AI-102 Practice Question: Implement knowledge mining and information extraction solutions
Your knowledge mining solution ingests documents from multiple tenants. Each tenant's data must be isolated and searchable only by that tenant. You have a single Azure AI Search service. How should you implement multi-tenancy?
⚠ Common exam trap
Test-takers frequently confuse data sources (which are just ingestion pipelines) with data partitioning, leading them to think separate data sources or skillsets provide isolation, when in fact only query-time filtering or separate indexes enforce tenant boundaries.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
Use a single index with a tenant ID field and filter queries by that field
Azure AI Search supports multi-tenancy within a single service by using a shared index with a tenant ID field. Each document is tagged with a tenant identifier, and queries are scoped using OData `$filter` expressions (e.g., `$filter=tenantId eq 'tenant123'`). This ensures data isolation while keeping costs low and management simple, as only one search service and one index are needed.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
Use separate skillsets for each tenant
Why it's wrong here
Skillsets define the enrichment pipeline applied to content, not the query-time security boundary, so tenant A's documents remain discoverable by tenant B. Separate skillsets would be the right choice when tenants need different cognitive enrichments over a shared corpus, not when search results must be partitioned per tenant.
- ✗
Create a separate search service for each tenant
Why it's wrong here
A separate search service per tenant does isolate data, but the stem specifies a single Azure AI Search service, so this contradicts the stated constraint and multiplies cost. This would be correct when tenants demand dedicated tiers, regions, or compliance boundaries that one service cannot provide.
- ✓
Use a single index with a tenant ID field and filter queries by that field
Why this is correct
A tenant ID field with query filters enforces logical isolation within one index, satisfying the single-service constraint. Filters apply at query time, so each tenant retrieves only its own documents. This is the documented approach for multi-tenancy when index-per-tenant isolation is unnecessary, though filter discipline must be enforced consistently.
- ✗
Use separate data sources within the same index
Why it's wrong here
Data sources merely define where indexers pull content from; they do not filter query results, so documents from every tenant land in the same index and remain mutually visible. Separate data sources suit ingesting heterogeneous repositories into one shared index, not enforcing per-tenant result isolation.
Go deeper
Related to this question
About these practice questions
This AI-102 question is part of Courseiva's 761-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →
JA
Written by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
This AI-102 practice question is part of Courseiva's free Microsoft certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the AI-102 exam.