
Course 2024 Google-Workspace-Administrator Test Prep Training Practice Exam Download
Google-Workspace-Administrator Exam Info and Free Practice Test Professional Quiz Study Materials
The Professional Google Workspace Administrator certification is a highly sought-after credential for those who work with Google Workspace. It is designed for IT professionals, system administrators, and other technical personnel who are responsible for managing and administering Google Workspace in their organization. Google Cloud Certified - Professional Google Workspace Administrator certification demonstrates that the certified professional has the necessary skills and knowledge to manage a Google Workspace environment effectively.
Google-Workspace-Administrator Certification Exam is designed to validate the candidate's skills and knowledge in managing Google Workspace services. Google Cloud Certified - Professional Google Workspace Administrator certification exam is an excellent way for professionals to demonstrate their expertise in managing Google Workspace services to their employers and clients. Additionally, this certification can help professionals advance their careers and increase their earning potential.
NEW QUESTION # 99
All Human Resources employees at your company are members of the "HR Department" Team Drive. The HR Director wants to enact a new policy to restrict access to the "Employee Compensation" subfolder stored on that Team Drive to a small subset of the team.
What should you do?
- A. Use the Drive API to modify the permissions of the individual files contained within the subfolder.
- B. Move the subfolder to the HR Director's MyDrive and share it with the relevant team members.
- C. Move the contents of the subfolder to a new Team Drive with only the relevant team members.
- D. Use the Drive API to modify the permissions of the Employee Compensation subfolder.
Answer: C
Explanation:
"Inherited permissions can't be removed from a file or folder in a shared drive".
ref: https://developers.google.com/drive/api/v3/manage-sharing
NEW QUESTION # 100
You have configured your Google Workspace account on the scheduled release track to provide additional time to prepare for new product releases and determine how they will impact your users. There are some new features on the latest roadmap that your director needs you to test as soon as they become generally available without changing the release track for the entire organization.
What should you do?
- A. Create a new OU and tum on the rapid release track just for this OU.
- B. Create a new Google Group with test users and enable the rapid release track.
- C. Ask Google for a demo account with beta access to the new features.
- D. Establish a separate Dev environment, and set it to rapid release.
Answer: D
Explanation:
https://support.google.com/a/answer/172177
NEW QUESTION # 101
Your-company.com recently started using Google Workspace. The CIO is happy with the deployment, but received notifications that some employees have issues with consumer Google accounts (conflict accounts).
You want to put a plan in place to address this concern.
What should you do?
- A. Rename the accounts to [email protected], and recreate the accounts.
- B. Use the conflict account remove tool to remove the accounts from Google Workspace.
- C. Use the Transfer tool for unmanaged users to find the conflict accounts.
- D. Ask users to request a new Google Workspace account from your local admin.
Answer: C
Explanation:
* Access the Transfer Tool:
* In the Google Workspace Admin console, navigate to "Users" > "Transfer tool for unmanaged users".
* Identify Conflict Accounts:
* Use the tool to search for unmanaged users (conflict accounts) that have email addresses matching your company domain.
* Send Transfer Requests:
* Send transfer requests to the identified unmanaged users, asking them to transfer their accounts to your Google Workspace domain.
* Complete the Transfer:
* Guide the users through the transfer process to ensure their accounts are moved to the managed Google Workspace environment.
* Verify the transfer completion and resolve any remaining conflicts.
References
* Google Workspace Admin Help: Transfer tool for unmanaged users
NEW QUESTION # 102
Your company's compliance officer has requested that you apply a content compliance rule that will reject all external outbound email that has any occurrence of credit card numbers and your company's account number syntax, which is AccNo. You need to configure a content compliance rule to scan email to meet these requirements.
Which combination of attributes will meet this objective?
- A. Name the rule > select Outbound and Internal Sending > select If ANY of the following match > add two expressions: one for Simple Content Match to find AccNo, and one for predefined content match to select Credit Card Numbers > choose Reject.
- B. Name the rule > select Outbound > select If ALL of the following match > add two expressions: one for Advanced Content Match to find AccNo in the Body, and one for predefined content match to select Credit Card Numbers > choose Reject.
- C. Name the rule > select Outbound and Internal Sending > select If ALL of the following match > add two expressions: one for Advanced Content Match to find AccNo in the Body, and one for predefined content match to select Credit Card Numbers > choose Reject.
- D. Name the rule > select Outbound > select If ANY of the following match > add two expressions: one for Simple Content Match to find AccNo, and one for predefined content match to select Credit Card Numbers
> choose Reject
Answer: A
Explanation:
* Admin Console: Log into the Google Admin console at admin.google.com.
* Gmail Settings: Navigate to Apps > Google Workspace > Gmail > Compliance.
* Create Rule:
* Click on "Add another rule" under the "Content compliance" section.
* Name the rule appropriately (e.g., Reject Sensitive Info).
* Conditions:
* Select "Outbound and Internal Sending" to ensure all outgoing and internal emails are scanned.
* In the "If ANY of the following match" section, add two expressions:
* Simple Content Match: Configure to find "AccNo".
* Predefined Content Match: Select "Credit Card Numbers".
* Action:
* Choose "Reject" as the action for emails that match these conditions.
* Save Rule: Save the rule and apply it to ensure it is active.
References
* Google Workspace Admin: Set up Compliance Rules
* Google Workspace Admin: Configure Content Compliance
NEW QUESTION # 103
Your large organization, 80,000 users, has been on Google for two years. Your CTO wants to create an integrated team experience with Google Groups, Teams Drives, and Calendar. Users will use a Google Form and Apps Script to request a new "G-Team." A "G-Team' is composed of a Google Group and a Team Drive/ Secondary Calendar that is shared using that Google Group.
What two design decisions are required to implement this workflow securely? (Choose two.)
- A. You will need a Cloud SQL instance to store "G-Team' data.
- B. The Apps Script will need to run as a Google Workspace admin.
- C. The Google Form will need to be limited to internal users only.
- D. The Apps Script will need to run on a timed interval to process new entries.
- E. The Google Form will need to enforce Group naming conventions.
Answer: C
Explanation:
* Subscribe to the Google Workspace Release Calendar:
* Go to the Google Workspace Updates blog at https://workspaceupdates.googleblog.com/.
* Subscribe to the release calendar by clicking on the "Subscribe to updates" button.
* This will provide you with real-time updates about new features and changes in Google Workspace.
* Join the Google Cloud Connect Community:
* Visit the Google Cloud Connect Community at https://cloudconnectcommunity.google/.
* Join the community to engage with other Google Workspace administrators and users.
* Participate in discussions, ask questions, and stay informed about best practices and upcoming features.
References
* Google Workspace Updates Blog
* Google Cloud Connect Community
NEW QUESTION # 104
Your organization's Sales Department uses a generic user account ([email protected]) to manage requests.
With only one employee responsible for managing the departmental account, you are tasked with providing the department with the most efficient means to allow multiple employees various levels of access and manage requests from a common email address.
What should you do?
- A. Configure a Google Group as a collaborative inbox.
- B. Configure a Google Group, and set the Access Level to Announcement Only.
- C. Delegate email access to department employees.
- D. Configure a Google Group as an email list.
Answer: A
Explanation:
* Create a Google Group:
* Go to the Google Groups interface.
* Click on "Create Group."
* Enter the group name, email address (e.g., [email protected]), and description.
* Configure Group Settings:
* After creating the group, go to "Group settings."
* Under "Permissions," set who can view topics, post, and join the group as per your requirement.
* Set Up Collaborative Inbox:
* In the Group settings, navigate to "Settings" > "Email options."
* Check the box for "Enable Collaborative Inbox."
* This option allows group members to assign topics, mark them as resolved, and categorize posts for better management.
* Assign Roles and Permissions:
* Define roles for members (e.g., Manager, Member).
* Assign permissions to allow various levels of access, such as viewing and managing conversations.
* Add Members:
* Add the employees who need access to this group.
* Go to "Manage members" and click "Add members."
References:
* Google Groups Collaborative Inbox
* Create and Configure Google Groups
NEW QUESTION # 105
Your company is using Google Workspace Business Standard. The company has five meeting rooms that are all registered as resources in Google Workspace and used on a daily basis by the employees when organizing meetings. The office layout was changed last weekend, and one of the meeting rooms is now a dedicated room for management. The CEO is complaining that anyone can book the room and requested this room to be used only by the management team and their executive assistants (EAs). No one else must be allowed to book it via Google Calendar. What should you do?
- A. As a super administrator, create a group calendar named "Management Room," and share it only with the management and the EAs.
- B. As a super administrator, modify the room calendar sharing settings, and limit it to the management and EAs group.
- C. Delete the room from Google Workspace resources, and suggest using a spreadsheet shared with the management and EAs only for the room schedule.
- D. Move the room resource to the management and EAs group so that only they can use it.
Answer: B
NEW QUESTION # 106
Your default Vault retention policy for Gmail is set to 365 days Your legal department has just informed you that emails sent and received by the customer support department are sensitive and must be retained for only
30 days You must enforce this new retention policy in the simplest way What should you do?
- A. Change the current default retention policy for Gmail to 30 days Configure two custom retention policies in Vault one for 30 days that is applied to the customer support organizational unit (OU) and one for 365 days that is applied to all other OUs in your directory
- B. Create a custom retention policy in Vault for Gmail for 30 days and apply it to the customer support organizational unit (OU)
- C. Create two custom retention policies in Vault one for 30 days that is applied to the customer support organizational unit (OU) and one for 365 days that is applied to all other OUs in your directory
- D. Change the current default retention policy in Vault for Gmail to 30 days and apply it to the customer support organizational unit (OU) Configure a custom retention policy for Gmail for 365 days for your domain
Answer: B
Explanation:
Step by Step Comprehensive Detailed Explanation:
* Access Google Vault: Sign in to Google Vault.
* Retention Policies: Navigate to "Retention" from the side menu.
* Create New Retention Rule: Click on "Create retention rule."
* Set Duration: Set the retention period to 30 days.
* Apply to OU: Apply this retention rule specifically to the organizational unit (OU) for the customer support department.
* Exclude Default Rule: Ensure that this custom rule overrides the default 365-day retention policy for the customer support OU.
* Save and Activate: Save the rule and ensure it is activated.
References:
* Google Vault Help: Set retention rules
NEW QUESTION # 107
What steps does an administrator need to take to enforce TLS with a particular domain?
- A. Set up DKIM authentication with the receiving domain.
- B. Set up secure transport compliance with the receiving domain.
- C. Enable email safety features with the receiving domain.
- D. Configure an alternate secure route with the receiving domain.
Answer: B
Explanation:
https://support.google.com/a/answer/2520500?hl=en#:~:text=Add%C2%A0the%20Secure%20transport%20(TLS)%20compliance%C2%A0setting%C2%A0to%20always%20use%20TLS%20for%20email%20sent%20to%20and%20from%20domains%20and%20addresses%20that%20you%20specify.
NEW QUESTION # 108
After migrating to Google Workspace, your legal team requests access to search all email and create litigation holds for employees who are involved with active litigation. You need to help the legal team meet this request.
What should you do?
- A. Add the legal team to the User Management Admin system role.
- B. Create a matter in Google Vault, and share with the legal team.
- C. Add the legal team to the Google Vault Google Group.
- D. Create a custom role with Google Vault access, and add the legal team.
Answer: D
NEW QUESTION # 109
Your organization has enabled spoofing protection against unauthenticated domains. You are receiving complaints that email from multiple partners is not being received. While investigating this issue, you find that emails are all being sent to quarantine due to the configured safety setting. What should be the next step to allow uses to review these emails and reduce the internal complaints while keeping your environment secure?
- A. Add your partner domains IPs to the Inbound Gateway setting.
- B. Change the spoofing protection to deliver the emails to inboxes with a custom warning instead of quarantining them.
- C. Add your partner sending IP addresses to an allowlist.
- D. Change the spoofing protection to deliver the emails to spam instead of quarantining them.
Answer: D
Explanation:
https://support.google.com/a/answer/9157861?hl=en#:~:text=Move%20email%20to,with%20this%20action.
NEW QUESTION # 110
Your marketing department needs an easy way for users to share items more appropriately. They want to easily link-share Drive files within the marketing department, without sharing them with your entire company. What should you do to fulfil this request? (Choose two.)
- A. Create a shared drive for internal marketing use.
- B. Update Drive sharing for the marketing department to restrict to internal.
- C. Create a shared drive that's shared internally organization-wide.
- D. In the admin panel Drive settings, create a target audience that has all of marketing as members.
- E. Update the link sharing default to the marketing team when creating a document.
Answer: A,D
Explanation:
https://support.google.com/a/users/answer/9310249#1.2
https://support.google.com/a/answer/9935192?hl=en#:~:text=a%20target%20audience-,Create%20a%20target%20audience,as%20Google%20Drive%2C%20to%20make%20it%20available%20in%20users%27%20sharing%20settings.,-Before%20you%20begin
https://support.google.com/a/answer/9934697?hl=en
NEW QUESTION # 111
The CEO of your company has indicated that messages from trusted contacts are being delivered to spam, and it is significantly affecting their work. The messages from these contacts have not always been classified as spam. Additionally, you recently configured SPF, DKIM, and DMARC for your domain. You have been tasked with troubleshooting the issue.
What two actions should you take? (Choose two.)
- A. Set up a Gmail routing rule to whitelist the sender.
- B. Obtain the message header and analyze using Google Workspace Toolbox.
- C. Review the contents of the messages in Google Vault.
- D. Conduct an Email log search to trace the message route.
- E. Validate that your domain is not on the Spamhaus blacklist.
Answer: A,B
Explanation:
* Obtain the Message Header: Ask the CEO to provide the full email header of the affected messages.
* In Gmail, this can be done by opening the email, clicking on the three dots in the top right corner, and selecting "Show original".
* Analyze the Header Using Google Workspace Toolbox:
* Go to the Google Workspace Toolbox.
* Paste the email header into the toolbox and analyze it to identify where the email might be flagged as spam and why.
* Email Log Search:
* Log into the Google Admin console at admin.google.com.
* Navigate to Reports > Email Log Search.
* Conduct a search using the sender's email address, date, and other relevant details to trace the message route.
* Analyze the logs to see where and why the message might have been marked as spam.
References
* Google Workspace Admin: Trace an email with email log search
* Google Workspace Toolbox: Messageheader
NEW QUESTION # 112
Your organization has a new security requirement around data exfiltration on iOS devices. You have a requirement to prevent users from copying content from a Google app (Gmail, Drive, Docs, Sheets, and Slides) in their work account to a Google app in their personal account or a third-party app. What steps should you take from the admin panel to preventusers from copying data from work to personal apps on iOS devices?
(Choose Two)
- A. Turn on "Advanced Mobile Management."
- B. Clear the "allow items created with managed apps to open in unmanaged apps" checkbox.
- C. Navigate to Devices > Mobile and Endpoint > iOS Settings > Data Sharing > Open Docs in Unmanaged Apps
- D. Navigate to Devices > Mobile and Endpoint > iOS Settings > Data Sharing > Data Protection
- E. Clear the "allow users to copy data to personal apps" checkbox.
