
Pass Google-Workspace-Administrator Exam in First Attempt Guaranteed 100% Cover Real Exam Questions [Apr-2024]
Valid Google-Workspace-Administrator test answers & Google Google-Workspace-Administrator exam pdf
Google-Workspace-Administrator certification exam is an industry-recognized credential that validates a professional's knowledge and skills in administering Google Workspace. Google Cloud Certified - Professional Google Workspace Administrator certification is offered by Google Cloud and is intended for individuals who are responsible for managing and maintaining Google Workspace environments for their organizations. The Google-Workspace-Administrator certification exam is designed to test an individual's proficiency in various aspects such as user and group management, security, compliance, and data migration.
NEW QUESTION # 10
Your company has received help desk calls from users about a new interface in Gmail that they had not seen before. They determined that it was a new feature that Google released recently. In the future, you'll need time to review the new features so you can properly train employees before they see changes.
What action should you take?
- A. Company Profile > Profile > New User Features > Enable "Scheduled Release"
- B. Apps > Google Workspace > Gmail > Uncheck "Enable Gmail Labs for my users"
- C. Device Management > Chrome > Device Settings > Stop auto-updates
- D. Company Profile > Profile > New User Features > Enable "Rapid Release"
Answer: A
NEW QUESTION # 11
Your-company.com finance departments want to create an internal application that needs to read data from spreadsheets. As the collaboration engineer, you suggest using App Maker. The Finance team is concerned about data security when creating applications with App Maker.
What security measures should you implement to secure data?
- A. Change owner access permissions to allow internal usage only.
- B. Enable App Maker access only for the Finance department Organization Unit.
- C. Use a service account with limited permissions to access each data source.
- D. Use Roles, Script, and Owner access permissions for operations on records and data relations.
Answer: D
Explanation:
https://developers.google.com/appmaker/security/overview
NEW QUESTION # 12
Your Security Officer ran the Security Health Check and found the alert that "Installation of mobile applications from unknown sources" was occurring. They have asked you to find a way to prevent that from happening.
Using Mobile Device Management (MDM), you need to configure a policy that will not allow mobile applications to be installed from unknown sources.
What MDM configuration is needed to meet this requirement?
- A. In the Application Management menu, configure the whitelist of apps that Android, iOS devices, and Active Sync devices are allowed to install.
- B. In the Application Management menu, configure the whitelist of apps that Android and iOS devices are allowed to install.
- C. In Device Management > Setup > Device Approvals menu, configure the "Requires Admin approval" option.
- D. In Android Settings, ensure that "Allow non-Play Store apps from unknown sources installation" is unchecked.
Answer: D
NEW QUESTION # 13
You are in the middle of migrating email from on-premises Microsoft Exchange to Google Workspace. Users that you have already migrated are complaining of messages from internal users going into spam folders. What should you do to ensure that internal messages do not go into Gmail spam while blocking spoofing attempts?
- A. Add all users of your domain to an approved sender list.
- B. Force TLS for your domain.
- C. Ensure that your inbound gateway is configured with all of your Exchange server IP addresses.
- D. Train users to click on Not Spam button for emails.
Answer: A
Explanation:
Approved senders list-Approved senders are trusted users that send email to your organization. Create an address list of approved senders so messages from these users bypass Gmail's spam filters, and recipients can decide whether they are spam or not. Create the list with individual email addresses, or by adding an entire domain.
https://support.google.com/a/answer/60752?hl=en#:~:text=Approved%20senders%20list%E2%80%94,settings%20in%20Google%20Workspace.
NEW QUESTION # 14
Your marketing department needs an easy way for users to share items more appropriately. They want to easily link-share Drive files within the marketing department, without sharing them with your entire company. What should you do to fulfil this request? (Choose two.)
- A. Create a shared drive that's shared internally organization-wide.
- B. Update Drive sharing for the marketing department to restrict to internal.
- C. In the admin panel Drive settings, create a target audience that has all of marketing as members.
- D. Update the link sharing default to the marketing team when creating a document.
- E. Create a shared drive for internal marketing use.
Answer: C,E
Explanation:
https://support.google.com/a/users/answer/9310249#1.2
https://support.google.com/a/answer/9935192?hl=en#:~:text=a%20target%20audience-,Create%20a%20target%20audience,as%20Google%20Drive%2C%20to%20make%20it%20available%20in%20users%27%20sharing%20settings.,-Before%20you%20begin
https://support.google.com/a/answer/9934697?hl=en
NEW QUESTION # 15
A user joined your organization and is reporting that every time they start their computer they are asked to sign in. This behavior differs from what other users within the organization experience. Others are prompted to sign in biweekly. What is the first step you should take to troubleshoot this issue for the individual user?
- A. Confirm that this user has their employee ID populated as a sign-in challenge.
- B. Verify that 2-Step Verification is enforced for this user.
- C. Check the session length duration for the organizational unit the user is provisioned in.
- D. Reset the user's sign-in cookies
Answer: A
NEW QUESTION # 16
Your organization has a new security requirement around data exfiltration on iOS devices. You have a requirement to prevent users from copying content from a Google app (Gmail, Drive, Docs, Sheets, and Slides) in their work account to a Google app in their personal account or a third-party app. What steps should you take from the admin panel to prevent users from copying data from work to non-work apps on iOS devices?
- A. Disable "Open Docs in Unmanaged Apps" setting in Google Admin Console's Device management section.
- B. Clear the "Allow items created with managed apps to open in unmanaged apps" checkbox.
- C. Navigate to "Data Protection" setting in Google Admin Console's Device management section and disable the "Allow users to copy data to personal apps" checkbox.
- D. Navigate to Devices > Mobile and endpoints > Universal Settings > General and turn on Basic Mobile Management.
Answer: C
Explanation:
https://support.google.com/a/answer/6328700?hl=en&ref_topic=6079327#managed_apps&zippy=%2Cdata-actions Allow users to copy Google Workspace items to personal apps Allows users to copy content from a Google app (such as Gmail, Drive, Docs, Sheets, Slides, Chat, and Meet) to a Google app in their personal account or a third-party app. Also allows users to drag content between Google apps, for any account.
To prevent users from copying or dragging information from their work account, or using the All inboxes feature (which combines messages from multiple Gmail accounts into one inbox), uncheck the box.
NEW QUESTION # 17
Your-company.com recently started using Google Workspace. The CIO is happy with the deployment, but received notifications that some employees have issues with consumer Google accounts (conflict accounts). You want to put a plan in place to address this concern.
What should you do?
- A. Ask users to request a new Google Workspace account from your local admin.
- B. Use the conflict account remove tool to remove the accounts from Google Workspace.
- C. Rename the accounts to [email protected], and recreate the accounts.
- D. Use the Transfer tool for unmanaged users to find the conflict accounts.
Answer: D
Explanation:
https://gsuiteupdates.googleblog.com/2017/02/resolve-conflicting-accounts-with-new.html#:~:text=Using%20the%20new%20Transfer%20tool,accounts%20to%20G%20Suite%20accounts. https://support.google.com/a/answer/6178640?hl=en
NEW QUESTION # 18
Your company has an OU that contains your sales team and an OU that contains your market research team. The sales team is often a target of mass email from legitimate senders, which is distracting to their job duties. The market research team also receives that email content, but they want it because it often contains interesting market analysis or competitive intelligence. Constant Contact is often used as the source of these messages. Your company also uses Constant Contact for your own mass email marketing. You need to set email controls at the Sales OU without affecting your own outgoing email or the market research OU.
What should you do?
- A. Create a blocked senders list at the root level, and then an approved senders list at the Market Research OU, both containing the mass email sender addresses.
- B. Create a blocked senders list at the Sales OU that contains the mass email sender addresses.
- C. Create an approved senders list at the Market Research OU that contains the mass email sender addresses.
- D. Create a blocked senders list as the Sales OU that contains the mass email sender addresses, but bypass this setting for Constant Contact emails.
Answer: B
Explanation:
"The sales team is often a target of mass email from legitimate senders, which is distracting to their job duties" and "Constant Contact is often used as the source of these messages". Nowhere in the question did it specify that emails received via Constant Contact should be allowed for the sales OU. It only mentioned that the company uses Constant Contact for its own outgoing emails- which in this case does not affect the answer at all.
NEW QUESTION # 19
A user is reporting that after they sign in to Gmail, their labels are not loading and buttons are not responsive. What action should you take to troubleshoot this issue with the user?
- A. Check whether the issue occurs when the user authenticates on a different device or a new incognito window.
- B. Check whether a ping test to service.gmail.com (pop.gmail.com or imap.gmail.com) is successful.
- C. Collect full message headers for examination.
- D. Check whether traceroute to service.gmail.com (pop.gmail.com or imap.gmail.com) is successful.
Answer: A
NEW QUESTION # 20
What action should be taken to configure alerting related to phishing attacks?
- A. Set up an Admin audit log event alert.
- B. Set up a suspicious login event alert.
- C. Set up an email settings changed alert.
- D. Set up a Token audit log event alert.
Answer: B
NEW QUESTION # 21
As a team manager, you need to create a vacation calendar that your team members can use to share their time off. You want to use the calendar to visualize online status for team members, especially if multiple individuals are on vacation What should you do to create this calendar?
