Question 1
A financial services company is deploying a new PowerProtect DD9900 system. To meet stringent security policies, all administrative access must be integrated with their central Active Directory infrastructure, and different teams require varying levels of privilege. The security team has mandated that storage administrators should not have the ability to delete snapshots or alter retention policies. Which role should be assigned to the storage administration team to meet this requirement?
Answer and explanation
Correct answer: B
The 'user' role is the most appropriate choice. It allows for day-to-day management and monitoring tasks such as checking system status, viewing configurations, and managing MTree and storage units, but it restricts actions that could compromise data integrity, such as deleting snapshots or modifying retention lock policies. This aligns perfectly with the principle of least privilege required by the security team.