Google
PROFESSIONAL-CLOUD-ARCHITECT · Question #146
Your company captures all web traffic data in Google Analytics 260 and stores it in BigQuery. Each country has its own dataset. Each dataset has multiple tables. You want analysts from each country…
The correct answer is A. Create a group per country. Add analysts to their respective country-groups. Create a single. The question requires that user from each country can only view a specific data set, so BQ dataViewer cannot be assigned at project level. Only A could limit the user to query and view the data that they are supposed to be allowed to.
Submitted by yousef_jo· Mar 30, 2026Designing for security and compliance
Question
Your company captures all web traffic data in Google Analytics 260 and stores it in BigQuery. Each country has its own dataset. Each dataset has multiple tables. You want analysts from each country to be able to see and query only the data for their respective countries. How should you configure the access rights?
Options
- ACreate a group per country. Add analysts to their respective country-groups. Create a single
- BCreate a group per country. Add analysts to their respective country-groups. Create a single
- CCreate a group per country. Add analysts to their respective country-groups. Create a single
- DCreate a group per country. Add analysts to their respective country-groups. Create a single
How the community answered
(29 responses)- A79% (23)
- B7% (2)
- C10% (3)
- D3% (1)
Explanation
The question requires that user from each country can only view a specific data set, so BQ dataViewer cannot be assigned at project level. Only A could limit the user to query and view the data that they are supposed to be allowed to.
Topics
#BigQuery IAM#dataset-level access control#group-based permissions#data governance
Community Discussion
No community discussion yet for this question.