Google Associate Cloud Engineer exam dumps

Google Associate Cloud Engineer practice question 338 of 375

Associate Cloud Engineer. Free level, Google Cloud. Free question with the correct answer and a full explanation.

Google Associate Cloud Engineer Question 338

Single answerGoogle Cloud Platform

You are tasked with granting a team of data analysts the ability to view BigQuery datasets but not modify them. Which IAM policy binding should you create in Google Cloud Platform?

  1. A

    Assign the 'roles/bigquery.dataEditor' role to the team.

  2. B

    Assign the 'roles/bigquery.dataViewer' role to the team.

  3. C

    Assign the 'roles/viewer' role to the team.

  4. D

    Assign the 'roles/bigquery.user' role to the team.

Show answer and explanation

Correct answer: B

Explanation

When you need to grant read-only access to BigQuery datasets, the 'roles/bigquery.dataViewer' role is appropriate as it allows users to view datasets without modifying them. This role aligns perfectly with the requirement of allowing data analysts to view but not alter the datasets.

  • A. Incorrect.

    The 'roles/bigquery.dataEditor' role allows editing datasets, which is more permission than needed.

  • B. Correct.

    The 'roles/bigquery.dataViewer' role provides read-only access to BigQuery datasets, which is exactly what is required.

  • C. Incorrect.

    The 'roles/viewer' role grants read access to all resources in the project, not just BigQuery datasets.

  • D. Incorrect.

    The 'roles/bigquery.user' role primarily allows users to run jobs, which does not specifically grant viewing access to datasets.

Timed practice exam

Take a Google Associate Cloud Engineer practice test under exam conditions

60 questions in 120 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam