nerdexam
MicrosoftMicrosoft

DP-700 · Question #23

DP-700 Question #23: Real Exam Question with Answer & Explanation

The correct answer is D: Contributor. To allow a user to view all items in a Fabric workspace and update tables in a warehouse within that workspace, the Contributor role is the least privileged option.

Manage data governance and security

Question

QUESTION 25 You have a Fabric workspace named Workspace1 that contains a warehouse named DW1 and a data pipeline named Pipeline1. You plan to add a user named User3 to Workspace1. You need to ensure that User3 can perform the following actions: - View all the items in Workspace1. - Update the tables in DW1. The solution must follow the principle of least privilege. Which workspace role should you assign to User3?

Options

  • AAdmin
  • BMember
  • CViewer
  • DContributor

Explanation

To allow a user to view all items in a Fabric workspace and update tables in a warehouse within that workspace, the Contributor role is the least privileged option.

Common mistakes.

  • A. The Admin role provides full control over the workspace, including managing permissions, which is more privilege than required for simply viewing items and updating tables.
  • B. The Member role generally provides similar permissions to Contributor but can also share items, which is not explicitly required and slightly more privilege than just updating tables.
  • C. The Viewer role only allows users to view content and data, but explicitly prevents them from making any changes, including updating tables in a warehouse.

Concept tested. Fabric Workspace roles and permissions

Reference. https://learn.microsoft.com/en-us/fabric/get-started/roles-workspaces

Topics

#Fabric workspace roles#Least privilege#Access control#Data warehouse security

Community Discussion

No community discussion yet for this question.

Full DP-700 PracticeBrowse All DP-700 Questions