A small, frequently changing data science team needs ability to run BigQuery queries. Follow Google best practices for granting access. What should you do?
Choose an answer
Tap an option to check your answer.
Correct answer: 1. Create a dedicated Google group in Cloud Identity. 2. Add each data scientist's user account to the group. 3. Assign the BigQuery jobUser role to the group..
Why this is the answer
Creating a dedicated Google Group and assigning roles to the group is a best practice for managing access, especially for frequently changing teams. This simplifies administration as you only need to add or remove users from the group, rather than individually managing IAM entries. The BigQuery Job User role (roles/bigquery.jobUser) allows users to run jobs, including queries, which is necessary for data scientists. Option 1 is incorrect because managing individual IAM entries for each user is less efficient and harder to maintain for a frequently changing team. Option 2 is incorrect for the same reason as option 1, and the BigQuery Data Viewer role (roles/bigquery.dataViewer) only allows viewing data, not running queries. Option 4 is incorrect because while using a group is good, the BigQuery Data Viewer role does not permit running queries.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed