Latest Jan 08, 2024 Google-Workspace-Administrator Brain Dump A Study Guide with Tips & Tricks for passing Exam [Q82-Q103]

Share

Latest Jan 08, 2024 Google-Workspace-Administrator Brain Dump: A Study Guide with Tips & Tricks for passing Exam

Google-Workspace-Administrator Question Bank: Free PDF Download Recently Updated Questions

NEW QUESTION # 82
After a recent transition to Google Workspace, helpdesk has received a high volume of password reset requests and cannot respond in a timely manner. Your manager has asked you to determine how to resolve these requests without relying on additional staff.
What should you do?

  • A. Create a Google form to submit reset requests.
  • B. Create a custom Apps Script to reset passwords.
  • C. Enable non-admin password recovery.
  • D. Use a third-party tool for password recovery.

Answer: C


NEW QUESTION # 83
The human resources (HR) team needs a centralized place to share key documents with the entire organization while protecting confidential documents and mitigating the risk of losing documents when someone leaves. These documents must be editable by the HR team members. What is the best way to set this up?

  • A. Have the HR lead create a folder in their MyDrive for the non-confidential files, give edit access to the HR team, and give view access to the organization.
  • B. Create a shared drive for the non-confidential files, give the HR team manager access, and give contributor access to the entire organization.
  • C. Create a shared drive for non-confidential files, give the HR team content manager access, and give view access to the organization.
  • D. Create a shared drive for all files, give the HR team content manager access, and give view access to the organization.

Answer: C


NEW QUESTION # 84
A user is reporting that external, inbound messages from known senders are repeatedly being incorrectly classified as spam. What steps should the admin take to prevent this behavior in the future?

  • A. Add the sender's domain to an allowlist via approved senders in the Admin Console.
  • B. Modify the SPF record for your internal domain to include the IPs of the external user's mail servers.
  • C. Update the spam settings in the Admin Console to be less aggressive.
  • D. Instruct the user to add the senders to their contacts.

Answer: A

Explanation:
https://support.google.com/a/answer/60752?hl=en#:~:text=Approved%20senders%20list%E2%80%94,settings%20in%20Google%20Workspace.


NEW QUESTION # 85
You act as the Google Workspace Administrator for a company that has just acquired another organization. The acquired company will be migrated into your Workspace environment in 6 months. Management has asked you to ensure that the Google Workspace users you currently manage can efficiently access rich contact information in Workspace for all users. This needs to occur before the migration, and optimally without additional expenditure. What step do you take to populate contact information for all users?

  • A. Use the Domain Shared Contacts API to upload contact information for the acquired company's users.
  • B. Bulk-upload the contact information for these users via CSV into the Google Directory.
  • C. Prepare an uploadable file to be distributed to your end users that allows them to add the acquired company's user contact information to their personal contacts.
  • D. Provision and license Google Workspace accounts for the acquired company's users because they will need accounts in the future.

Answer: A

Explanation:
The Domain Shared Contacts API lets your applications get and update external contacts that are shared with all users in a Google Workspace domain. Shared contacts are visible to all users of a Google Workspace domain and all Google services have access to the contact list https://developers.google.com/admin-sdk/domain-shared-contacts/overview


NEW QUESTION # 86
Your organization is using Password Sync to sync passwords from Active Directory to Google Workspace. A user changed their network password and cannot log in to Google Workspace with the new password. What steps should you take to troubleshoot this issue?

  • A. Reinstall Password Sync on all domain controllers.
  • B. Reauthorize the Password Sync tool in the Google Workspace Admin Console.
  • C. Reset the user's password in Active Directory.
  • D. Confirm that the Password Sync service is running on all domain controllers.

Answer: D

Explanation:
https://support.google.com/a/answer/11237847?hl=en&ref_topic=4498019
The network password is determined to be with AD. In this case, you must verify that password sync is installed on all domain controllers. This is the initial troubleshooting. After this troubleshooting, the logs of these connectors are taken
https://www.youtube.com/watch?v=P-r8bvivZuM


NEW QUESTION # 87
Your Security Officer ran the Security Health Check and found the alert that "Installation of mobile applications from unknown sources" was occurring. They have asked you to find a way to prevent that from happening.
Using Mobile Device Management (MDM), you need to configure a policy that will not allow mobile applications to be installed from unknown sources.
What MDM configuration is needed to meet this requirement?

  • A. In Android Settings, ensure that "Allow non-Play Store apps from unknown sources installation" is unchecked.
  • B. In Device Management > Setup > Device Approvals menu, configure the "Requires Admin approval" option.
  • C. In the Application Management menu, configure the whitelist of apps that Android and iOS devices are allowed to install.
  • D. In the Application Management menu, configure the whitelist of apps that Android, iOS devices, and Active Sync devices are allowed to install.

Answer: A


NEW QUESTION # 88
With the help of a partner, you deployed Google Workspace last year and have seen the rapid pace of innovation and development within the platform. Your CIO has requested that you develop a method of staying up-to-date on all things Google Workspace so that you can be prepared to take advantage of new features and ensure that your organization gets the most out of the platform.
What should you do?

  • A. Create a Feature Release alert in the Alert Center to be alerted to new functionality.
  • B. Develop a cadence of regular roadmap and business reviews with your partner.
  • C. Regularly scan the admin console and keep track of any new features you identify.
  • D. Put half of your organization on the Rapid Release Schedule to highlight differences.

Answer: B

Explanation:
https://support.google.com/a/answer/6131189?hl=en


NEW QUESTION # 89
Your company is deploying Chrome devices. You want to make sure the machine assigned to the employee can only be signed in to by that employee and no one else.
What two things should you do? (Choose two.)

  • A. Enable a Device Policy of Sign In Screen and add the employee email address.
  • B. Disable Guest Mode and Public Sessions.
  • C. Enable a Device Policy of Restrict Sign In to List of Users, and add the employee email address.
  • D. Enroll a 2-Factor hardware key on the device using the employee email address.
  • E. Enable a User Policy of Multiple Sign In Access and add just the employee email address.

Answer: B,C

Explanation:
https://support.google.com/chrome/a/answer/1375678?hl=en


NEW QUESTION # 90
The organization has conducted and completed Security Awareness Training (SAT) for all employees. As part of a new security policy, employees who did not complete the SAT have had their accounts suspended. The CTO has requested to be informed of any accounts that have been re-enabled to ensure no one is in violation of the new security policy.
What should you do?

  • A. Enable "Suspended user made active" rule - Other Recipients: CTO
  • B. Enable "Suspended user made active" rule and select "Deliver to" Super Administrator(s)
  • C. Enable "Email settings changed" rule - -Other Recipients: CTO
  • D. Enable "Suspicious login" rule - Other Recipients: CTO

Answer: A

Explanation:
CTO must be informed when creating the Suspended user made active-A suspended user is made active by an admin Alert. Ref: https://support.google.com/a/answer/3230421?hl=en#zippy=%2Cuser-activity-alerts


NEW QUESTION # 91
The nature of your organization's business makes your users susceptible to malicious email attachments. How should you implement a scan of all incoming email attachments?

  • A. Configure a safety rule to protect against attachments with scripts from untrusted senders.
  • B. In the security sandbox section, enable virtual execution of attachments for the entire organization.
  • C. Configure a safety rule to protect against encrypted attachments from untrusted senders
  • D. In the security sandbox section, enable virtual execution of attachments for (he targeted OU

Answer: B


NEW QUESTION # 92
A user has reported that they did not receive an email from one of their normal correspondents. What information do you need to collect from the user to investigate the cause of the issue?

  • A. The type of device the individual is using, including the OS version, browser, and browser version.
  • B. The email address of the sender and the subject and date/time of the missing message.
  • C. The sender's IP address, mail client, and mail platform.
  • D. The sender's domain so you can review their SPF and DKIM configuration.

Answer: B


NEW QUESTION # 93
Your company wants to provide secure access for its employees. The Chief Information Security Officer disabled peripheral access to devices, but wants to enable 2-Step verification. You need to provide secure access to the applications using Google Workspace.
What should you do?

  • A. Configure USB Yubikeys for all users.
  • B. Enable authentication via the Google Authenticator.
  • C. Enable additional security verification via email.
  • D. Deploy browser or device certificates via Google Workspace.

Answer: B

Explanation:
Enable authentication via the Google Authenticator is the only secure option since USB device aren't usable. Google Authenticator is the most secure option after physical key.


NEW QUESTION # 94
Multiple users across the organization are experiencing video degradation in Meet video calls. As an administrator, what steps should you take to start troubleshooting?

  • A. Push the Meet quality tool to end user devices and run local reports to determine connectivity issues.
  • B. Troubleshoot network bandwidth for the organizer of the meeting.
  • C. Update the Admin Console Meet settings to disable streaming.
  • D. Locate the Meet quality tool, and review the output for issues with quality.

Answer: D


NEW QUESTION # 95
A user joined your organization and is reporting that every time they start their computer they are asked to sign in. This behavior differs from what other users within the organization experience. Others are prompted to sign in biweekly. What is the first step you should take to troubleshoot this issue for the individual user?

  • A. Verify that 2-Step Verification is enforced for this user.
  • B. Check the session length duration for the organizational unit the user is provisioned in.
  • C. Confirm that this user has their employee ID populated as a sign-in challenge.
  • D. Reset the user's sign-in cookies

Answer: B


NEW QUESTION # 96
You are supporting an investigation that is being conducted by your litigation team. The current default retention policy for mail is 180 days, and there are no custom mail retention policies in place. The litigation team has identified a user who is central to the investigation, and they want to investigate the mail data related to this user without the user's awareness.
What two actions should you take? (Choose two.)

  • A. Copy the user's data to a secondary account.
  • B. Create a hold on the user's mailbox in Google Vault
  • C. Move the user to their own Organization Unit, and set a custom retention policy
  • D. Reset the user's password, and share the new password with the litigation team.
  • E. Create a matter using Google Vault, and share the matter with the litigation team members.

Answer: B,E

Explanation:
https://support.google.com/vault/answer/2473591


NEW QUESTION # 97
Your organization recently implemented context-aware access policies for Google Drive to allow users to access Drive only from corporate managed desktops. Unfortunately, some users can still access Drive from non-corporate managed machines. What preliminary checks should you perform to find out why the Context-Aware Access policy is not working as intended? (Choose two.)

  • A. Confirm that the user has at least a Google Workspace Business license.
  • B. Check whether device policy application is installed on users' devices.
  • C. Delete and recreate a new Context-Aware Access device policy.
  • D. Confirm that the user has a Google Workspace Enterprise Plus license.
  • E. Check whether Endpoint Verification is installed on users' desktops.

Answer: D,E

Explanation:
https://support.google.com/a/answer/9275380#licenses:~:text=Context%2DAware%20Access-,Control%20access%20to%20apps%20based%20on%20user%20%26%20device%20context,context%2C%20such%20as%20whether%20their%20device%20complies%20with%20your%20IT%20policy.,-Context%2DAware%20Access
https://support.google.com/a/answer/9275380?hl=en&fl=1
https://support.google.com/a/answer/9007320?hl=en&fl=1


NEW QUESTION # 98
Your organization recently had a sophisticated malware attack that was propagated through embedded macros in email attachments. As a Workspace administrator, you want to provide an additional layer of anti-malware protection over the conventional malware protection that is built into Gmail. What should you do to protect your users from future unknown malware in email attachments?

  • A. Turn on advanced phishing and malware protection.
  • B. Run queries in Security Investigation Tool.
  • C. Enable Gmail confidential mode.
  • D. Enable Security Sandbox.

Answer: D

Explanation:
https://support.google.com/a/answer/7676854?hl=en#zippy=%2Cscan-all-attachments-in-security-sandbox:~:text=detect%20harmful%20attachments-,Set%20up%20rules%20to%20detect%20harmful%20attachments,Security%20Sandbox,-Supported%20editions%20for


NEW QUESTION # 99
Your company has been engaged in a lawsuit, and the legal department has been asked to discover and hold all email for two specific users. Additionally, they have been asked to discover and hold any email referencing "Secret Project 123." What steps should you take to satisfy this request?

  • A. Create a Matter and a Hold. Set the Hold to Gmail, set it to the top level Organization, and set the search terms to "secret project 123." Create a second Hold. Set the second Hold to Gmail, set it to Accounts, and enter: user1 @your-company.com, [email protected]. Save.
  • B. Create a Matter and a Hold. Set the Hold to Gmail, set it to Accounts, and set the usernames to: [email protected], user2@your-company. Set the search terms to secret OR project OR 123. Save.
  • C. Create a Matter and a Hold. Set the Hold to Gmail, set it to Accounts, and enter: user1@your- company.com AND [email protected]. Set the search terms to: secret AND project AND 123. Save.
  • D. Create a Matter and a Hold. Set the Hold to Gmail, set it to Accounts, and set the usernames to: [email protected], user2@your-company. Set the search terms to: (secret project 123). Save.

Answer: A

Explanation:
The correct way to search for the esact term is in quotes ("project 123" and not (project 123)). Ref: https://support.google.com/vault/answer/2474474?hl=en. Also, afeter doing this ytou must create the retention rule using comas to separate user from user.


NEW QUESTION # 100
Your company has just acquired a new group of users. They have been provisioned into the Google Workspace environment with your primary domain as their primary email address. These new users still need to receive emails from their previous domain. What is the best way to achieve this for these new users, without updating the information of preexisting users?

  • A. Update the Google-provided test domain to be the domain of the acquired company, and then update the email information of all new users with alias emails.
  • B. Add the acquired domain as an alias to the primary Google Workspace domain.
  • C. Add the acquired domain as a secondary domain to the primary Google Workspace domain, and then update the email information of all new users with alias emails.
  • D. Without adding a domain, update each user's email information with the previous domain.

Answer: B


NEW QUESTION # 101
You want to create a list of IP addresses that are approved to send email to your domain. To accomplish this, what section of the Google Workspace Admin console should you update?

  • A. Content compliance rule
  • B. Bypass spam filter
  • C. Approved email denylist
  • D. Email allowlist

Answer: D


NEW QUESTION # 102
Your organization has just completed migrating users to Workspace. Many employees are concerned about their legacy Microsoft Office documents, including issues of access, editing, and viewing. Which two practices should you use to alleviate user concerns without limiting Workspace collaboration features? (Choose two.)

  • A. Demonstrate the ability to convert Office documents to native Google file format from Drive.
  • B. Configure Context-Aware Access policies to block access to Microsoft Office applications.
  • C. Demonstrate and train users to use the Workspace Migrate tool.
  • D. Continue to use installed Office applications along with Google Drive for Desktop.
  • E. Deliver training sessions that show the methods to access and edit native Office files in Drive, the Workspace file editors, and Drive for Desktop.

Answer: A,E


NEW QUESTION # 103
......

New Google-Workspace-Administrator Exam Dumps with High Passing Rate: https://www.passsureexam.com/Google-Workspace-Administrator-pass4sure-exam-dumps.html

Google-Workspace-Administrator Certification Exam Dumps with 155 Practice Test Questions: https://drive.google.com/open?id=16ECKOS1fnoK8Nq74eiitSI6VzUgrs5Ld