- A. Create a secondary calendar under your account, and give your team "See only free/busy" access
- B. Request the creation of a calendar resource, configure the calendar to "Automatically add all invitations to this calendar," and give your team "See only free/busy" access.
- C. Request the creation of a calendar resource, configure the calendar to "Auto-accept invitations that do not conflict," and give your team "See all event details" access.
- D. Create a secondary calendar under your account, and give your team "Make changes to events" access.
Answer: B
Explanation:
https://support.google.com/a/answer/1034381?hl=en#:~:text=Automatically%20add%20all%20invitations%20to%20this%20calendar%E2%80%94All%20invitations%20show%20up%20on%20the%20resource%27s%20calendar%20even%20if%20some%20of%20them%20are%20for%20events%20that%20take%20place%20at%20the%20same%20time.
NEW QUESTION # 22
Your company's Chief Information Security Officer has made a new policy where third-party apps should not have OAuth permissions to Google Drive. You need to reconfigure current settings to adhere to this policy.
What should you do?
- A. Access the Security Menu > API Permissions > choose Drive and Disable High Risk Access.
- B. Access the Security Menu> API Reference > disable all API Access.
- C. Access the Security Menu > API Permissions > choose Drive and Disable All Access.
- D. Access Apps > Google Workspace > Drive and Docs > Sharing Settings and disable sharing outside of your domain
Answer: A
NEW QUESTION # 23
In the years prior to your organization moving to Google Workspace, it was relatively common practice for users to create consumer Google accounts with their corporate email address (for example, to monitor Analytics, manage AdSense, and collaborate in Docs with other partners who were on Google Workspace.) You were able to address active employees' use of consumer accounts during the rollout, and you are now concerned about blocking former employees who could potentially still have access to those services even though they don't have access to their corporate email account.
What should you do?
- A. Contact Google Enterprise Support to provide a list of all accounts on your domain(s) that access non-Google Workspace Google services and have them blocked.
- B. Use the Transfer Tool for Unmanaged Accounts to send requests to the former users to transfer their account to your domain as a managed account.
- C. Provide a list of all active employees to the managers of your company's Analytics, AdSense, etc. accounts, so they can clean up the respective access control lists.
- D. Provision former user accounts with Cloud Identity licenses, generate a new Google password, and place them in an OU with all Google Workspace and Other Google Services disabled.
Answer: B
Explanation:
https://support.google.com/a/answer/6178640?hl=en
NEW QUESTION # 24
Your organization deployed Google Workspace Enterprise within the last year, with the support of a partner. The deployment was conducted in three stages: Core IT, Google Guides, and full organization. You have been tasked with developing a targeted ongoing adoption plan for your Google Workspace organization.
What should you do?
- A. Use Reports APIs to gather adoption metrics and Gmail APIs to deliver training content directly.
- B. Use a script to monitor Email attachment types and target users that aren't using Drive sharing.
- C. Use Google Guides to deliver ad-hoc training to all of their co-workers and reports.
- D. Use Work Insights to gather adoption metrics and target your training exercises.
Answer: C
Explanation:
[https://static.googleusercontent.com/media/www.google.com/en//support/enterprise/static/gapps/docs/admin/en/gapps_transition/gapps_transition_guide.pdf] identifies Google Guides as early adopters and champions that can help co-workers get up to speed quickly
NEW QUESTION # 25
How can you monitor increases in user reported Spam as identified by Google?
- A. Review post-delivery activity in the Email logs.
- B. Review spike in user-reported spam in the Alert center.
- C. Review post-delivery activity in the BigQuery Export.
- D. Review user-reported spam in the Investigation Tool.
Answer: B
Explanation:
https://support.google.com/a/answer/9104586?hl=en
NEW QUESTION # 26
You have configured Secure Transport (TLS) Compliance for all messages coming to and from an external domain. altostrat.com. that your end users communicate with via Gmail. What will your end users experience when messages are delivered to them from altostrat.com without TLS enabled?
- A. A warning banner will appear on the message informing the user that the message was not sent securely.
- B. The message will not be delivered to the end user in any form.
- C. The message will be delivered to their spam folder.
- D. The user will receive a failure message informing them that the message could not be delivered to their inbox and that they will need to work with their Workspace administrator to resolve the issue.
Answer: A
NEW QUESTION # 27
Your organization's information security team has asked you to determine and remediate if a user ([email protected]) has shared any sensitive documents outside of your organization. How would you audit access to documents that the user shared inappropriately?
- A. As a super administrator, change the access on externally shared Drive files manually under [email protected].
- B. Have the super administrator use the Security API to audit Drive access.
