
Pass Exam With Full Sureness - Google-Workspace-Administrator Dumps with 199 Questions
Verified Google-Workspace-Administrator dumps Q&As - 100% Pass from ActualTestsIT
Google Workspace Administrator exam is a certification program offered by Google Cloud. Google-Workspace-Administrator exam is designed to evaluate the knowledge and skills of professionals who are responsible for managing and administering Google Workspace for their organizations. Google-Workspace-Administrator exam is intended to assess the proficiency of the candidates in the areas of security, data migration, user management, and device management.
NEW QUESTION # 42
Your organization wants to grant Google Vault access to an external regulatory authority. In an effort to comply with an investigation, the external group needs the ability to view reports in Google Vault. What should you do?
- A. Share Vault access with external users.
- B. Create accounts for external users and assign Vault privileges.
- C. Temporarily assign the super admin role to the users
- D. Assign an Archived User license to the external users.
Answer: B
NEW QUESTION # 43
You are the administrator for a 30.000-user organization. You have multiple Workspace licensing options available to end users in your domain, according to their work responsibilities. A user may be transitioned to a different license type multiple times in a given year. Your organization has a high turnover rate for employees.
What is the most efficient way to manage your organization's licensing?
- A. Use Google Cloud Directory Sync to modify user licensing with each sync, according to information available in the organization's LDAP
- B. Update user licensing in the user portion of the Admin console on an as-needed basis.
- C. Create a license assignment rule in the Google Admin console to set user licensing based on directory attributes.
- D. Use the Directory API to create a custom batch script that modifies the users license on a daily basis
Answer: C
Explanation:
To efficiently manage licensing in an organization with a high turnover rate and multiple license types, the best approach is to create a license assignment rule in the Google Admin console based on directory attributes.
This method automates the process of assigning licenses according to the user's role and other directory attributes, ensuring that each user gets the appropriate license type without manual intervention. This approach is scalable and minimizes the administrative overhead associated with frequent changes in user roles and turnover.
References:
* Google Workspace Admin Help - Assign, change, or remove a user's license
* Google Workspace Admin Help - Set up automated user provisioning to third-party applications
NEW QUESTION # 44
The nature of your organization's business makes your users susceptible to malicious email attachments. How should you implement a scan of all incoming email attachments?
- A. Configure a safety rule to protect against encrypted attachments from untrusted senders
- B. In the security sandbox section, enable virtual execution of attachments for (he targeted OU
- C. Configure a safety rule to protect against attachments with scripts from untrusted senders.
- D. In the security sandbox section, enable virtual execution of attachments for the entire organization.
Answer: D
NEW QUESTION # 45
Your company frequently hires from five to ten interns for short contract engagements and makes use of the same generically named Google Workspace accounts (e.g., [email protected], [email protected], [email protected]). The manager of this program wants all email to these accounts routed to the manager's mailbox account also.
What should you do?
- A. Setup address forwarding in each account's GMail setting menu.
- B. Give the manager delegated access to the mailboxes.
- C. Configure an Inbound Gateway route.
- D. Set up recipient address mapping in GMail Advanced Settings.
Answer: D
Explanation:
https://support.google.com/a/answer/6297084#address
NEW QUESTION # 46
A user joined your organization and is reporting that every time they start their computer they are asked to sign in. This behavior differs from what other users within the organization experience. Others are prompted to sign in biweekly. What is the first step you should take to troubleshoot this issue for the individual user?
- A. Reset the user's sign-in cookies
- B. Check the session length duration for the organizational unit the user is provisioned in.
- C. Confirm that this user has their employee ID populated as a sign-in challenge.
- D. Verify that 2-Step Verification is enforced for this user.
Answer: B
NEW QUESTION # 47
The compliance team at your organization is conducting a legal investigation into some concerning sales activities of an employee eight months ago The compliance team contacted you for assistance on the situation You set up the default Google Vault retention rules so all data is retained only for one year You must assist the compliance team with the investigation What should you do1?
- A. Do nothing The retention period has already ended and the evidence has already been purged
- B. Assign the compliance team a Google Vault administrator role and change the default retention rules to three years.
- C. Assign the compliance team a Google Vault administrator role and create a legal hold for the employee
- D. Suspend the employee and export all data by using Google Takeout
Answer: C
Explanation:
* Assign Vault Administrator Role: In the Google Admin console, assign the compliance team members the Google Vault administrator role to give them the necessary permissions.
* Access Google Vault: Have the compliance team access Google Vault.
* Create a Matter: In Google Vault, create a new matter for the investigation.
* Create a Hold: Within the matter, create a legal hold specifically targeting the employee's email and any other relevant data. This will preserve all the necessary information beyond the default retention period.
* Review Data: The compliance team can now review the preserved data as part of their investigation.
References:
* Google Vault Help: Assign Vault privileges
* Google Vault Help: Create and manage holds
NEW QUESTION # 48
Your company is in the process of deploying Google Drive Enterprise for your sales organization. You have discovered that there are many unmanaged accounts across your domain. Your security team wants to manage these accounts moving forward.
What should you do?
- A. Use the Transfer Tool for unmanaged accounts to invite users into the domain.
- B. Disable access to all "Other Services" in the Google Workspace Admin Console.
- C. Use the Data Migration Service to transfer the data to a managed account.
- D. Open a support ticket to have Google transfer unmanaged accounts into your domain.
Answer: A
Explanation:
* Identify Unmanaged Accounts: First, you need to identify the unmanaged accounts in your domain.
These are accounts created by users with their company email address but are not managed by your Google Workspace.
* Use the Transfer Tool for Unmanaged Accounts: Google provides a specific tool called the "Transfer tool for unmanaged users". This tool allows administrators to invite users with unmanaged accounts to join the organization's managed Google Workspace account.
* Send Invitations: Using this tool, you can send invitations to these users to join your Google Workspace domain.
* Accept Invitations: The users need to accept the invitation to migrate their unmanaged account into your managed domain.
* Monitor and Verify: After the invitation is accepted, monitor the process to ensure that all accounts are successfully migrated and are now managed under your Google Workspace domain.
References
* Google Support: Transfer tool for unmanaged users
NEW QUESTION # 49
Madeupcorp.com is in the process of migrating from a third-party email system to Google Workspace. The VP of Marketing is concerned that her team already administers the corporate AdSense, AdWords, and YouTube channels using their @madeupcorp.com email addresses, but has not tracked which users have access to which service. You need to ensure that there is no disruption.
What should you do?
- A. Assure the VP that there is no action required to configure Google Workspace.
- B. Run the Transfer Tool for Unmanaged users.
- C. Use a Google Form to survey the Marketing department users.
- D. Contact Google Enterprise Support to identify affected users.
Answer: B
Explanation:
* Assess the Current State: Identify which users are using the @madeupcorp.com email addresses for services like AdSense, AdWords, and YouTube.
* Use the Transfer Tool for Unmanaged Users:
* Access Google Admin Console: Go to admin.google.com and sign in with your administrator account.
* Navigate to Tools: In the Admin console, go to "Tools" and then select "Transfer tool for unmanaged users."
* Enter Domain Information: Enter the domain name (madeupcorp.com) and verify the domain.
* List Unmanaged Users: The tool will generate a list of unmanaged users who are using their
@madeupcorp.com email addresses.
* Send Transfer Requests: Send transfer requests to these users, prompting them to accept the transfer to the managed Google Workspace account.
* Follow Up: Ensure all users have accepted the transfer request to avoid any disruptions in accessing Google services with their corporate email addresses.
* Verify: Confirm that the transferred accounts are now managed under the Google Workspace domain.
References
* Google Workspace Admin Help - Transfer tool for unmanaged users
NEW QUESTION # 50
A user does not follow their usual sign-in pattern and signs in from an unusual location.
What type of alert is triggered by this event?
- A. Suspicious login activity alert.
- B. User sign-in alert.
- C. Leaked password alert.
- D. Suspicious mobile activity alert.
Answer: A
NEW QUESTION # 51
Your client is a 5,000-employee company with a high turn-over rate that requires them to add and suspend user accounts. When new employees are onboarded, a user object is created in Active Directory. They have determined that manually creating the users in Google Workspace Admin Panel is time-consuming and prone to error. You need to work with the client to identify a method of creating new users that will reduce time and error.
What should you do?
- A. Install Google Cloud Directory Sync on a supported server.
- B. Install Google Workspace Sync for Microsoft Outlook on all employees' computers.
- C. Install Google Cloud Directory Sync on all Domain Controllers.
- D. Install Google Apps Manager to automate add-user scripts.
Answer: A
Explanation:
https://support.google.com/a/answer/6123896
NEW QUESTION # 52
An administrator accidentally deleted several Workspace user accounts from the Google Admin Console two weeks ago. How can you recover the deleted user accounts?
- A. Sign in to the Admin console as Help Desk Admin, open user management, filter for "recently deleted." and recover.
- B. Sign in to the Admin console as Super Admin, open user management, filter for "recently deleted." and recover.
- C. Open a Google support ticket, and request a recovery of all recently deleted users.
- D. Create a matter, go to legal hold, and create a legal hold for the user accounts.
Answer: B
NEW QUESTION # 53
Your team is collaborating on a new project by using a Google Doc They are using Doc comments to add numerous questions and suggestions You want to ensure that sensitive data in the Doc comments does not appear in the recipients' inboxes when a user is notified that a comment has been assigned to them What should you do?
- A. Disable comments in the Google Doc for your users
- B. Create a Gmail content compliance rule to block incoming messages that contain sensitive data
- C. Set up an email quarantine to quarantine all incoming emails that contain sensitive data
- D. Create a Gmail content compliance rule and turn oft dynamic email for your team
Answer: D
Explanation:
* Create a Content Compliance Rule:
* Access the Google Admin console.
* Go to Apps > Google Workspace > Gmail > Compliance.
* Click on "Add another rule" to create a new content compliance rule.
* Define the conditions to detect sensitive data within email content.
* Set actions to quarantine or reject emails that contain sensitive information.
* Turn Off Dynamic Email:
* In the Admin console, go to Apps > Google Workspace > Gmail > User settings.
* Turn off dynamic email for your organization or specific organizational units.
* Save and Apply:
* Save the compliance rule and dynamic email settings.
* These configurations ensure that sensitive data in Doc comments does not appear in recipient inboxes.
References:
* Google Workspace Admin Help: Set up content compliance
* Google Workspace Admin Help: Turn dynamic email on or off
NEW QUESTION # 54
Your company works regularly with a partner. Your employees regularly send emails to your partner's employees. You want to ensure that the Partner contact information available to your employees will allow them to easily select Partner names and reduce sending errors.
What should you do?
- A. Create shared contacts in the Directory using the Domain Shared Contacts API.
- B. Create shared contacts in the Directory using the Directory API.
- C. Add a secondary domain for the Partner Company and create user entries for each Partner user.
- D. Educate users on creating personal contacts for the Partner Employees.
Answer: A
Explanation:
https://developers.google.com/admin-sdk/domain-shared-contacts
NEW QUESTION # 55
As the Workspace Administrator, you have been asked to delete a temporary Google Workspace user account in the marketing department. This user has created Drive documents in My Documents that the marketing manager wants to keep after the user is gone and removed from Workspace. The data should be visible only to the marketing manager. As the Workspace Administrator, what should you do to preserve this user's Drive data?
- A. Before deleting the user, add the user to the marketing shared drive as a contributor and move the documents into the new location.
- B. In the user deletion process, select "Transfer" in the data in other apps section and add the manager's email address.
- C. Use Google Vault to set a retention period on the OU where the users reside.
- D. Ask the user to create a folder under MyDrive, move the documents to be shared, and then share that folder with the marketing team manager.
Answer: B
Explanation:
https://support.google.com/a/answer/6223444?hl=en#zippy=%2Ctransfer-user-drive-or-google-data:~:text=You%20can%20transfer,Tap%20Transfer.
NEW QUESTION # 56
Your company has acquired a new company in Japan and wants to add all employees of the acquisition to your existing Google Workspace domain. The new company will retain its original domain for email addresses and, due to the very sensitive nature of its work, the new employees should not be visible in the global directory.
