
Latest [Nov 10, 2025] Associate-Google-Workspace-Administrator Exam Dumps - Valid and Updated Dumps
Free Sales Ending Soon - 100% Valid Associate-Google-Workspace-Administrator Exam Dumps with 103 Questions
NEW QUESTION # 56
Your organization allows employees to use their personal devices for work purposes. You want to ensure these devices follow the company's security policies. You need to choose a mobile management solution that provides minimal passcode enforcement and allows for an admin to remotely wipe a user's account from the device. You also want to avoid having to install agents on employees' personal devices. What should you do?
- A. Deploy a third-party mobile device management (MDM) solution.
- B. Enforce a strong password policy, and enforce the password policy at the next sign-in.
- C. Implement Google's advanced management on mobile devices.
- D. Implement Google's basic management on mobile devices.
Answer: D
Explanation:
Google's basic management for mobile devices allows administrators to enforce minimal security policies, such as passcode enforcement, without requiring the installation of any agents on employees' personal devices. This solution also allows for remotely wiping a user's account from the device if needed, ensuring data security while maintaining a less intrusive management approach for personal devices.
NEW QUESTION # 57
Your security team is concerned about disgruntled employees downloading large amounts of intellectual property. You need to create an automatic notification if any user downloads more than 500 files from Google Drive within a one-hour period. What should you do?
- A. Use the alert center to review Drive audit logs for instances where users download a large number of files.
- B. Configure a Data Loss Prevention (DLP) rule for Drive.
- C. Create an activity rule in the security investigation tool to monitor Drive download events. Set a threshold to trigger an alert.
- D. Set up an alert within Google Cloud Monitoring to track the number of Drive API calls and trigger a notification when a user makes an excessive number of download requests.
Answer: C
Explanation:
To create an automatic notification for a specific event (downloading more than 500 files from Google Drive within a one-hour period), an "activity rule" in the Google Workspace Security Center (which leverages the security investigation tool's capabilities) is the most appropriate and direct solution. Activity rules allow you to define conditions based on log events (like Drive downloads) and set thresholds to trigger alerts and even automated actions.
Here's why the other options are less suitable for this specific requirement:
B . Use the alert center to review Drive audit logs for instances where users download a large number of files. The Alert Center displays alerts, but it doesn't create the custom alert for this specific threshold. You would review existing alerts here. While Drive audit logs are the source of the data, the Alert Center isn't where you configure the rule to generate the alert based on a specific count of downloads within a time period.
C . Configure a Data Loss Prevention (DLP) rule for Drive. DLP rules are designed to prevent sensitive data from being shared or downloaded. They focus on the content of the files (e.g., credit card numbers, PII). While useful for data exfiltration, a DLP rule wouldn't specifically count the number of downloads to trigger an alert based on a volume threshold, regardless of content.
D . Set up an alert within Google Cloud Monitoring to track the number of Drive API calls and trigger a notification when a user makes an excessive number of download requests. While technically possible via Google Cloud's logging and monitoring infrastructure if you're forwarding Google Workspace logs there, this is a more complex and advanced solution requiring integration with Google Cloud Platform. The Google Workspace Admin console offers a direct, built-in feature (activity rules) for this specific use case, making it the more efficient and less expensive solution within the context of Google Workspace administration.
Reference from Google Workspace Administrator:
Create and manage activity rules: This documentation directly explains how to create activity rules, including setting conditions based on log events (like Drive downloads) and defining thresholds to trigger alerts.
Reference:
Specifically, for Drive download events: The activity rule configuration allows you to select "Drive log events" as the data source and then filter by "Download" event type. You can then define the threshold (e.g., count > 500 within 1 hour).
Drive audit log events: These logs are the source data that activity rules analyze. They capture events like "Download." About the security investigation tool: Activity rules are often created within or leverage the capabilities of the security investigation tool.
NEW QUESTION # 58
Your company's security team should be able to investigate unauthorized external file sharing. You need to ensure that the security team can use the security investigation tool and you must follow the principle of least privilege. What should you do?
- A. Grant the super admin role to a delegate from the security team.
- B. Share the Drive audit log with the security team.
- C. Create a pre-built reporting role. Assign the role to the security team alias.
- D. Create a custom admin role with security center privileges. Assign the role to the individual security team members.
Answer: D
Explanation:
By creating a custom admin role with security center privileges, you can ensure that the security team has the necessary access to investigate unauthorized external file sharing while adhering to the principle of least privilege. This approach provides the security team with the specific permissions they need without granting unnecessary broader privileges, such as those associated with the super admin role.
NEW QUESTION # 59
Your organization recently deployed Google Workspace. Over 3,000 external contacts were shared in public folders in Microsoft Exchange before the implementation. You need to ensure that these external contacts appear to domain users in Gmail. What should you do?
- A. Export the external contacts to a CSV file, upload the file to Google Drive, and instruct users to import to their My Contacts.
- B. Use Google Cloud Directory Sync to sync the external contacts from the public folders in Microsoft Exchange to the Directory.
- C. Use the Domain Shared Contacts API to add the external contacts to the Directory.
- D. Create a user account, add the external contacts, and delegate them to all users in the domain.
Answer: C
Explanation:
The Domain Shared Contacts API allows you to add external contacts to the Google Workspace directory, making them available to all users in the domain. This is the most effective and scalable solution for adding a large number of external contacts (like the 3,000 from Microsoft Exchange) to your Google Workspace environment. Once the contacts are added to the directory, they will be accessible to all users in Gmail and other Google Workspace apps.
NEW QUESTION # 60
The innovation team at your organization has a dedicated room with prototype equipment. You need to make the room bookable, add the equipment, and ensure that there are no booking conflicts. Only the innovation team and the sales directors can access this room. What should you do?
- A. Create a Google Group for the innovation team and another Google Group for sales directors. Share the room's calendar with both groups.
- B. Create a Google Calendar event for the room. Share the event with the innovation team and sales directors.
- C. Create a separate Google Calendar resource for the room. Manually manage booking requests from both teams.
- D. Edit the Google Calendar settings for the room resource. Adjust the permission settings so only the innovation team and sales director group can view and book time on this calendar.
Answer: D
Explanation:
By creating a dedicated Google Calendar resource for the room and adjusting its permission settings, you can ensure that only the innovation team and sales directors have access to book the room. This approach allows for centralized management of room bookings while preventing conflicts, as Google Calendar will automatically handle scheduling and prevent double-bookings.
NEW QUESTION # 61
Your company wants to minimize distractions and inappropriate content in their Google Chat spaces. You need to give trusted employees the ability to remove messages and ban users from specific Chat spaces. What should you do?
- A. Disable all Chat spaces except those specifically approved by management.
- B. Create a data loss prevention (DLP) rule that blocks inappropriate content from being shared
- C. Use the security investigation tool to audit and monitor Chat messages.
- D. Assign the trusted employees as moderators for the relevant Chat spaces.
Answer: D
Explanation:
Assigning trusted employees as moderators for the relevant Chat spaces will give them the necessary privileges to remove messages and ban users when needed. This is the most efficient way to control inappropriate content and maintain a positive and productive environment within the spaces. Moderators can take action to address issues directly without requiring more complex or restrictive solutions.
NEW QUESTION # 62
The legal department at your organization is working on a time-critical merger and acquisition (M&A) deal. They urgently require access to specific email communications from an employee who is currently on leave. The organization's current retention policy is set to indefinite. You need to retrieve the required emails for the legal department in a manner that ensures data privacy. What should you do?
- A. Use Google Vault to create a matter specific to the M&A deal. Search for relevant emails within the employee's mailbox. Export and share relevant emails with your legal department.
- B. Instruct the IT department to directly access and forward the relevant emails to the legal department.
- C. Temporarily grant the legal department access to the employee's email account with a restricted scope that is limited to the M&A-related emails.
- D. Ask a colleague with delegate access to the employee's mailbox to identify and forward the relevant emails to the legal department.
Answer: A
Explanation:
Using Google Vault to create a matter specific to the M&A deal allows for legal, secure, and privacy-compliant retrieval of emails. You can search for the specific emails related to the merger and acquisition, export them, and share them with the legal department without granting direct access to the employee's mailbox. This approach ensures both data privacy and compliance with organizational policies.
