Validate your Google-Workspace-Administrator Exam Preparation with Google-Workspace-Administrator Practice Test (Online & Offline) [Q70-Q94]

Share

Validate your Google-Workspace-Administrator Exam Preparation with Google-Workspace-Administrator Practice Test (Online & Offline)

Get all the Information About Google Google-Workspace-Administrator Exam 2024 Practice Test Questions


Google Workspace Administrator exam is a professional certification exam offered by Google Cloud. Those who pass the exam earn the title of Google Cloud Certified - Professional Google Workspace Administrator. Google Cloud Certified - Professional Google Workspace Administrator certification demonstrates a high level of expertise in managing and administering Google's suite of productivity tools, including Gmail, Drive, Docs, Sheets, and more.


To become certified, candidates must pass the 2-hour exam, which consists of multiple-choice and scenario-based questions. Google-Workspace-Administrator exam is administered online and can be taken from anywhere in the world. Upon passing, candidates will receive a digital badge and certificate, which they can use to showcase their expertise and credibility as a Google Workspace administrator. Google Cloud Certified - Professional Google Workspace Administrator certification is valuable for IT professionals who work with Google Workspace or who are interested in pursuing roles that require expertise in managing cloud-based productivity tools.


Google Workspace Administrator certification exam is designed to test an individual's knowledge and skills related to managing and administering Google Workspace. Google-Workspace-Administrator exam covers a wide range of topics, including user and group management, security, compliance, data migration, and integration with other applications. Google Cloud Certified - Professional Google Workspace Administrator certification exam is intended for professionals who are responsible for managing and administering Google Workspace in their organizations, such as IT administrators, system administrators, and technical consultants.

 

NEW QUESTION # 70
Your organization's Sales Department uses a generic user account ([email protected]) to manage requests. With only one employee responsible for managing the departmental account, you are tasked with providing the department with the most efficient means to allow multiple employees various levels of access and manage requests from a common email address.
What should you do?

  • A. Configure a Google Group as a collaborative inbox.
  • B. Delegate email access to department employees.
  • C. Configure a Google Group, and set the Access Level to Announcement Only.
  • D. Configure a Google Group as an email list.

Answer: A

Explanation:
https://support.google.com/a/answer/167430?hl=en


NEW QUESTION # 71
As the Workspace Administrator, you have been asked to configure Google Cloud Directory Sync (GCDS) in order to manage Google Group memberships from an internal LDAP server. However, multiple Google Groups must have their memberships managed manually. When you run the GCDS sync, you notice that these manually managed groups are being deleted. What should you do to prevent these groups from being deleted?

  • A. In the user attribute settings of the GCDS configuration manager options, set the Google domain users deletion/suspension policy to "delete only active Google domain users not found in LDAP."
  • B. Use the Directory API to check and update the group's membership after the GCDS sync is completed.
  • C. In the GCDS configuration manager, update the group deletion policy setting to "don't delete Google groups not found in LDAP."
  • D. Confirm that the base DN for the group email address attribute matches the base DN for the user email address attribute.

Answer: C

Explanation:
https://support.google.com/a/answer/6258071?hl=en#zippy=%2Cgoogle-group-deletion-policy Don't delete Google Groups not found in LDAP If checked, Google Group deletions in your Google domain are disabled, even when the Groups aren't in your LDAP server.


NEW QUESTION # 72
Your organization has just appointed a new CISO. They have signed up to receive admin alerts and just received an alert for a suspicious login attempt. They are trying to determine how frequently suspicious login attempts occur within the organization. The CISO has asked you to provide details for each user account that has had a suspicious login attempt in the past year and the number of times it occurred for each account.
What action should you take to meet these requirements?

  • A. Use the account activity report to export all suspicious login details for analysis.
  • B. Use the login audit report to export all suspicious login details for analysis.
  • C. Create a custom query in BigQuery showing all suspicious login details.
  • D. Create a custom dashboard with the security investigation tool showing suspicious logins.

Answer: B

Explanation:
Login audit log Track user sign-in activity You can use the Login audit log to track user sign-ins to your domain. You can review all sign-ins from web browsers. If a user signs in from an email client or a non-browser application, you can only review reports of suspicious attempts. Forward log event data to the Google Cloud Platform You can opt in to share the log event data with Google Cloud Platform. If you turn on sharing, data is forwarded to Cloud Logging, where you can query and view your logs, and control how you route and store your logs https://support.google.com/a/answer/4580120?hl=en


NEW QUESTION # 73
An administrator accidentally deleted several Workspace user accounts from the Google Admin Console two weeks ago. How can you recover the deleted user accounts?

  • A. Open a Google support ticket, and request a recovery of all recently deleted users.
  • B. Sign in to the Admin console as Help Desk Admin, open user management, filter for "recently deleted." and recover.
  • C. Sign in to the Admin console as Super Admin, open user management, filter for "recently deleted." and recover.
  • D. Create a matter, go to legal hold, and create a legal hold for the user accounts.

Answer: C


NEW QUESTION # 74
Your company's Google Workspace primary domain is "mycompany.com," and it has acquired a startup that is using another cloud provider with a domain named "mystartup.com." You plan to add all employees from the startup to your Google Workspace domain while preserving their current mail addresses. The startup CEO's email address is [email protected], which also matches your company CEO's email address as [email protected], even though they are different people. Each must keep the usage of their email. In addition, your manager asked to have all existing security policies applied for the new employees without any duplication. What should you do to implement the migration?

  • A. Create the startup employees in the "mycompany.com' domain, and add a number at the end of the user name whenever there is a conflict. In Gmail > Routing, define a specific route for the OU that targets the startup employees, which will modify the email address domain to "mystartup.com," and remove any numbers previously added. In addition, confirm that the SPF and DKIM records are properly set.
  • B. Create an alias domain, mystartup.com, in your existing Google Workspace domain, set up necessary DNS records, and create all startup employees with the alias domain as their primary email addresses.
  • C. Create a new Google Workspace domain with "mystartup.com," and create a trust between both domains for reusing the same security policies and sharing employee information within the companies.
  • D. Create a secondary domain, mystartup.com, within your current Google Workspace domain, set up necessary DNS records, and create all startup employees with the secondary domain as their primary email addresses.

Answer: D


NEW QUESTION # 75
A retail company has high employee turnover due to the cyclical nature in the consumer space. The increase in leaked confidential content has created the need for a specific administrative role to monitor ongoing employee security investigations. What step should you take to increase the visibility of such investigations?

  • A. Create a 'Custom Role' and add the ability to manage Google Vault matters, holds, searches, and exports.
  • B. Create a 'Custom Role' and add all the Google Vault privileges for a new administrator.
  • C. Assign the 'Services Admin' role to an administrator with 'Super Admin' privileges.
  • D. Validate that the new administrator has access to Google Vault.

Answer: A


NEW QUESTION # 76
An end user informs you that they are having issues receiving mail from a specific sender that is external to your organization. You believe the issue may be caused by the external entity's SPF record being incorrectly configured. Which troubleshooting step allows you to examine the full message headers for the offending message to determine why the messages are not being delivered?

  • A. Perform an SPF record check on the domain to determine whether their SPF record is valid.
  • B. Use the Email Log Search to directly review the message headers.
  • C. Use the Security Investigation Tool to review the message headers.
  • D. Use the Postmaster Tools API to pull the message headers.

Answer: C

Explanation:
https://support.google.com/a/answer/9300435?hl=en#zippy=%2Cstep-view-the-email-message-and-take-action%2Cstep-provide-justification-to-view-messages%2Cstep-get-started-with-your-investigation


NEW QUESTION # 77
As a Google Workspace administrator for your organization, you are tasked with identifying how users are reporting their messages-whether spam, not spam, or phishing-for a specific time period. How do you find this information?

  • A. Open Admin Console > Reporting > Email Log Search.
  • B. Open Admin Console > Security > Dashboard > User Reports.
  • C. Open Admin Console > Security > Dashboard > Spam Filter- Phishing.
  • D. Use Reports API to query user Gmail activity.

Answer: B


NEW QUESTION # 78
Your organization uses a third-party product to filter mail before it arrives at your Workspace Domain. How should you configure Gmail to ensure that inbound messages are not seen as a spam attack due to the volume of mail being received from this product?

  • A. List the IP addresses of the product as an Inbound Gateway.
  • B. Add the product's IP addresses to your organization's SPF record.
  • C. Allowlist the IP addresses of the third-party filtering product.
  • D. Add the product's IP addresses as an approved sender.

Answer: A


NEW QUESTION # 79
Your client is a multinational company with a single email domain. The client has compliance requirements and policies that vary by country. You need to configure the environment so that each country has their own administrator and no administrator can manage another country.
What should you do?

  • A. Create an OU for each country. Create an admin role and assign an admin with that role per OU.
  • B. Create Admin Alerts, and use the Security Center to audit whether admins manage countries other than their own.
  • C. Create a Team Drive per OU, and allow only country-specific administration of each folder.
  • D. Establish a new Google Workspace tenant with their own admin for each region.

Answer: A

Explanation:
https://support.google.com/a/answer/6129577?hl=en#:~:text=Create%20and%20assign%20the%20role&text=Click%20Assign%20role.,organizational%20unit%20and%20click%20Done.


NEW QUESTION # 80
Your organization is concerned with the increasing threat of phishing attacks that may impact users.
Leadership has declined to force-enable 2-Step verification. You need to apply a security measure to prevent unauthorized access to user accounts.
What should you do?

  • A. Decrease the Maximum User Session Length.
  • B. Revoke token authorizations to external applications.
  • C. Enable Enforce Strong Password policy.
  • D. Enable Employee ID Login Challenge.

Answer: D

Explanation:
You can use employee IDs as a login challenge. Employee IDs are more difficult to guess and phish than other types of identity challenges. To use the employee ID login challenge, you need to make sure that IDs are associated with your users' accounts. https://support.google.com/a/answer/6002699?hl=en


NEW QUESTION # 81
Your organization is planning to remove any dependencies on Active Directory (AD) from all Cloud applications they are using You are currently using Google Cloud Directory Sync (GCDS) with on-premises AD as a source to provision user accounts in Google Workspace. Your organization is also using a software-as-a-service (SaaS) human resources information system (HRIS) that offers integration via CSV export and Open API standard.
Additional requirements for the solution include:
* It should not require a subscription to any additional third-party service.
* The process must be automated from beginning to end.
You are tasked with the design and implementation of a solution to address user provisioning with these requirements.
What solution should you implement?

  • A. Export HRIS data to a CSV file every day. and build a solution to define the delta with the previous day; import the result as a CSV file via the Admin console.
  • B. Build an application that will fetch updated data from the HRIS system via Open API. and then update Google Workspace with the Directory API accordingly.
  • C. Set up Azure AD and federate on-premises AD with it. Provision user accounts from Azure AD with the Google-recommended process.
  • D. Modify the GCDS configuration to use the HRIS application as the data source and complete any necessary adjustments

Answer: B


NEW QUESTION # 82
Your company moved to Google Workspace last month and wants to install Hangouts Meet Hardware in all of their conference rooms. This will allow employees to walk into a room and use the in-room hardware to easily join their scheduled meeting. A distributed training session is coming up, and the facilitator wants to make remote room joining even easier. Participants in remote rooms should walk into their room and begin receiving the training without having to take any actions to join the session.
How should you accomplish this?

  • A. In the Admin Console, select the devices in Meeting Room Hardware, select Call, and Enter the meeting code.
  • B. By adding the rooms to the Calendar invite, they will all auto-join at the scheduled time.
  • C. Select Add Live Stream to the Calendar invite; all rooms added to the event will auto-join at the scheduled time.
  • D. Room participants will need to start the meeting from the remote in the room.

Answer: A

Explanation:
https://support.google.com/meethardware/answer/6069329


NEW QUESTION # 83
Your-company.com finance departments want to create an internal application that needs to read data from spreadsheets. As the collaboration engineer, you suggest using App Maker. The Finance team is concerned about data security when creating applications with App Maker.
What security measures should you implement to secure data?

  • A. Change owner access permissions to allow internal usage only.
  • B. Enable App Maker access only for the Finance department Organization Unit.
  • C. Use a service account with limited permissions to access each data source.
  • D. Use Roles, Script, and Owner access permissions for operations on records and data relations.

Answer: D

Explanation:
https://developers.google.com/appmaker/security/overview


NEW QUESTION # 84
A user is reporting that external, inbound messages from known senders are repeatedly being incorrectly classified as spam. What steps should the admin take to prevent this behavior in the future?

  • A. Add the sender's domain to an allowlist via approved senders in the Admin Console.
  • B. Instruct the user to add the senders to their contacts.
  • C. Update the spam settings in the Admin Console to be less aggressive.
  • D. Modify the SPF record for your internal domain to include the IPs of the external user's mail servers.

Answer: A

Explanation:
https://support.google.com/a/answer/60752?hl=en#:~:text=Approved%20senders%20list%E2%80%94,settings%20in%20Google%20Workspace.


NEW QUESTION # 85
Your organization is preparing to deploy Workspace and will continue using your company's existing identity provider for authentication and single sign-on (SSO). In order to migrate data from an external system, you were required to provision each user's account in advance. Your IT team and select users (~5% of the organization) have been using Workspace for configuration and testing purposes. The remainder of the organization can technically access their accounts now, but the IT team wants to block their access until the migrations are complete. What should your organization do?

  • A. Use Context-Aware Access to simultaneously block access to all services for all users and allow access to all services for the allowed users.
  • B. Suspend users that the organization does not wish to have access.
  • C. Add the users to the OU with all services disabled.
  • D. Remove Google Workspace license to prevent users from accessing their accounts now.

Answer: C

Explanation:
https://support.google.com/a/answer/182449?hl=en


NEW QUESTION # 86
In your organization, users have been provisioned with either Google Workspace Enterprise, Google Workspace Business, or no license, depending on their job duties, and the cost of user licenses is paid out of each division's budget. In order to effectively manage the license disposition, team leaders require the ability to look up the type of license that is currently assigned, along with the last logon date, for their direct reports.
You have been tasked with recommending a solution to the Director of IT, and have gathered the following requirements:
Team leaders must be able to retrieve this data on their own (i.e., self-service).
Team leaders are not permitted to have any level of administrative access to the Google Workspace Admin panel.
Team leaders must only be able to look up data for their direct reports.
The data must always be current to within 1 week.
Costs must be mitigated.
What approach should you recommend?

  • A. Export log data to BigQuery with custom scopes.
  • B. Use a third-party tool.
  • C. Create an app using AppMaker and App Script.
  • D. Use App Script and filter views within a Google Sheet.

Answer: C

Explanation:
https://support.google.com/a/answer/9682494?hl=en


NEW QUESTION # 87
A disgruntled employee has left your company and deleted all their email messages and files in Google Drive. The security team is aware that some intellectual property may have surfaced on a public social media site. What is the first step to start an investigation into this leak?

  • A. Instruct a Google Vault admin to create a matter, and place all the user data on 'hold.'
  • B. Delete the user's account in the Admin Console.
  • C. Use Google Vault to export all the user data and share among the security team.
  • D. Transfer data between end user Workspace accounts.

Answer: A


NEW QUESTION # 88
Users in your organization are routinely complaining that they receive messages containing words of profanity they find inappropriate in a professional setting. As the administrator what steps should you take to prevent the messages from being delivered to users mailboxes?

