Valid Associate-Cloud-Engineer Dumps shared by EduDump.com for Helping Passing Associate-Cloud-Engineer Exam! EduDump.com now offer the newest Associate-Cloud-Engineer exam dumps, the EduDump.com Associate-Cloud-Engineer exam questions have been updated and answers have been corrected get the newest EduDump.com Associate-Cloud-Engineer dumps with Test Engine here:
Your organization needs to grant users access to query datasets in BigQuery but prevent them from accidentally deleting the datasets. You want a solution that follows Google-recommended practices. What should you do?
Correct Answer: D
The proper answer regarding to bigquery roles is the listed in the options, the proper rol that resolve this requirement is: roles/bigquery.dataViewer https://cloud.google.com/bigquery/docs/access-control#custom_roles On the other hand, the question explicitly is asking to use the GCP best practices on IAM: GCP Best Practices explain clearly these rules: Policy management - Set organization-level IAM policies to grant access to all projects in your organization. - Grant roles to a Google group instead of individual users when possible. It is easier to add members to and remove members from a Google group instead of updating an IAM policy to add or remove users. - If you need to grant multiple roles to allow a particular task, create a Google group, grant the roles to that group, and then add users to that group. https://cloud.google.com/iam/docs/using-iam-securely#policy_management