nerdexam
Google

PROFESSIONAL-CLOUD-NETWORK-ENGINEER · Question #47

Datachamps is an organization resource and it has many projects under it .The company uses BigQuery for data analysis. They want a user named admin-bigquery to be the admin for all BigQuery data…

The correct answer is B. bigquery.admin to admin-bigquery and bigquery.dataViewer to Monitorbigquery service account. Option B is the Correct choice because, On organization Datachamps add admin-bigquery to the predefined role bigquery.admin this provides permissions to manage all resources across the project and manage all data across the project, and can cancel jobs from other users running…

Submitted by lucia.co· Apr 18, 2026Implementing network security

Question

Datachamps is an organization resource and it has many projects under it .The company uses BigQuery for data analysis. They want a user named admin-bigquery to be the admin for all BigQuery data across all of the projects under the Datachamps organization . Monitorbigquery is a service account that's responsible for monitoring the size of all the tables across all projects in the Datachamps organization. What predefined roles must be given to admin-bigquery (user) and Monitorbigquery (service account) .

Options

  • Abigquery.user to admin-bigquery and bigquery.dataViewer to Monitorbigquery service
  • Bbigquery.admin to admin-bigquery and bigquery.dataViewer to Monitorbigquery service account.
  • Cbigquery.admin to admin-bigquery and bigquery.dataOwner to Monitorbigquery service account.
  • Dbigquery.connectionAdmin to admin-bigquery and bigquery.dataEditor to Monitoringbigquery

How the community answered

(22 responses)
  • A
    5% (1)
  • B
    73% (16)
  • C
    9% (2)
  • D
    14% (3)

Explanation

Option B is the Correct choice because, On organization Datachamps add admin-bigquery to the predefined role bigquery.admin this provides permissions to manage all resources across the project and manage all data across the project, and can cancel jobs from other users running across the project.. Add Monitorbigquery to the predefined role bigquery.dataViewer ,when applied at the project or organization level, this role can also enumerate all datasets in the project and this the appropriate role to fulfil the objective of monitoring tables across all projects .

Topics

#BigQuery IAM#IAM Roles#Service Accounts#Least Privilege

Community Discussion

No community discussion yet for this question.

Full PROFESSIONAL-CLOUD-NETWORK-ENGINEER Practice