However, they should be visible within each company's separate directory. What should you do to meet these requirements?
- A. Create one dynamic group for each company based on a custom attribute defining the company. In Directory Settings > Visibility Settings, define custom directories for each company, and set up Visibility according to the dynamic group.
- B. Redesign your OU organization to have 2 child OUs for each company directly under the root. In Directory Settings > Visibility Settings, define custom directories for each company, and set up Visibility according to the OU.
- C. Under Directory Settings > Contact sharing, disable the contact sharing option and wait for 24 hours to allow the settings to propagate before creating the new employee accounts.
- D. Create a new Google Workspace domain isolated from the existing one, and create users in the new domain instead.
Answer: B
Explanation:
* Organizational Units (OUs):
* Create separate OUs for each company under the root OU.
* This allows for customized settings and policies per company.
* Visibility Settings:
* Customize the directory visibility settings to ensure each company's users are only visible within
* their own directory.
* Navigate to Directory Settings in the Admin console.
* Set up visibility rules to apply to the specific OUs:
* Go to Directory > Directory settings.
* Click Visibility settings.
* Select the OU for each company and customize the visibility settings accordingly.
References
* Google Workspace Admin Help: Manage Directory Visibility
* Google Workspace Admin Help: Set Up an Organizational Unit
NEW QUESTION # 57
An administrator accidentally deleted several Workspace user accounts from the Google Admin Console two weeks ago. How can you recover the deleted user accounts?
- A. Sign in to the Admin console as Help Desk Admin, open user management, filter for "recently deleted." and recover.
- B. Sign in to the Admin console as Super Admin, open user management, filter for "recently deleted." and recover.
- C. Open a Google support ticket, and request a recovery of all recently deleted users.
- D. Create a matter, go to legal hold, and create a legal hold for the user accounts.
Answer: B
Explanation:
To recover user accounts deleted two weeks ago:
* Sign in to the Admin console as a Super Admin.
* Navigate to user management.
* Use the filter to select "recently deleted" users.
* Recover the deleted user accounts from the list.
Google Workspace allows recovery of deleted users within a 20-day window.
References:
* Google Workspace Admin Help: Restore a recently deleted user
NEW QUESTION # 58
The application development team has come to you requesting that a new, internal, domain-owned Google Workspace app be allowed to access Google Drive APIs. You are currently restricting access to all APIs using approved whitelists, per security policy. You need to grant access for this app.
What should you do?
- A. Enable all API access for Google Drive.
- B. Enable "trust domain owned apps" setting.
- C. Add OAuth Client ID to Google Drive Trusted List.
- D. Whitelist the app in the Google Workspace Marketplace.
Answer: C
NEW QUESTION # 59
A subset of users from the finance and human resources (HR) teams need to share documents with an external vendor. However, external content sharing is prohibited for the entire finance team. What would be the most secure method to enable external sharing for this set of users?
- A. Move all users from the finance org unit to the HR org unit.
- B. Download and attach the documents to a Gmail message, and send them to the external vendor.
- C. Enable 'Visitor Sharing' for the entire finance org unit.
- D. Create a group with the finance and HR users who need to share externally.
Answer: D
NEW QUESTION # 60
Your company has a broad, granular IT administration team, and you are in charge of ensuring proper administrative control. One of those teams, the security team, requires access to the Security Investigation Tool. What should you do?
- A. Assign the Super Admin Role to the security team members.
- B. Create a Custom Admin Role with the Security Center privileges, and then assign the role to each of the security team members.
- C. Create a Custom Admin Role with the security settings privilege, and then assign the role to each of the security team members.
- D. Assign the pre-built security admin role to the security team members.
Answer: B
Explanation:
https://support.google.com/a/answer/9043255#:~:text=To%20give%20access%20only%20to%20the%20investigation%20tool%2C%20check%20the%20individual%20boxes%20for%C2%A0Investigation%20Tool%20privileges.%20You%20can%20add%20specific%20privileges%20for%20access%20to%20different%20types%20of%20data%20(for%20example%2C%20Gmail%2C%20Drive%2C%20Device%2C%20and%20User)%3A
NEW QUESTION # 61
What steps does an administrator need to take to enforce TLS with a particular domain?