NEW QUESTION # 63
The names and capacities of several conference rooms have been updated. You need to use the most efficient way to update these details.
What should you do?
- A. Add the modified rooms as new resources. Tell employees not to use old rooms.
- B. Edit each resource in the Google Admin console.
- C. Export the resource list to a CSV file, make the changes, and re-import the updated file.
- D. Delete the existing resources and recreate the resources with the updated information.
Answer: C
Explanation:
Exporting the resource list to a CSV file, making the necessary updates, and then re-importing the file is the most efficient method for updating multiple conference rooms at once. This approach allows you to make bulk updates quickly without needing to edit each resource individually or delete and recreate rooms. It also ensures that the updated information is applied to all affected rooms at once.
NEW QUESTION # 64
Your organization has experienced a recent increase in unauthorized access attempts to your company's Google Workspace instance. You need to enhance the security of user accounts while following Google-recommended practices. What should you do?
- A. Disable password recovery options to prevent unauthorized individuals from accessing user accounts.
- B. Enforce a strong password policy that requires users to include special characters, numbers, and uppercase letters.
- C. Implement a strong password policy and enable text messages as the 2-Step Verification (2SV) using text messages.
- D. Enforce the use of physical security keys as the 2-Step Verification (2SV) method for all users.
Answer: D
Explanation:
Enforcing the use of physical security keys for 2-Step Verification (2SV) provides a highly secure method of protecting user accounts from unauthorized access. Physical security keys are one of the most robust forms of two-factor authentication because they cannot be easily phished or stolen, even if an attacker knows the user's password. Google recommends using physical security keys as the 2SV method, as they provide strong protection against unauthorized access attempts.
NEW QUESTION # 65
Your company has recently purchased a new domain name to use for the corporate email addresses. However, you are unable to access certain features in Google Workspace because the domain is not verified. You need to verify the domain. What should you do?
- A. Contact Google support and request manual verification.
- B. Purchase a SSL certificate for your domain.
- C. Add an MX record to your DNS zone that points to Google Workspace.
- D. Request a TXT record be added to the DNS zone by your domain registrar.
Answer: D
Explanation:
To verify a domain name with Google Workspace and gain access to all its features, you typically need to prove that you own the domain. One of the most common methods for doing this is by adding a specific TXT record to your domain's DNS (Domain Name System) zone. Google provides this unique TXT record, and once it's published in your DNS, Google can verify your ownership.
Here's why option C is the correct approach and why the others are not the standard methods for domain verification in Google Workspace:
C . Request a TXT record be added to the DNS zone by your domain registrar.
Google Workspace provides a unique TXT record that you need to add to your domain's DNS settings. This record contains a specific code that Google's systems check for. By finding this record in your domain's public DNS, Google can confirm that you have control over the domain and are authorized to use it with Google Workspace. You usually manage DNS records through the interface provided by your domain registrar or your DNS hosting provider.
Associate Google Workspace Administrator topics guides or documents reference: The official Google Workspace Admin Help documentation on "Verify your domain for Google Workspace" (or similar titles) explicitly outlines the different methods for domain verification. Adding a TXT record is consistently presented as a primary and recommended method. The documentation provides the exact steps:Sign in to your domain host (domain registrar).
Go to your domain's DNS records.
Add a TXT record with the value provided by Google.
Save the TXT record.
In the Google Admin console, start the verification process. Google will then check for the TXT record.
A . Contact Google support and request manual verification.
While Google support can assist with domain verification issues, it's not the standard first step. Manual verification is usually reserved for situations where the standard methods (like TXT or CNAME records) cannot be used or have failed. You should first attempt one of the standard DNS-based verification methods.
Associate Google Workspace Administrator topics guides or documents reference: The standard domain verification process, as documented in Google Workspace Admin Help, primarily involves DNS record modifications. Contacting support is usually a step taken if there are problems with these standard methods.
B . Add an MX record to your DNS zone that points to Google Workspace.
MX records are for directing email to the correct mail servers. While you will eventually need to configure MX records to use Gmail with your domain, adding them is not the primary step for verifying the domain's ownership. Domain verification needs to be completed before you can fully set up email and have Google manage your domain's email flow.
Associate Google Workspace Administrator topics guides or documents reference: The Google Workspace Admin Help documentation clearly separates the steps for domain verification from setting up MX records for email. Verification comes first to prove ownership.
D . Purchase an SSL certificate for your domain.
An SSL (Secure Sockets Layer) certificate is used to secure communication between a web server and a browser, typically for websites. It is not related to verifying domain ownership for Google Workspace services. While having an SSL certificate is important for website security, it does not serve as a method for Google to confirm that you own the domain for Google Workspace setup.
Associate Google Workspace Administrator topics guides or documents reference: Google Workspace domain verification methods are specifically focused on demonstrating control over the domain's DNS records. SSL certificates are a separate aspect of web security.
Therefore, the correct action to verify your domain for Google Workspace is to request a TXT record from Google and add it to your domain's DNS zone through your domain registrar's management interface.
NEW QUESTION # 66
Your organization has enabled Google Groups for Business to let employees create and manage their own email distribution lists and web forums. You need to ensure that users cannot join external Google Groups with their Google Workspace accounts without interrupting internal group usage. What should you do?
- A. Use the Directory API to change the settings of user-created groups to disable features that allow external users to access, view, or post on groups.
- B. Set the setting for Google Groups for Business called Default for permission to view conversations to All organization users.
- C. Set the setting for Google Groups for Business called Accessing groups from outside this organization to Private.
- D. In Additional Google Services, turn Google Groups OFF at the root organizational unit.
Answer: C
Explanation:
By setting the Accessing groups from outside this organization to Private, you prevent users from joining external Google Groups while still allowing internal users to use Google Groups within the organization. This setting ensures that only members of your organization can join and interact with internal groups, effectively stopping external access without affecting internal group usage.
NEW QUESTION # 67
Your company has recently migrated from an on-premises email solution to Google Workspace. You have successfully added and verified the new primary domain. However, you also want to continue receiving emails sent to your former on-premises email server for a transitional period. You need to ensure that emails sent to your former domain are still delivered to your on-premises server, even though your primary email system is now Google Workspace. What should you do?
- A. Configure MX records for the former domain to point to your on-premises email servers.
- B. Adjust the TTL (Time-to-Live) for the former domain to ensure a smooth transition.
- C. Add the former domain as a domain alias for the primary domain.
- D. Add the former domain as a secondary domain in your Google Workspace settings and verify the domain.
Answer: A
Explanation:
To ensure that emails sent to your former domain are still delivered to your on-premises server during a transitional period after migrating your primary email to Google Workspace, you need to configure the MX (Mail Exchanger) records for the former domain to point to your on-premises email servers.
Here's why the other options are incorrect and why configuring MX records is the correct approach, based on the principles of email routing and domain management within Google Workspace:
A . Configure MX records for the former domain to point to your on-premises email servers.
MX records are DNS records that specify the mail servers responsible for accepting email messages on behalf of a domain. 1 By configuring the MX records for your former domain to point to the IP addresses or hostnames of your on-premises email servers, you are instructing the internet's DNS system that any email addressed to users on your former domain should be routed to those specific servers. This ensures that mail for the former domain bypasses Google Workspace and continues to be delivered to your existing infrastructure.
Associate Google Workspace Administrator topics guides or documents reference: While the exact phrasing might vary across different Google Workspace support articles and documentation, the core concept of MX records and their role in email routing is fundamental to domain setup and management. The official Google Workspace Admin Help documentation on "Set up MX records for Google Workspace" (or similar titles) explicitly explains how MX records control where email for a domain is delivered. In this scenario, you are essentially managing the MX records for a domain that is not the primary Google Workspace domain to direct its mail flow.
B . Add the former domain as a secondary domain in your Google Workspace settings and verify the domain.
Adding a domain as a secondary domain within Google Workspace allows you to create separate user accounts with email addresses on that domain, all managed within your Google Workspace organization. This would mean that Google Workspace would handle the email for the former domain, which is the opposite of what you need in this scenario (you want the emails to go to your on-premises server).
Associate Google Workspace Administrator topics guides or documents reference: The Google Workspace Admin Help documentation on "Add a domain or domain alias" clearly distinguishes between secondary domains and domain aliases and their respective functionalities. Secondary domains are for managing separate sets of users, not for routing mail to external servers.
C . Adjust the TTL (Time-to-Live) for the former domain to ensure a smooth transition.
TTL is the amount of time a DNS record is cached by resolving name servers. While adjusting TTL can be important when making DNS changes (like switching MX records to Google Workspace), it doesn't directly control where email is delivered. Lowering the TTL before making MX changes to point to Google Workspace helps with a faster transition, but in this case, you are not pointing the former domain's mail to Google Workspace. Therefore, adjusting the TTL alone will not achieve the desired outcome.
Associate Google Workspace Administrator topics guides or documents reference: Information on TTL is typically found within the context of DNS management best practices in Google Workspace Admin Help, often related to domain verification or MX record changes to Google. It doesn't serve as a mechanism for routing mail to external, non-Google Workspace servers for a domain that isn't managed by Google Workspace for email.
D . Add the former domain as a domain alias for the primary domain.
Adding a domain as a domain alias means that emails sent to addresses on the alias domain will be delivered to the corresponding user accounts on your primary Google Workspace domain. This is useful when you want users to receive email at multiple domain names within your Google Workspace environment. It does not route email to an external, on-premises server.
Associate Google Workspace Administrator topics guides or documents reference: The Google Workspace Admin Help documentation on "Add a domain or domain alias" clearly explains the functionality of domain aliases. It emphasizes that email sent to a domain alias is received by the users on the primary domain, not an external system.
Therefore, the only way to ensure emails sent to your former domain are still delivered to your on-premises server is by configuring the MX records for that former domain to point to your on-premises mail server.
NEW QUESTION # 68
Your compliance team has observed that employees at your organization are frequently resetting their passwords and is concerned about account hijacking. You need to create a solution to notify the compliance team whenever a user updates or resets their password. What should you do?
- A. Move all compliance team members into a separate organizational unit (OU). Create and enforce a new password policy for the members of this OU.
- B. Create and enforce a new password policy for all users in your organization.
- C. Create a new alert by using user log events. Check that the challenge type is "Password", and add the compliance team as email recipients.
- D. Create an activity rule that is triggered by the User's password changed event. Add compliance team members as email recipients.
Answer: D
Explanation:
Creating an activity rule that triggers on the "User's password changed" event allows you to automatically notify the compliance team whenever a user updates or resets their password. This approach is efficient because it directly ties the event to the rule and sends alerts without requiring manual monitoring or additional steps. By adding the compliance team as email recipients, you ensure they are promptly notified of any changes.
NEW QUESTION # 69
Your organization acquired a small agency with only five users. You need to create user accounts for these new employees. Agency users must have their original email address. You have added the agency's domain as a secondary domain. What should you do?
- A. Manually create users from the Admin console. When creating the user account, choose the agency domain to be used for the email address.
- B. Use Google Cloud Directory Sync (GCDS) to sync users from an existing directory.
- C. Bulk upload all users using a CSV file.
- D. Use the Directory API to automatically create the user accounts.
Answer: A
Explanation:
The key information here is "only five users" and "Agency users must have their original email address. You have added the agency's domain as a secondary domain." For a small number of users (five), manually creating them in the Admin console is the most straightforward and least complex method. When creating a new user, the Admin console allows you to select the domain for their primary email address from any secondary domains you have added to your Google Workspace account.
Here's why the other options are less suitable:
A . Use the Directory API to automatically create the user accounts. While the Directory API can be used for automation, it requires scripting or programming knowledge. For just five users, this is overkill and introduces unnecessary complexity.
C . Use Google Cloud Directory Sync (GCDS) to sync users from an existing directory. GCDS is designed for syncing large numbers of users and groups from an on-premise directory (like Active Directory) to Google Workspace. For only five users, and if there isn't an existing directory that needs ongoing synchronization, GCDS is far too complex and unnecessary.
D . Bulk upload all users using a CSV file. Bulk upload using a CSV file is efficient for a larger number of users (e.g., dozens, hundreds, or thousands). For only five users, preparing a CSV file might take as much or more time than simply creating them one by one through the graphical interface, especially if it's a one-time task.
Reference from Google Workspace Administrator:
Add users one by one: This method is explicitly recommended for adding a small number of users (e.g., 10 or fewer). During the user creation process, you have the option to choose the domain for the user's primary email address from your available domains.
Reference:
Add a domain or domain alias: This is the prerequisite step mentioned in the question ("You have added the agency's domain as a secondary domain.") which allows you to use that domain for user email addresses.
NEW QUESTION # 70
Your company is undergoing a regulatory compliance audit. As part of the audit, you are required to demonstrate that you can preserve all electronic communications related to a specific project for a potential legal discovery process. You need to configure Google Vault to accomplish this goal. What should you do?
- A. Create a matter and a hold on all project-related data sources such as Email. Chat, and Drive within Google Workspace.
- B. Create a custom retention policy for the project data. Ensure that the policy covers the required retention period.
- C. Use the search and export functionality to identify all relevant communications within the project timeframe.
- D. Use the security investigation report to show Vault log events.
Answer: A
Explanation:
Creating a matter and placing a hold on the relevant data sources ensures that all communications related to the specific project are preserved, even if users try to delete them. This will help in maintaining compliance with legal or regulatory requirements for e-discovery, and it ensures that data cannot be modified or deleted during the audit process.
NEW QUESTION # 71
Your company wants to start using Google Workspace for email. Your domain is verified through a third-party provider. You need to route the email to Google Workspace. What should you do?
- A. Change your domain's A record to point to Google's mail servers.
- B. Create a CNAME record that maps your domain to "gmail.com."
- C. Update your domain's MX records to the Google Workspace MX records provided in the setup instructions.
- D. Configure a forwarding rule in your current email system to redirect all messages to Gmail.
Answer: C
Explanation:
To route your email to Google Workspace, you need to update your domain's MX (Mail Exchange) records to point to Google's mail servers. This step ensures that emails sent to your domain are delivered to your Google Workspace Gmail accounts. The MX records are provided in the setup instructions during the Google Workspace configuration process.
NEW QUESTION # 72
Your organization's security team has published a list of vetted third-party apps and extensions that can be used by employees. All other apps are prohibited unless a business case is presented and approved. The Chrome Web Store policy applied at the top-level organization allows all apps and extensions with an admin blocklist. You need to disable any unapproved apps that have already been installed and prevent employees from installing unapproved apps. What should you do?
- A. Disable the Chrome Web Store service for the top-level organizational unit. Enable the Chrome Web Store service for organizations that require Chrome apps and extensions.
- B. Disable Extensions and Chrome packaged apps as Allowed types of apps and extensions for the top-level organizational unit. Selectively enable the appropriate extension types for each suborganization
- C. Change the Chrome Web Store allow/block mode setting to allow all apps, admin manages blocklist, In the App access control card, block any existing web app that is not on the security team's vetted list.
- D. Change the Chrome Web Store allow/block mode setting to block all apps, admin manages allowlist. Add the apps on the security team's vetted list to the allowlist.
Answer: D
Explanation:
Changing the Chrome Web Store policy to block all apps and managing an allowlist ensures that only vetted, approved apps are allowed for installation. This approach enforces the security team's policy by restricting access to unapproved apps while enabling the installation of only those apps that have been explicitly approved. This method provides control over what can be installed, aligning with the organization's security requirements.
NEW QUESTION # 73
Your organization has hired temporary employees to work on a sensitive internal project. You need to ensure that the sensitive project data in Google Drive is limited to only internal domain sharing. You do not want to be overly restrictive. What should you do?
- A. Restrict the Drive sharing options for the domain to allowlisted domains.
- B. Create a Drive DLP rule, and use the sensitive internal Project name as the detector.
- C. Configure the Drive sharing options for the domain to internal only.
- D. Turn off the Drive sharing setting from the Team dashboard.
Answer: C
Explanation:
By configuring the Drive sharing options for your domain to "internal only," you ensure that sensitive project data is restricted to your organization's internal users. This prevents any external sharing while allowing your team members to collaborate freely within the organization. It strikes the right balance between maintaining security and avoiding unnecessary restrictions on collaboration.
