
Get Google-Workspace-Administrator Braindumps & Google-Workspace-Administrator Real Exam Questions
Google Google-Workspace-Administrator Actual Questions and Braindumps
NEW QUESTION # 89
When reloading Gmail in Chrome, the web browser returns a 500 Error. As part of the troubleshooting process, Google support asks you to gather logs. How can this be accomplished?
- A. Chrome > Window Context Menu > More Tools > Developer Tools > Network Tab > Reload the page to replicate the error > "Export HAR"
- B. chrome://net-export > Start Logging to Disk > Confirm validity with https://netlog- viewer.appspot.com
- C. Admin.google.com > Reporting > Reports > Apps Reports > Gmail
- D. Chrome > Window Context Menu > More Tools > Task Manager > Screen Capture List of Running Processes
Answer: A
NEW QUESTION # 90
A user does not follow their usual sign-in pattern and signs in from an unusual location.
What type of alert is triggered by this event?
- A. User sign-in alert.
- B. Leaked password alert.
- C. Suspicious mobile activity alert.
- D. Suspicious login activity alert.
Answer: D
Explanation:
Reference: https://support.google.com/a/answer/7102416?hl=en
NEW QUESTION # 91
A company has thousands of Chrome devices and bandwidth restrictions. They want to distribute the Chrome device updates over a period of days to avoid traffic spikes that would impact the low bandwidth network.
Where should you enable this in the Chrome management settings?
- A. Throttle the bandwidth.
- B. Update over cellular.
- C. Disable Auto update.
- D. Randomly scatter auto-updates.
Answer: D
Explanation:
Randomly scatter auto-updates over Only available if you choose to scatter updates Specifies the approximate number of days that managed Chrome devices download an update after its release. You can use this setting to avoid causing traffic spikes in old or low-bandwidth networks. Devices that are offline during this period download the update when they're online again. https://support.google.com/chrome/a/answer/1375678?hl=en#zippy=%2Cauto-update-settings
NEW QUESTION # 92
As the Workspace Administrator, you have been asked to delete a temporary Google Workspace user account in the marketing department. This user has created Drive documents in My Documents that the marketing manager wants to keep after the user is gone and removed from Workspace. The data should be visible only to the marketing manager. As the Workspace Administrator, what should you do to preserve this user's Drive data?
- A. Ask the user to create a folder under MyDrive, move the documents to be shared, and then share that folder with the marketing team manager.
- B. Before deleting the user, add the user to the marketing shared drive as a contributor and move the documents into the new location.
- C. In the user deletion process, select "Transfer" in the data in other apps section and add the manager's email address.
- D. Use Google Vault to set a retention period on the OU where the users reside.
Answer: C
Explanation:
Access Admin Console: Log into your Google Workspace Admin Console.
Navigate to User Management: Go to Directory > Users.
Select the User: Find and select the temporary user account you need to delete.
Initiate Deletion Process: Click on the user to open the account details and select the option to delete the user.
Transfer Data: During the deletion process, you will see an option to transfer data. Select "Transfer" in the data in other apps section and enter the marketing manager's email address.
Complete Deletion: Complete the user deletion process. The user's Drive documents will be transferred to the marketing manager's account.
Reference
Google Support: Delete a user from your organization
NEW QUESTION # 93
Your company works regularly with a partner. Your employees regularly send emails to your partner's employees. You want to ensure that the Partner contact information available to your employees will allow them to easily select Partner names and reduce sending errors.
What should you do?
- A. Educate users on creating personal contacts for the Partner Employees.
- B. Create shared contacts in the Directory using the Domain Shared Contacts API.
- C. Add a secondary domain for the Partner Company and create user entries for each Partner user.
- D. Create shared contacts in the Directory using the Directory API.
Answer: B
Explanation:
* Enable API Access:
* In the Google Workspace Admin console, go to "Security" > "API controls".
* Enable API access and ensure the Domain Shared Contacts API is enabled.
* Use Domain Shared Contacts API:
* Develop a script or application to use the Domain Shared Contacts API to create shared contacts.
* Include the partner employees' contact information in the shared contacts list.
* Upload Shared Contacts:
* Use the script or application to upload the shared contacts to the Google Workspace Directory.
* Ensure all partner contacts are correctly added and available to your employees.
* Verify and Educate Users:
* Verify that the shared contacts are visible to your employees in their Google Contacts.