  • A. Set up a Gmail DLP policy.
  • B. Enable optical character recognition (OCR)
  • C. Configure an attachment compliance rule
  • D. Configure an objectionable content rule

Answer: C


NEW QUESTION # 89
Your organization syncs directory data from Active Directory to Google Workspace via Google Cloud Directory Sync. Users and Groups are updated from Active Directory on an hourly basis. A user's last name and primary email address have to be changed. You need to update the user's data.
What two actions should you take? (Choose two.)

  • A. Change the user's primary email in Active Directory.
  • B. Change the user's primary email address in the Google Workspace Admin panel.
  • C. Change the user's last name in Active Directory.
  • D. Change the user's last name in the Google Workspace Admin panel.
  • E. Add the user's old email address to their account in the Google Workspace Admin panel.

Answer: A,C

Explanation:
https://support.google.com/a/answer/106368?hl=en


NEW QUESTION # 90
After a recent transition to Google Workspace, helpdesk has received a high volume of password reset requests and cannot respond in a timely manner. Your manager has asked you to determine how to resolve these requests without relying on additional staff.
What should you do?

  • A. Create a Google form to submit reset requests.
  • B. Enable non-admin password recovery.
  • C. Use a third-party tool for password recovery.
  • D. Create a custom Apps Script to reset passwords.

Answer: B


NEW QUESTION # 91
You are supporting an investigation that is being conducted by your litigation team. The current default retention policy for mail is 180 days, and there are no custom mail retention policies in place. The litigation team has identified a user who is central to the investigation, and they want to investigate the mail data related to this user without the user's awareness.
What two actions should you take? (Choose two.)

  • A. Move the user to their own Organization Unit, and set a custom retention policy
  • B. Create a matter using Google Vault, and share the matter with the litigation team members.
  • C. Create a hold on the user's mailbox in Google Vault
  • D. Copy the user's data to a secondary account.
  • E. Reset the user's password, and share the new password with the litigation team.

Answer: B,C

Explanation:
https://support.google.com/vault/answer/2473591


NEW QUESTION # 92
Your organization's information security team has asked you to determine and remediate if a user ([email protected]) has shared any sensitive documents outside of your organization. How would you audit access to documents that the user shared inappropriately?

  • A. Have the super administrator use the Security API to audit Drive access.
  • B. Open Security Dashboard-> File Exposure Report-> Export to Sheet, and filter for [email protected].
  • C. Open Security Investigation Tool-> Drive Log Events. Add two conditions: Visibility Is External, and Actor Is [email protected].
  • D. As a super administrator, change the access on externally shared Drive files manually under [email protected].

Answer: C

Explanation:
https://support.google.com/a/answer/11480192?hl=en&ref_topic=11479095#:~:text=View%20files%20shared,Click%20Search.


NEW QUESTION # 93
As the newly hired Admin in charge of Google Workspace, you learn that the organization has been using Google Workspace for months and has configured several security rules for accessing Google Drive. A week after you start your role, users start to complain that they cannot access Google Drive anymore from one satellite office and that they receive an error message that "a company policy is blocking access to this app." The users have no issue with Gmail or Google Calendar. While investigating, you learn that both this office's Internet Service Provider (ISP) and the global IP address when accessing the internet were changed over the weekend. What is the most logical reason for this issue?

  • A. An access level was defined based on the IP range and applied to Google Drive via Context-Aware Access.
  • B. You need to raise a ticket to Google Cloud Support to have your new IP ranges registered for Drive API access.
  • C. Under Drive and Docs > Sharing Settings, the "Whitelisted domains" list needs to be updated to add the new ISP domain.
  • D. The Network Mask defined in Security > Settings > SSO with 3rd Party IdPs should be updated to reflect the new IP range.

Answer: A


NEW QUESTION # 94
......

Check Real Google Google-Workspace-Administrator Exam Question for Free (2024): https://www.dumpstorrent.com/Google-Workspace-Administrator-exam-dumps-torrent.html

Get Ready to Boost your Prepare for your Google-Workspace-Administrator Exam with 162 Questions: https://drive.google.com/open?id=1dPsiQBvLlkEokRf_mDcH3jlvmD87vwgy