles in a single action with improved UI performance

Affected pages
Access Review API
Affected APIs
Access Certification Review Job
ESS jobs
Approval Rules
Configuration
Role review and revocation process
Business processes
Bulk approve/reject 50+ role assignments, validate audit trail
Data objects
Role Assignment, Worker Security Profiles (Review Access Page, Certification Response Page)
RECOMMENDED TEST CASES

Improves efficiency for large enterprises with high user volumes

AI-assisted risk highlighting for access reviews

High
Type: AI / Process Opt-in: Opt-in

System highlights high-risk role combinations (SoD conflicts, privileged roles) during certification

Affected pages
Risk Analysis API
Affected APIs
Risk Scoring Job, Certification Analysis Job
ESS jobs
SoD Rules, Risk Configurations
Configuration
Security compliance, segregation of duties review
Business processes
Validate flagged risky roles, verify SoD violation detection accuracy
Data objects
Role Entitlements, SoD Rules, User Access Logs (Access Certification Dashboard, Risk Summary Page)
RECOMMENDED TEST CASES

Helps reduce compliance risk and improves audit accuracy

Audit trail enrichment for certifications

Medium
Type: Data / Compliance Opt-in: Default

Enhanced audit logs capturing before/after role changes, reviewer comments, timestamps

Affected pages
Audit REST API
Affected APIs
Audit Extract Job
ESS jobs
Audit Configuration Setup
Configuration
Compliance reporting, internal/external audits
Business processes
Validate audit log completeness, trace role change history
Data objects
Audit Logs, Role History, Certification Records (Audit Reports Page, Certification History Page)
RECOMMENDED TEST CASES

Strengthens regulatory compliance and audit transparency

Improved integration with Identity & Access Management

High
Type: Integration Opt-in: Opt-in

Better synchronization with IAM systems for real-time role updates in certification campaigns

Affected pages
IAM Sync API, SCIM API
Affected APIs
Identity Synchronization Job
ESS jobs
Identity Provider Configuration
Configuration
User provisioning, deprovisioning, role lifecycle management
Business processes
Validate user role sync, test deactivated user removal from campaigns
Data objects
Identity Sync Tables, User Role Mapping (Identity Integration Setup Page)
RECOMMENDED TEST CASES

Ensures accurate and up-to-date access review data

AFFECTED COMPONENTS · DEDUPED

Components Touched by Access Certification 25D

Unique pages, APIs, ESS jobs, configurations and business processes across all 5 25D changes.

Affected Pages

7
Access Review API Audit REST API IAM Sync API Risk Analysis API SCIM API Security REST APIs User Role API

Affected APIs

6
Access Certification Review Job Audit Extract Job Certification Analysis Job Identity Synchronization Job Risk Scoring Job Run Access Certification Campaign Job

ESS Jobs

7
Approval Rules Audit Configuration Setup Certification Rules Identity Provider Configuration Risk Configurations Scheduling Profiles SoD Rules

Configuration Objects

10
Compliance reporting Role review and revocation process SOX Compliance Certification Security compliance User Access Review User provisioning deprovisioning internal/external audits role lifecycle management segregation of duties review

Business Processes

11
Bulk approve/reject 50+ role assignments Create campaign for business unit roles Validate audit log completeness Validate flagged risky roles Validate user role sync test deactivated user removal from campaigns trace role change history validate audit trail validate auto-assignment verify SoD violation detection accuracy verify reminders

Data Objects

13
Audit Logs Certification Records Identity Sync Tables Role Assignment Role Assignments Role Entitlements Role History Roles SoD Rules User Access Logs User Accounts User Role Mapping Worker Security Profiles

Oracle Access Certification 25D FAQ

What changed in Oracle Access Certification 25D?

Oracle Fusion Access Certification 25D delivered 5 feature changes — 3 High/Critical severity, 0 Med-High, 2 Medium, 0 Low. Changes spanned UI updates, AI/automation enhancements, integration improvements and compliance updates. See the full breakdown above.

How many High-severity items are in Access Certification 25D?

3 items in Oracle Fusion Access Certification 25D are classified as High or Critical severity. These require dedicated regression testing before production rollout.

What pages and APIs are affected?

Affected components include 7 unique pages, 6 APIs, 7 ESS jobs, and 10 configuration objects across the 5 feature changes. See "Affected Components" section above.

Should I still test Access Certification after 25D went live?

Yes. Most customers complete a 25D regression cycle, but Access Certification forms part of the regression baseline for 26A/26B impact analysis. Customers who deferred 25D patches should also still run targeted regression before 26A go-live.

How does SyntraFlow automate Access Certification 25D regression?

SyntraFlow Release Intelligence maps each 25D Access Certification feature against your live tenant configuration, identifies the ones that actually apply, and auto-composes a regression test pack covering only the relevant pages, APIs and business processes.

Validate Oracle Access Certification 25D Against Your Tenant

SyntraFlow Release Intelligence maps every 25D advisory against your live Access Certification configuration and auto-composes a regression test pack with SOX / GDPR audit evidence. Used by US, UK and EU enterprise Oracle teams.