* Educate users on how to access and use the shared contacts to reduce sending errors.
References
* Google Workspace Admin Help: Domain Shared Contacts API
* Google Workspace Admin Help: Manage shared contacts
NEW QUESTION # 94
A user does not follow their usual sign-in pattern and signs in from an unusual location.
What type of alert is triggered by this event?
- A. User sign-in alert.
- B. Leaked password alert.
- C. Suspicious mobile activity alert.
- D. Suspicious login activity alert.
Answer: D
NEW QUESTION # 95
Your company is using Google Workspace Business Plus edition, and the security team has reported several unsuccessful attempts to sign in to your Google Workspace domain from countries where you have no local employees. The affected accounts are from several executives in the main office.
You are asked to take measures to mitigate this security risk. Although budget is not a concern, your company prefers a minimal financial outlay to fix the issue, which you are tasked with managing. Which two solutions would help you mitigate the risk at minimal cost?
Choose 2 answers
- A. Deploy 2-Step Verification for all users who have security keys.
- B. For all executives, create new accounts with random characters to match Google best practices, migrate
- C. Deploy Google Cloud Armor on a dedicated project, and create a rule to allow access to Google Workspace only from specific locations.
- D. Subscribe to Cloud Identity Premium for all accounts, and define Context-Aware Access levels to only a list of countries where the company has employees.
- E. Upgrade to Google Workspace Enterprise Plus for all accounts, and define Context-Aware Access levels to only a list of countries where the company has employees.
Answer: A,E
Explanation:
data from the former accounts, and then delete them.
NEW QUESTION # 96
You have configured SSO using a third-party IDP with your Google Workspace domain. An end user has reported that they cannot sign in to Google Workspace after their username was changed in the third-party SSO product. They can sign in to their other internal applications that use SSO. and no other users are experiencing issues signing in. What could be causing the sign-in issue?
- A. The user's Google password was changed administratively, which is causing a sign-in failure.
- B. The SAML assertion provided by the third-party IDP is presenting a username that conflicts with the current username configured in Google Workspace.
- C. The issued certificate for that user has been revoked and must be updated before the user can have another successful sign in.
- D. The SAML assertion is providing the user's previous password attached to their old username.
Answer: B
Explanation:
The sign-in issue arises because the SAML assertion provided by the third-party IDP is presenting a username that conflicts with the current username configured in Google Workspace. When a username is changed in the third-party IDP, it must be synchronized with Google Workspace. If this synchronization does not happen, Google Workspace will not recognize the updated username and will prevent the user from signing in.
* Verify that the username in the SAML assertion matches the username in Google Workspace.
* If there is a mismatch, update the username in Google Workspace to match the SAML assertion.
* Ensure that future changes in the third-party IDP are reflected in Google Workspace.
References:
* Google Workspace Admin Help: Troubleshoot single sign-on
NEW QUESTION # 97
Your organization recently bought 1.000 licenses for Cloud Identity Premium. The company's development team created an application in the enterprise service bus (ESB) that will read user data in the human resources information system (HRIS) and create accounts via the Google Directory REST API.
While doing the original test before production use, the team observes a 503 error coming from Google API response after a few users are created The team believes the ESB is not the cause, because it can perform 100 requests per second without any problems. What advice would you give the development team in order to avoid the issue?
- A. Use the batch request architecture, because it can pack 1,000 API calls in one HTTP request.
- B. Switch from REST API to gRPC protocol for performance improvement
- C. Use the domain-wide delegation API to avoid the limitation per account.
- D. Use an exponential back-off algorithm to retry failed requests.
Answer: D
Explanation:
* Understand the Error:
* A 503 error indicates that the service is unavailable, often due to temporary overloading or maintenance of the server.
* This can happen when API rate limits are exceeded.
* Exponential Back-Off Algorithm:
* This algorithm helps manage retries after a request fails, by exponentially increasing the waiting time between retries.
* Start with a short delay and increase it exponentially with each subsequent retry.
* Implementation:
* Modify the ESB application to include the exponential back-off algorithm.
* Ensure that the retries are limited to a reasonable number to avoid indefinite looping.
* This approach will help mitigate the temporary overloads by spreading out the request attempts.
References
* Google Workspace Admin Help: Handle API Errors
* Google Developers: Exponential Backoff
NEW QUESTION # 98
Multiple users across the organization are experiencing video degradation in Meet video calls. As an administrator, what steps should you take to start troubleshooting?
- A. Push the Meet quality tool to end user devices and run local reports to determine connectivity issues.
- B. Troubleshoot network bandwidth for the organizer of the meeting.
- C. Update the Admin Console Meet settings to disable streaming.
- D. Locate the Meet quality tool, and review the output for issues with quality.
Answer: D
NEW QUESTION # 99
Your company wants to provide secure access for its employees. The Chief Information Security Officer disabled peripheral access to devices, but wants to enable 2-Step verification. You need to provide secure access to the applications using Google Workspace.
What should you do?
- A. Configure USB Yubikeys for all users.
- B. Deploy browser or device certificates via Google Workspace.
- C. Enable authentication via the Google Authenticator.
- D. Enable additional security verification via email.
Answer: C
Explanation:
2-Step Verification (2SV):
2-Step Verification adds an extra layer of security by requiring users to verify their identity using a second factor in addition to their password. This helps protect against unauthorized access, even if the password is compromised.
Google Authenticator:
Google Authenticator is a mobile app that generates time-based one-time passcodes (TOTP) for 2SV. It works even when the device is offline, providing a secure and reliable second factor for authentication.
Implementation Steps:
Enable 2-Step Verification:
Go to the Google Admin console (admin.google.com).
Navigate to Security > Authentication > 2-Step Verification.
Turn on 2-Step Verification for the organization.
Deploy Google Authenticator:
Instruct users to download the Google Authenticator app from their respective app stores (iOS or Android).
Provide guidance on setting up Google Authenticator with their Google Workspace accounts.
Users will scan a QR code provided during the setup process to link their account with the Authenticator app.
Advantages of Google Authenticator:
Security: It provides a highly secure method of 2-step verification as the codes are generated on the user's device and change every 30 seconds.
Ease of Use: It's easy to set up and use, with a straightforward user interface.
Offline Functionality: Codes can be generated even without internet access, ensuring consistent access to 2SV codes.
Why Other Options Are Less Suitable:
A . Enable additional security verification via email:
Email-based verification is less secure than app-based 2SV because email accounts can be more easily compromised.
C . Deploy browser or device certificates via Google Workspace:
While device certificates add security, they are typically used for device management and access control rather than for 2-step verification purposes.
D . Configure USB Yubikeys for all users:
USB Yubikeys are highly secure and suitable for 2SV, but they require physical distribution and management of hardware tokens, which can be logistically complex and costly. Given the context of disabled peripheral access, this option might contradict the policy of the Chief Information Security Officer.
Reference:
Google Workspace Admin Help: Set up 2-Step Verification
Google Workspace Security: 2-Step Verification
NEW QUESTION # 100
An employee has been leaking confidential salary information to an external party. You must use Vault to preserve the messages for an investigation. What should you do?
- A. Create a custom retention policy. Use the audit feature to view captured email logs.
- B. Use the search and export features to find all the messages sent externally.
- C. Use the security investigation tool to find the messages. Create a hold to preserve the messages.
- D. Create a matter and add a hold on the employee's email.
Answer: D
NEW QUESTION # 101
The executive team for your company has an extended retention policy of two years in place so that they have access to email for a longer period of time. Your COO has found this useful in the past but when they went to find an email from last year to prove details of a contract in dispute, they were unable to find it. itis no longer in the Trash. They have requested that you recover it.
What should you do?
- A. Using the Message ID, contact Google Google Workspace support to recover the email, then import with Google Workspace Migration for Microsoft Outlook.
- B. Using the Vault Audit log, perform a search for the email, export the results. then import with Google Workspace Migration for Microsoft Outlook.
- C. Using Vault, perform a search for the email and export the content to a standard format to provide for investigation.
Answer: C
Explanation:
Access Google Vault:
Go to Google Vault by navigating to vault.google.com.
Perform a Search:
In Vault, create a new search query specifying the criteria (e.g., date range, email address, keywords) to locate the missing email.
Use search operators to refine the search and ensure you find the correct email.
Export the Email:
Once the email is located, select it and choose the export option.
Export the email data in a standard format, such as MBOX or PST, which can be used for investigation and recovery purposes.
Provide the Exported Data:
Provide the exported email data to the COO for their review and use in the contract dispute.
Reference
Google Vault Help: Search for and export data
NEW QUESTION # 102
Your organization has noticed several incidents of accidental oversharing inside the organization.
Specifically, several users have shared sensitive Google Drive items with the entire organization by clicking 'anyone in this group with this link can view'. You have been asked by senior management to help users share more appropriately and also to prevent accidental oversharing to the entire organization. How would you best accomplish this?
- A. Create groups, add users accordingly, and educate users on how to share to specific groups of people.
- B. Temporarily disable the Google Drive service for individuals who continually overshare.
- C. Determine sharing boundaries for users that work with sensitive information, and then implement target audiences.
- D. Disable sharing to the entire organization so that users must consciously add every person who needs access.
Answer: C
Explanation:
https://support.google.com/a/answer/9934697?hl=en#zippy=:~:text=Why%20use%20target,for%2
0broad%20sharing
NEW QUESTION # 103
Your company recently decided to use a cloud-based ticketing system for your customer care needs. You are tasked with rerouting email coming into your customer care address, [email protected] to the cloud platform's email address, [email protected]. As a security measure, you have mail forwarding disabled at the domain level.
What should you do?
- A. Create a mail contact in the Google Workspace directory that has an email address of your- [email protected]
- B. Create a content compliance rule in the Google Workspace Admin console to change route to your- [email protected]
- C. Create a rule to forward mail in the [email protected] mailbox to your- [email protected]
- D. Create a recipient map in the Google Workspace Admin console that maps [email protected] to [email protected]
Answer: B
Explanation:
* Access the Admin Console: Log into your Google Workspace Admin Console.
* Navigate to Apps: Go to Apps > Google Workspace > Gmail > Compliance.
* Create a Content Compliance Rule: Create a new content compliance rule.
* Set Conditions: Set the condition to apply to incoming mail for [email protected].
* Change Route: Configure the rule to change the route to [email protected]. This effectively reroutes emails without using traditional forwarding, which is disabled at the domain level.
* Save and Apply: Save the compliance rule and ensure it is applied to enforce the new routing policy.
References
* Google Support: Set up content compliance
NEW QUESTION # 104
Your organization uses a third-party product to filter mail before it arrives at your Workspace Domain. How should you configure Gmail to ensure that inbound messages are not seen as a spam attack due to the volume of mail being received from this product?
- A. Add the product's IP addresses to your organization's SPF record.
- B. List the IP addresses of the product as an Inbound Gateway.
- C. Allowlist the IP addresses of the third-party filtering product.
- D. Add the product's IP addresses as an approved sender.
Answer: B
Explanation:
To ensure that inbound messages from the third-party filtering product are not seen as a spam attack, you should list the IP addresses of the product as an Inbound Gateway. This configuration tells Gmail that the emails coming from these IP addresses are trusted and should not be flagged as spam due to the volume of mail being received.
Reference:
Google Workspace Admin Help - Configure an inbound mail gateway
Google Workspace Admin Help - Prevent email spoofing and spam using the Inbound Gateway setting
NEW QUESTION # 105
Your organization has just appointed a new CISO. They have signed up to receive admin alerts and just received an alert for a suspicious login attempt. They are trying to determine how frequently suspicious login attempts occur within the organization. The CISO has asked you to provide details for each user account that has had a suspicious login attempt in the past year and the number of times it occurred for each account.
What action should you take to meet these requirements?
- A. Create a custom query in BigQuery showing all suspicious login details.
- B. Create a custom dashboard with the security investigation tool showing suspicious logins.
- C. Use the account activity report to export all suspicious login details for analysis.
- D. Use the login audit report to export all suspicious login details for analysis.
Answer: D
Explanation:
Login audit log Track user sign-in activity You can use the Login audit log to track user sign-ins to your domain. You can review all sign-ins from web browsers. If a user signs in from an email client or a non-browser application, you can only review reports of suspicious attempts. Forward log event data to the Google Cloud Platform You can opt in to share the log event data with Google Cloud Platform. If you turn on sharing, data is forwarded to Cloud Logging, where you can query and view your logs, and control how you route and store your logs.
https://support.google.com/a/answer/4580120?hl=en
NEW QUESTION # 106
......
Google-Workspace-Administrator Dumps To Pass Google Exam in 24 Hours - Exams4Collection: https://www.exams4collection.com/Google-Workspace-Administrator-latest-braindumps.html
Buy Latest Google-Workspace-Administrator Exam Q&A PDF - One Year Free Update: https://drive.google.com/open?id=1Jdbf-1EN5dx6RrmerBYf9gGHarQkLkXX