Answer: D,E
Explanation:
To prevent users from copying content from a Google app in their work account to a personal account or third-party app on iOS devices, follow these steps:
* Sign in to the Google Admin console: Use an account with super administrator privileges.
* Navigate to Mobile and endpoint management: Go to Devices > Mobile and endpoints > Settings > iOS settings.
* Data sharing settings:
* In the iOS settings, go to "Data Sharing."
* Under "Data Protection," clear the checkbox for "Allow users to copy data to personal apps." This ensures that data cannot be copied from managed Google apps to unmanaged personal apps.
* Enable Advanced Mobile Management:
* Navigate to Devices > Mobile and endpoint management.
* Turn on "Advanced Mobile Management" to enforce the data protection policies on iOS devices.
References:
* Google Workspace Admin Help - Manage iOS settings
* Google Workspace Admin Help - Advanced mobile device management
NEW QUESTION # 113
You are in the middle of migrating email from on-premises Microsoft Exchange to Google Workspace. Users that you have already migrated are complaining of messages from internal users going into spam folders. What should you do to ensure that internal messages do not go into Gmail spam while blocking spoofing attempts?
- A. Ensure that your inbound gateway is configured with all of your Exchange server IP addresses.
- B. Force TLS for your domain.
- C. Train users to click on Not Spam button for emails.
- D. Add all users of your domain to an approved sender list.
Answer: D
Explanation:
Approved senders list-Approved senders are trusted users that send email to your organization. Create an address list of approved senders so messages from these users bypass Gmail's spam filters, and recipients can decide whether they are spam or not. Create the list with individual email addresses, or by adding an entire domain.
https://support.google.com/a/answer/60752?hl=en#:~:text=Approved%20senders%20list%E2%80%94,settings%20in%20Google%20Workspace.
NEW QUESTION # 114
Your cyber security team has requested that all email destined for external domains be scanned for credit card numbers, and if found, the email must be encrypted using your cloud-based third-party encryption provider.
You are responsible for configuring to meet this request.
What should you do?
- A. Create a content compliance rule on outbound mail and internal-sending mail using the predefined rule for credit card numbers, and add a custom header that your third-party encryption provider can scan for and encrypt.
- B. Create a content compliance rule on outbound mail using the predefined rule for credit card numbers, and add a custom header that your third-party encryption provider can scan for and encrypt.
- C. Create a content compliance rule on outbound mail using the predefined rule for credit card numbers, and check "Encrypt message if not encrypted".
- D. Create a content compliance rule on outbound mail using the predefined rule for credit card numbers, and check "Change route" to send to your third-party encryption provider to encrypt.
Answer: A
Explanation:
* Sign in to the Google Admin console.
* From the Admin console Home page, go to "Apps" and then "Google Workspace" and "Gmail."
* Select "Compliance" and then "Content compliance."
* Click on "Add another rule" to create a new content compliance rule.
* In the new rule setup, specify conditions:
* For "Email messages to affect," choose "Outbound" and "Internal - sending."
* Under "Add expressions," select "If ANY of the following match the message" and choose
"Predefined content match," then select "Credit Card Numbers."
* In the "Actions" section, select "Add more recipients" and specify the custom header your encryption provider uses.
* Save the rule.
This ensures that emails containing credit card numbers are flagged and encrypted by your third-party encryption provider, fulfilling the security requirements set by your cyber security team.
References:
* Google Workspace Admin Help - Set up rules for content compliance
NEW QUESTION # 115
Your company has been engaged in a lawsuit, and the legal department has been asked to discover and hold all email for two specific users. Additionally, they have been asked to discover and hold any email referencing "Secret Project 123." What steps should you take to satisfy this request?
- A. Create a Matter and a Hold. Set the Hold to Gmail, set it to the top level Organization, and set the search terms to "secret project 123." Create a second Hold. Set the second Hold to Gmail, set it to Accounts, and enter: user1 @your-company.com, [email protected]. Save.
