You can have code something like this: I haven’t tested it. You need to pass process instance key and column name of your child form.
…
In the Access Policy, go into the AD User resource for the policy, and select those two MVA’s to be populated on provisioning.