QuestionQ15

Data Management

An organization has a BigQuery dataset containing sensitive employee information, including salaries and performance reviews. A payroll specialist in the HR department requires continuous access to aggregated performance data, but does not require continuous access to other sensitive information. You need to grant the payroll specialist access to the performance data without granting access to the entire dataset, using the simplest and most secure approach. What should you do?

Explanation

BigQuery authorized views share the output of a defined query with specified users while withholding access to the underlying source dataset. An authorized view can expose only the required aggregated performance data and continues to reflect source-data updates, enforcing least-privilege access.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!