Subdomain 1.2: Design an architecture that meets data security, privacy, compliance, and governance requirements.
1.A data-sharing agreement lets a partner query aggregated metrics from a shared view but must prevent the partner from ever isolating a single customer's data point within a group. Which control enforces this?
- A.An aggregation policy that enforces a minimum group size, combining any group smaller than the threshold into a remainder group so individual records cannot be isolated.
- B.A masking policy on every column in the view, since masking each value individually prevents any single customer's data point from being distinguished from another.
- C.A row access policy that limits the partner's query to a fixed set of pre-approved rows, since restricting the row set is equivalent to enforcing a minimum aggregation size.
- D.A secure view wrapping the shared view, since hiding the view definition from the partner is sufficient to prevent isolating any single customer's contribution to a group.
Show answer & explanation
Correct answer: A — An aggregation policy that enforces a minimum group size, combining any group smaller than the threshold into a remainder group so individual records cannot be isolated.
- A. An aggregation policy enforces a minimum group size for any query against the protected object, folding undersized groups into a remainder group with nulled grouping columns so a partner cannot isolate an individual record through a narrow filter.
- B. This is incorrect because masking transforms displayed values but does not prevent a partner from filtering or grouping queries narrowly enough to isolate one customer's row within an otherwise unmasked aggregate.
- C. This is incorrect because restricting which rows are visible does not stop a partner from grouping or filtering within the allowed row set narrowly enough to isolate a single customer's contribution.
- D. This is incorrect because a secure view only hides the view's definition and DDL from unauthorized users; it does not constrain how finely a partner can group or filter the data returned by the view.