Assigning the Copilot Owner role so a user can upload files, view the usage dashboard, and share promptbooks with all users
You have a Microsoft 365 E5 subscription that uses Microsoft Copilot for Security. Copilot for Security has the default settings configured. You need to ensure that a user named User can use Copilot for Security to perform the following tasks: • Upload files. • View the usage dashboard. • Share promptbooks with all users. The solution must follow the principle of least privilege Which role should you assign to User?
Community Votes
80% of anonymous learners picked answer A. Votes are pick records left by other test-takers — they are not the verified answer.
Community Insight
Copilot Contributor can create sessions, upload files, and run promptbooks, but cannot view the usage dashboard or publish promptbooks to all users; those two capabilities belong to Copilot Owner, making Owner the minimum role that satisfies the full task list.
A user must upload files, view the Copilot for Security usage dashboard, and share promptbooks with all users under least privilege; only the Copilot Owner role grants all three, because viewing the dashboard and publishing promptbooks tenant-wide exceed Contributor rights.
Choosing Copilot Contributor because it can upload files — it cannot view the usage dashboard nor share promptbooks with all users, so it fails two of the three stated tasks.
Community Discussion (6 comments)
Comments & Corrections
No comments yet — spotted an error or have a note? Share it below.
Expert Analysis
Why the Answer Is Correct
Microsoft Copilot for Security has four roles. Copilot Contributor can upload files, run promptbooks, and create sessions, but the usage dashboard and the ability to publish/share promptbooks with all users (tenant-wide) require the Copilot Owner role. Because the task lists all three capabilities, Owner is the least-privilege role that actually covers them all.Why the Other Options Are Wrong
Copilot Contributor (D) lacks dashboard visibility and tenant-wide promptbook sharing, so it cannot complete the task. Cloud Application Administrator (B) and Security Administrator (C) are Microsoft Entra roles that do not grant Copilot for Security session, upload, or dashboard permissions.Community Comment Notes
The community leans A (80 votes). Rnakaza notes the usage dashboard is not available to the Contributor profile, and Onimole's capability table shows only Owner can publish custom plugins/promptbooks for the tenant and view usage. Swethag37's summary of Contributor capabilities confirms it cannot do all three.Official Reference
Related Analysis
Practice All SC-200 Questions
Access 80 questions with complete answers and detailed explanations.
View Full SC-200 Practice Test →