Ultimate access to all questions.
Your company handles customer PII data stored in Cloud Storage buckets, with a portion regularly imported into BigQuery for analytics. Ensuring strict access control is paramount. The analytics team requires read access to the bucket for data import, the operations team needs read/write access to both the bucket and BigQuery dataset for adding new customer PII, and Data Vigilance officers require Administrator access to both. Adhering to Google's recommended practices, what is the best course of action?