- A. Enable email safety features with the receiving domain.
- B. Configure an alternate secure route with the receiving domain.
- C. Set up secure transport compliance with the receiving domain.
- D. Set up DKIM authentication with the receiving domain.
Answer: C
Explanation:
https://support.google.com/a/answer/2520500?hl=en#:~:text=Add%C2%A0the%20Secure%20transport%20(TLS)%20compliance%C2%A0setting%C2%A0to%20always%20use%20TLS%20for%20email%20sent%20to%20and%20from%20domains%20and%20addresses%20that%20you%20specify.
NEW QUESTION # 62
You are configuring a shared drive for the financial department of your organization. The financial team wants to allow members of the shared drive to add. edit, and move documents into the shared drive. It's important that the same users cannot remove or delete files. How can you configure access for these users to match the team's request?
- A. Set up the shared drive, and add the users as editors of the drive.
- B. Set up the shared drive, and add the users as Managers of the drive.
- C. Set up the shared drive, and add the users as Contributors of the drive.
- D. Set up the shared drive, and add the users as Content Managers of the drive.
Answer: D
Explanation:
To configure access for users such that they can add, edit, and move documents into the shared drive but not remove or delete files, you should add the users as Content Managers of the drive. Content Managers have permissions to organize and manage content, including adding and editing files, but they cannot delete files, which aligns with the team's request.
References:
* Google Workspace Admin Help - Shared drives access levels
NEW QUESTION # 63
Your company has just received a shipment of ten Chromebooks to be deployed across the company, four of which will be used by remote employees. In order to prepare them for use, you need to register them in Google Workspace.
What should you do?
- A. Turn on the chromebook and log in as a Chrome Device admin. Press Ctrl+Alt+E to begin enterprise enrollment.
- B. Instruct the employees to log in to the Chromebook. Upon login, the auto enrollment process will begin.
- C. Turn on the Chromebook and press Ctrl+Alt+E at the login screen to begin enterprise enrollment.
- D. In Chrome Management | Device Settings, enable Forced Re-enrollment for all devices.
Answer: C
NEW QUESTION # 64
A user has reported that they did not receive an email from one of their normal correspondents. What information do you need to collect from the user to investigate the cause of the issue?
- A. The email address of the sender and the subject and date/time of the missing message.
- B. The sender's IP address, mail client, and mail platform.
- C. The sender's domain so you can review their SPF and DKIM configuration.
- D. The type of device the individual is using, including the OS version, browser, and browser version.
Answer: A
Explanation:
To investigate the cause of a missing email, you need to collect:
* The email address of the sender.
* The subject of the missing message.
* The date and time when the message was expected. This information allows you to search the email logs in the Admin console to track the email's journey and identify any issues that may have caused it to be delayed or not delivered.
References:
* Google Workspace Admin Help - Track email with email log search
NEW QUESTION # 65
Your client is a multinational company with a single email domain. The client has compliance requirements and policies that vary by country. You need to configure the environment so that each country has their own administrator and no administrator can manage another country.
What should you do?
- A. Create a Team Drive per OU, and allow only country-specific administration of each folder.
- B. Establish a new Google Workspace tenant with their own admin for each region.
- C. Create Admin Alerts, and use the Security Center to audit whether admins manage countries other than their own.
- D. Create an OU for each country. Create an admin role and assign an admin with that role per OU.
Answer: D
Explanation:
https://support.google.com/a/answer/6129577?hl=en#:~:text=Create%20and%20assign%20the%20role&text=Click%20Assign%20role.,organizational%20unit%20and%20click%20Done.
NEW QUESTION # 66
......
Google-Workspace-Administrator Dumps Full Questions - Exam Study Guide: https://www.actualtestsit.com/Google/Google-Workspace-Administrator-exam-prep-dumps.html
Pass Google-Workspace-Administrator Exam in First Attempt Guaranteed 2024 Dumps: https://drive.google.com/open?id=1mwDNpmm_yOslgf202H37uY9PEiWSJ_ZY