An Azure subscription includes storage account storage1 and a workspace Workspace1. You need to grant Workspace1 permission to read, write, and delete the data in storage1's containers. Which role should you assign to Workspace1?
Choose an answer
Tap an option to check your answer.
Correct answer: Storage Blob Data Contributor.
Why this is the answer
The Storage Blob Data Contributor role grants read, write, and delete access to Azure Storage blob containers and data. This is the most granular and appropriate role for Workspace1 to interact with storage1's containers, adhering to the principle of least privilege. Storage Account Contributor provides management access to the storage account itself, but not data access within the containers. Contributor is a broad role that grants full access to manage all resources, which is excessive for this specific data access requirement. Reader and Data Access is not a standard Azure built-in role.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed