Which Azure security model lets a team assign permissions at the resource group level without affecting other users?
Choose an answer
Tap an option to check your answer.
Correct answer: Role-Based Access Control.
Why this is the answer
Role-Based Access Control (RBAC) is the correct answer because it allows for fine-grained access management to Azure resources. With RBAC, you can assign specific permissions (roles) to users, groups, or applications at different scopes, such as a subscription, resource group, or individual resource. This enables a team to manage resources within their assigned resource group without impacting other users or resources outside that scope. Azure Policy is incorrect because it focuses on enforcing organizational standards and assessing compliance, not on assigning user permissions. Azure AD Privileged Identity Management (PIM) is incorrect because it manages, controls, and monitors access to important resources by providing just-in-time and just-enough access, which is a different security concern than general permission assignment. Conditional Access is incorrect because it enforces policies based on user, device, and location conditions for accessing applications, rather than defining resource-level permissions.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed