You want a shared dataset of readable-but-unmodifiable tables for analysts, plus private per-analyst workspaces in the same project where analysts can create tables visible only to themselves. How should you grant roles and organize datasets?
Choose an answer
Tap an option to check your answer.
Correct answer: Give analysts the BigQuery Data Viewer role on the shared dataset. Create a dataset for each analyst, and give each analyst the BigQuery Data Editor role at the dataset level for their assigned dataset..
Why this is the answer
The correct approach is to grant the BigQuery Data Viewer role on the shared dataset. This allows all analysts to read the unmodifiable tables. For private workspaces, create a separate dataset for each analyst. Then, grant each analyst the BigQuery Data Editor role only on their specific dataset. This ensures they can create and manage tables within their private workspace, visible only to them, without affecting other analysts' private spaces or the shared dataset. Incorrect options: Granting project-level roles is too broad and violates the principle of least privilege. Giving all analysts editor access to a single "other dataset" would make that dataset shared and modifiable by everyone, not private per analyst.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed