
Updated Apr-2025 Test Engine to Practice Google-Workspace-Administrator Test Questions
Google-Workspace-Administrator Real Exam Questions Test Engine Dumps Training With 92 Questions
Google-Workspace-Administrator certification exam is designed to test individuals on their knowledge and ability to manage and administer Google Workspace in a professional setting. As the world continues to shift towards cloud-based solutions, there is a growing demand for certified professionals who can effectively manage and optimize the use of Google Workspace. Google Cloud Certified - Professional Google Workspace Administrator certification is intended for individuals who have experience working with Google Workspace and want to take their skills to the next level.
NEW QUESTION # 22
Your company is using Google Workspace Enterprise Plus, and the Human Resources (HR) department is asking for access to Work Insights to analyze adoption of Google Workspace for all company employees. You assigned a custom role with the work Insights permission set as "view data for all teams" to the HR group, but it is reporting an error when accessing the application.
What should you do?
- A. Confirm in Reports > BigQuery Export that the job is enabled.
- B. Allocate the "view data for all teams" permission to all employees of the company.
- C. Confirm in Security > API controls > App Access Controls that Work Insights API is set to
"unrestricted." - D. Confirm that the Work Insights app is turned ON for all employees.
Answer: D
NEW QUESTION # 23
You work for an international organization and your CEO frequently travels to other countries.
You need to enable email access and configure the account for multiple administrative assistants.
What should you do?
- A. Provide the executive administrative assistants with the account password of the CEO.
- B. Enable users to specify what sender information is included in delegated messages sent from their account.
- C. Log into the Gmail account of the CEO. Set up and share two separate email aliases.
- D. Create a group of administrative assistants. Enable delegated access to the mailbox of the CEO for that group.
Answer: D
NEW QUESTION # 24
Your company has sales offices in Madrid, Tokyo, London, and New York. The outbound email for those offices needs to include the sales person's signature and a compliance footer. The compliance footer needs to say "Should you no longer wish to receive emails about this offer, please reply with UNSUBSCRIBE." You are responsible for making sure that users cannot remove the footer.
What should you do?
- A. Send an email to each sales person with the instructions on how to add the footer to their Signature.
- B. Ensure that each sales team is in their own OU, and configure the Append Footer with footer content.
- C. Ensure that each sales team is in their own OU, and configure the Append Footer with the footer content translated for each locale.
- D. Ensure that each sales team is in their own OU, and configure the Append Footer with the signature and footer content translated for each locale.
Answer: C
Explanation:
Organizational Units (OUs): Ensure that each sales team (Madrid, Tokyo, London, New York) is organized into their own Organizational Units (OUs) within Google Workspace. This helps in applying specific settings to each group individually.
Navigate to Admin Console: Go to the Google Admin console (admin.google.com) and sign in with your administrator account.
Access Gmail Settings: In the Admin console, go to Apps > Google Workspace > Gmail > Compliance.
Configure Append Footer:
Click on "Add another rule" under the "Content compliance" section.
Name the rule appropriately (e.g., Sales Compliance Footer).
Under the "Email messages to affect" section, select "Outbound" to ensure the rule applies to emails sent by the sales teams.
In the "Add setting" section, select "Append footer" and enter the footer content. Ensure the footer text is translated according to each locale.
Footer Content: The footer should include the message: "Should you no longer wish to receive emails about this offer, please reply with UNSUBSCRIBE." Ensure this is translated appropriately for each office's locale.
Enforce Non-removable Footer: By configuring this at the OU level and using the Append Footer setting in compliance rules, users will not be able to remove this footer from their emails.
Save and Apply: Save the rule and ensure it is applied to the specific OUs containing the sales teams.
Reference
Google Workspace Admin: Set up compliance rules for Gmail
Google Workspace Admin: Configure email footers
NEW QUESTION # 25
Your organization's users are reporting that a large volume of legitimate emails are being misidentified as spam in Gmail. You want to troubleshoot this problem while following Google-recommended practices. What should you do?
- A. Contact Google Workspace support and report a suspected system-wide spam filter malfunction.
- B. Advise users to individually allowlist senders.
- C. Adjust the organization's mail content compliance settings in the Admin console.
- D. Disable spam filtering for all users.