- B. Create a Matter and a Hold. Set the Hold to Gmail, set it to Accounts, and set the usernames to: [email protected], user2@your-company. Set the search terms to: (secret project 123). Save.
- C. Create a Matter and a Hold. Set the Hold to Gmail, set it to Accounts, and enter: user1@your- company.com AND [email protected]. Set the search terms to: secret AND project AND 123. Save.
- D. Create a Matter and a Hold. Set the Hold to Gmail, set it to Accounts, and set the usernames to: [email protected], user2@your-company. Set the search terms to secret OR project OR 123. Save.
Answer: A
Explanation:
The correct way to search for the esact term is in quotes ("project 123" and not (project 123)). Ref: https://support.google.com/vault/answer/2474474?hl=en. Also, afeter doing this ytou must create the retention rule using comas to separate user from user.
NEW QUESTION # 116
You are the administrator of a domain that requires iOS mobile device management. What initial steps should be taken to ensure that you can properly manage end-user iOS devices?
- A. Follow the prompts under "company owned devices," and select "iOS Management." Select the option to "enforce management on iOS devices."
- B. In the Admin console, navigate to iOS management, and enable the Apple Push Certificate connector.
- C. Configure an Apple Push Certificate, and be sure to use a work address that can be accessed in the future.
- D. Configure an Apple Push Certificate, and select "certificate never expires."
Answer: C
Explanation:
To manage end-user iOS devices, you need to configure an Apple Push Certificate, which allows Google to communicate with your devices and enforce security policies1. The certificate expires annually, so you need to renew it before it expires1. You should use a work address that can be accessed in the future, because you will receive email notifications from Apple when the certificate is about to expire1. The other options are incorrect because:
There is no option to "enforce management on iOS devices" under "company owned devices" in the Admin console2.
You cannot select "certificate never expires" when configuring an Apple Push Certificate. The certificate always expires after one year1.
There is no option to enable the Apple Push Certificate connector in the Admin console. You need to download the public key from Google and upload it to Apple Business Manager or Apple School Manager2.
NEW QUESTION # 117
Your chief compliance officer is concerned about API access to organization data across different cloud vendors. He has tasked you with compiling a list of applications that have API access to Google Workspace data, the data they have access to, and the number of users who are using the applications.
How should you compile the data being requested?
- A. Review the API permissions installed apps list, and export the list.
- B. Review the token audit log, and compile a list of all the applications and their scopes.
- C. Review the authorized applications for each user via the Google Workspace Admin panel.
- D. Create a survey via Google forms, and collect the application data from users.
Answer: B
Explanation:
* Access Admin Console: Log into your Google Workspace Admin Console.
* Navigate to Reports: Go to the Reports section in the Admin Console.
* Token Audit Log: Within the Reports, access the "Token Audit" log. This log provides details on OAuth tokens issued to applications by your users.
* Review Applications: Review the list of applications that have been granted access to your Google Workspace data. This will include information about the scopes (types of data) that each application can access.
* Compile List: Compile a list of all the applications from the token audit log. Include details about the data they have access to and the number of users using each application.
* Export Data: You can export this data to a spreadsheet for further analysis and reporting to your chief compliance officer.
References
* Google Support: Token audit log
NEW QUESTION # 118
......
Google Workspace certification program validates the skills and knowledge of professionals in managing and administering Google Workspace applications. It is designed to test the proficiency of candidates in various areas such as email, security, compliance, and user management. Google Cloud Certified - Professional Google Workspace Administrator certification program consists of a series of exams that are designed to test the knowledge and skills of the candidates in different areas of Google Workspace administration.
Get 100% Authentic Google Google-Workspace-Administrator Dumps with Correct Answers: https://www.torrentvce.com/Google-Workspace-Administrator-valid-vce-collection.html
Accurate Hot Selling Google-Workspace-Administrator Exam Dumps 2024 Newly Released: https://drive.google.com/open?id=1bAPy5_K6UluGIRWYVV1qolvgLdbXBE00