NEW QUESTION # 74
Your organization is implementing a new customer support process that uses Gmail. You need to create a cost-effective solution that allows external customers to send support request emails to the customer support team. The requests must be evenly distributed among the customer support agents. What should you do?
- A. Create a Google Group, enable collaborative inbox settings, set posting permissions to "Anyone on the web", and add the customer support agents as group members.
- B. Use delegated access for a specific email address that represents the customer support group, and add the customer support team as delegates for that email address.
- C. Create a Google Group, add the support agents to the group, and set the posting permissions to "Public."
- D. Set up an inbox for the customer support team. Provide the login credentials to the customer support team.
Answer: A
Explanation:
A Google Group with collaborative inbox settings allows you to evenly distribute support request emails among the team. By setting the posting permissions to "Anyone on the web," external customers can send emails directly to the group, and the emails will be distributed to the support agents as tasks. This is a cost-effective solution that also provides an organized way to manage and track customer support requests.
NEW QUESTION # 75
You are investigating a potential data breach. You need to see which devices are accessing corporate data and the applications used. What should you do?
- A. Analyze the User Accounts section in the Google Admin console.
- B. Analyze the audit log in the Admin console for device and application activity.
- C. Analyze the security investigation tool to access device log data.
- D. Analyze the Google Workspace reporting section of the Admin console.
Answer: B
NEW QUESTION # 76
Your company is transitioning to Google Workspace from legacy communication and collaboration applications. User accounts are managed in Active Directory and synced to Google Workspace by using Google Cloud Directory Sync (GCDS). Your company is implementing a new security policy for all accounts that requires complex passwords. Passwords must be at least 20 characters long, contain 3 symbols, 4 numbers, and 2 capital letters.
You need to enforce the new password policy in Google Workspace. What should you do?
- A. Create a password policy in Active Directory. Install Password Sync on the global catalog servers for Active Directory and require a password change for your users.
- B. Enable strong password enforcement and require a minimum length of 20 characters at the top-level organizational unit.
- C. Share the instructions for changing a Google account password with your users. Monitor password strength in the Google Admin console as users change their passwords.
- D. Create a password policy in Active Directory. Enable password synchronization in GCDS.
Answer: D
Explanation:
Since user accounts are managed in Active Directory (AD) and synced to Google Workspace via Google Cloud Directory Sync (GCDS), the best approach to enforce the new password policy is to create the password policy within Active Directory and then enable password synchronization in GCDS. This ensures that the complex password requirements are enforced within AD, and when passwords are updated, they will be synchronized with Google Workspace, maintaining consistency across both systems.
NEW QUESTION # 77
Multiple users in your organization are reporting that Calendar invitations sent from a specific department are not being received. You verified that the invitations are being sent and there are no error messages in the sender's logs. You want to troubleshoot the issue. What should you do?
- A. Analyze the message headers of the sent invitations by using the Google Admin Toolbox to identify any delivery issues.
- B. Disable and re-enable the Calendar service for the affected users to refresh their connection.
- C. Check the affected users' Calendar settings to confirm whether they have accidentally blocked invitations from the specific department.
- D. Verify that the senders in the specific department have the necessary permissions to share their calendars externally and send invitations outside of the organization.
Answer: A
Explanation:
Using the Google Admin Toolbox to analyze the message headers of the sent invitations helps you identify if there are any issues with the delivery of the invitations, such as misrouted messages or issues with email delivery to the affected users. This approach will give you detailed information on what might be causing the issue, even if no error messages appear in the sender's logs.
NEW QUESTION # 78
......
Google Associate-Google-Workspace-Administrator Exam Syllabus Topics:
| Topic | Details |
|---|---|
| Topic 1 |
|
| Topic 2 |
|
| Topic 3 |
|
| Topic 4 |
|
| Topic 5 |
|
Associate-Google-Workspace-Administrator Exam Dumps - 100% Marks In Associate-Google-Workspace-Administrator Exam: https://braindumps.exam4tests.com/Associate-Google-Workspace-Administrator-pdf-braindumps.html