- C. Open Security Investigation Tool-> Drive Log Events. Add two conditions: Visibility Is External, and Actor Is [email protected].
- D. Open Security Dashboard-> File Exposure Report-> Export to Sheet, and filter for [email protected].
Answer: C
Explanation:
https://support.google.com/a/answer/11480192?hl=en&ref_topic=11479095#:~:text=View%20files%20shared,Click%20Search.
NEW QUESTION # 28
The CFO just informed you that one of their team members wire-transferred money to the wrong account because they received an email that appeared to be from the CFO. The CFO has provided a list of all users that may be responsible for sending wire transfers. The CFO also provided a list of banks the company sends wire transfers to. There are no external users that should be requesting wire transfers. The CFO is working with the bank to resolve the issue and needs your help to ensure that this does not happen again.
What two actions should you take? (Choose two.)
- A. Enable all admin settings in Gmail's safety > spoofing and authentication.
- B. Add the sender of the wire transfer email to the blocked senders list.
- C. Configure objectionable content to reject messages with the words "wire transfer."
- D. Create a rule requiring secure transport for all messages regarding wire transfers.
- E. Verify that DMARC, DKIM, and SPF records are configured correctly for your domain.
Answer: B,E
NEW QUESTION # 29
Your chief compliance officer is concerned about API access to organization data across different cloud vendors. He has tasked you with compiling a list of applications that have API access to Google Workspace data, the data they have access to, and the number of users who are using the applications.
How should you compile the data being requested?
- A. Review the API permissions installed apps list, and export the list.
- B. Review the token audit log, and compile a list of all the applications and their scopes.
- C. Review the authorized applications for each user via the Google Workspace Admin panel.
- D. Create a survey via Google forms, and collect the application data from users.
Answer: B
Explanation:
https://support.google.com/a/answer/7281227?hl=en
https://support.google.com/a/answer/6124308?hl=en
NEW QUESTION # 30
Your company has acquired a new company in Japan and wants to add all employees of the acquisition to your existing Google Workspace domain. The new company will retain its original domain for email addresses and, due to the very sensitive nature of its work, the new employees should not be visible in the global directory. However, they should be visible within each company's separate directory. What should you do to meet these requirements?
- A. Under Directory Settings > Contact sharing, disable the contact sharing option and wait for 24 hours to allow the settings to propagate before creating the new employee accounts.
- B. Create one dynamic group for each company based on a custom attribute defining the company. In Directory Settings > Visibility Settings, define custom directories for each company, and set up Visibility according to the dynamic group.
- C. Redesign your OU organization to have 2 child OUs for each company directly under the root. In Directory Settings > Visibility Settings, define custom directories for each company, and set up Visibility according to the OU.
- D. Create a new Google Workspace domain isolated from the existing one, and create users in the new domain instead.
Answer: C
Explanation:
https://support.google.com/a/answer/7566446?hl=en&ref_topic=9832541
NEW QUESTION # 31
Your company uses a whitelisting approach to manage third-party apps and add-ons. The Senior VP of Sales
& Marketing has urgently requested access to a new Marketplace app that has not previously been vetted. The company's Information Security policy empowers you, as a Google Workspace admin, to grant provisional access immediately if all of the following conditions are met:
Access to the app is restricted to specific individuals by request only.
The app does not have the ability to read or manage emails.
Immediate notice is given to the Infosec team, followed by the submission of a security risk analysis report within 14 days.
Which actions should you take first to ensure that you are compliant with Infosec policy?
- A. Move the Senior VP to a sub-OU before enabling Marketplace Settings > "Allow Users to Install Any App from Google Workspace Marketplace."
- B. Confirm that the Senior VP's OU has the following Gmail setting disabled before whitelisting the app: "Let users delegate access to their mailbox."
- C. Search the Google Workspace support forum for feedback about the app to include in the risk analysis report.
- D. Add the Marketplace app, then review the authorized scopes in Security > Manage API client access.
Answer: D
Explanation:
https://support.google.com/a/answer/7281227?hl=en
NEW QUESTION # 32
......
To pass the Google Workspace Administrator Certification Exam, candidates must demonstrate a deep understanding of the key features and functionality of Google Workspace applications. This includes the ability to configure and manage user accounts, design and implement security policies, and troubleshoot common issues. Additionally, candidates must demonstrate a strong understanding of best practices for managing Google Workspace, including user training and support, data migration, and integration with third-party applications.
Google-Workspace-Administrator Exam Questions – Valid Google-Workspace-Administrator Dumps Pdf: https://ensurepass.testkingfree.com/Google/Google-Workspace-Administrator-practice-exam-dumps.html