Assigning the Copilot Owner role so a user can upload files, view the usage dashboard, and share promptbooks with all users

Topic 4
Answer Correct answer: A — Only Copilot Owner can upload files, view the usage dashboard, and share promptbooks with all users; Contributor cannot do the last two.

You have a Microsoft 365 E5 subscription that uses Microsoft Copilot for Security. Copilot for Security has the default settings configured. You need to ensure that a user named User can use Copilot for Security to perform the following tasks: • Upload files. • View the usage dashboard. • Share promptbooks with all users. The solution must follow the principle of least privilege Which role should you assign to User?

  1. Copilot owner Correct Answer
  2. Cloud Application Administrator
  3. Security Administrator
  4. Copilot Contributor

Community Votes

A
80%
D
20%

80% of anonymous learners picked answer A. Votes are pick records left by other test-takers — they are not the verified answer.

Community Insight

Copilot Contributor can create sessions, upload files, and run promptbooks, but cannot view the usage dashboard or publish promptbooks to all users; those two capabilities belong to Copilot Owner, making Owner the minimum role that satisfies the full task list.

A user must upload files, view the Copilot for Security usage dashboard, and share promptbooks with all users under least privilege; only the Copilot Owner role grants all three, because viewing the dashboard and publishing promptbooks tenant-wide exceed Contributor rights.

Choosing Copilot Contributor because it can upload files — it cannot view the usage dashboard nor share promptbooks with all users, so it fails two of the three stated tasks.

Community Discussion (6 comments)

Onimole 👍 1 Selected: A
Capability Copilot owner Copilot contributor Create sessions Yes Yes Manage personal custom plugins Yes Default No Allow contributors to manage personal custom plugins Yes No Allow contributors to publish custom plugins for the tenant Yes No Change availability of preinstalled plugins for the tenant Yes No Upload files Yes Default Yes Manage upload file usage Yes No Run promptbooks Yes Yes Manage personal promptbooks Yes Yes Share promptbooks with tenant Yes Yes Update data sharing and feedback options Yes No Capacity management Yes* No View usage dashboard Yes No Select language Yes Yes
71106c6 👍 2 Selected: A
A: Copilot owner https://learn.microsoft.com/en-us/copilot/security/authentication
Rnakaza 👍 3 Selected: A
View usage dashboard is NOT allowed by contributor profile
rkrau 👍 1 Selected: A
Link is clear on that
Swethag37 👍 2 Selected: D
Explanation: Microsoft Copilot for Security has four roles with different permissions: Copilot Owner: Full access, including managing settings, user permissions, and everything in Copilot for Security. Copilot Contributor: Can upload files, view dashboards, and share promptbooks with all users, but cannot manage user access or system settings. Copilot Reader: Can view dashboards and reports but cannot upload files or share promptbooks. Copilot Custom Role: A role with customized permissions. Since Copilot Contributor allows uploading files, viewing dashboards, and sharing promptbooks, it is the least privileged role that meets all the given requirements.
chiquito 👍 1 Selected: A
Correct Answer A https://learn.microsoft.com/en-us/copilot/security/authentication

Comments & Corrections

No comments yet — spotted an error or have a note? Share it below.

Log in to comment, report an error, or add a note about this question.

Submitted for moderation before publishing. Keep it helpful and respectful.

Expert Analysis

Why the Answer Is Correct

Microsoft Copilot for Security has four roles. Copilot Contributor can upload files, run promptbooks, and create sessions, but the usage dashboard and the ability to publish/share promptbooks with all users (tenant-wide) require the Copilot Owner role. Because the task lists all three capabilities, Owner is the least-privilege role that actually covers them all.

Why the Other Options Are Wrong

Copilot Contributor (D) lacks dashboard visibility and tenant-wide promptbook sharing, so it cannot complete the task. Cloud Application Administrator (B) and Security Administrator (C) are Microsoft Entra roles that do not grant Copilot for Security session, upload, or dashboard permissions.

Community Comment Notes

The community leans A (80 votes). Rnakaza notes the usage dashboard is not available to the Contributor profile, and Onimole's capability table shows only Owner can publish custom plugins/promptbooks for the tenant and view usage. Swethag37's summary of Contributor capabilities confirms it cannot do all three.

Official Reference

Related Analysis

Practice All SC-200 Questions

Access 80 questions with complete answers and detailed explanations.

View Full SC-200 Practice Test →

← Back to SC-200 Study Guide