Hi, not personally tested but I think that the BW user in source system, usually ALEREMOTE should be profiled with structural authorization in order to restrict personal areas readable.
Also check Note 397208 - BW: Authorizations for HR data extraction