Answer: A
Explanation:
If legitimate emails are being misidentified as spam across the organization, it suggests that there may be a broader issue with the spam filtering system. Contacting Google Workspace support to investigate and resolve the problem is the recommended approach. Disabling spam filtering or adjusting individual settings may not resolve the root cause and could potentially lead to further issues.
NEW QUESTION # 26
You are investigating a potential data breach. You need to see which devices are accessing corporate data and the applications used. What should you do?
- A. Analyze the User Accounts section in the Google Admin console.
- B. Analyze the audit log in the Admin console for device and application activity.
- C. Analyze the Google Workspace reporting section of the Admin console.
- D. Analyze the security investigation tool to access device log data.
Answer: B
Explanation:
The audit log in the Google Admin console provides detailed information about device and application activity, which is crucial for investigating a potential data breach. You can see which devices have accessed corporate data, as well as which applications were used, giving you a comprehensive view of any unauthorized or suspicious activities. This is the most appropriate and efficient tool for this investigation.
NEW QUESTION # 27
An employee in your organization is reporting that they cannot access a non-Google file in the Google Drive web interface even though other documents in Google Drive are working. You want to identify why they can't access the file and fix the problem. What should you do? (Choose two.)
- A. Disable Context-Aware Access policies.
- B. Instruct the employee to clear the browser cache.
- C. Instruct the employee to check the size of the document and divide the information into smaller parts if it is close to the limit.
- D. Instruct the employee to make a copy of the document by using the Google Drive user interface, then work from the copy.
- E. Reset the sign-in cookies of the employee.
Answer: B,C
Explanation:
https://support.google.com/drive/answer/2456903?hl=en#zippy=
NEW QUESTION # 28
An executive at your organization asked you to give their executive administrator access to their Workspace account. You need to ensure that this executive administrator can manage emails in the executive's account. You need to maintain security and privacy of the executive's account. What should you do?
- A. Create a Google Group, and add all executive administrators. Enable delegated access to the Group.
- B. Grant delegated access to the executive's Gmail account, and assign access to their executive administrator in Gmail settings.
- C. Assist the executive in setting up email forwarding to their executive administrator.
- D. Instruct the executive to share their password with their executive administrator.
Answer: B
Explanation:
Granting delegated access allows the executive administrator to manage the executive's emails without requiring access to the executive's password. This solution ensures security and privacy by limiting the permissions to email management only, while keeping the executive's account secure. The executive administrator will be able to send, read, and delete emails on behalf of the executive, but they won't have access to other aspects of the account.
NEW QUESTION # 29
Your business partner requests that a new custom cloud application be set up to log in without having separate credentials.
What is your business partner required to provide in order to proceed?
- A. Service provider ACS URL
- B. Service provider logout URL
- C. Identity Provider URL
- D. Service provider certificate
Answer: A
Explanation:
In order to set up a new custom cloud application to log in without having separate credentials, you need to configure Single Sign-On (SSO) using SAML (Security Assertion Markup Language). The Assertion Consumer Service (ACS) URL is a critical piece of information required for this configuration. It is the endpoint on the service provider's system that receives the authentication assertions from the identity provider (Google Workspace in this case).
* Service Provider ACS URL: The ACS URL is necessary for the SSO configuration because it is the URL to which the identity provider will send the SAML assertion after authentication. This URL tells
* the identity provider where to send the SAML response after the user has been authenticated.
* Configuration Steps:
* In Google Admin console, navigate to Apps > Web and mobile apps.
* Add a custom SAML app.
* Enter the ACS URL provided by the service provider in the appropriate field.
* Complete the configuration by providing other necessary information such as the Entity ID and Name ID format.
* Importance: Without the ACS URL, the identity provider will not know where to send the authentication tokens, making SSO impossible.
References:
* Google Workspace Admin Help: Set up your own custom SAML app
NEW QUESTION # 30
Your organization is implementing a new customer support process that uses Gmail. You need to create a cost-effective solution that allows external customers to send support request emails to the customer support team. The requests must be evenly distributed among the customer support agents. What should you do?
- A. Use delegated access for a specific email address that represents the customer support group, and add the customer support team as delegates for that email address.
- B. Set up an inbox for the customer support team. Provide the login credentials to the customer support team.
- C. Create a Google Group, add the support agents to the group, and set the posting permissions to "Public."
- D. Create a Google Group, enable collaborative inbox settings, set posting permissions to "Anyone on the web", and add the customer support agents as group members.
Answer: D
Explanation:
A Google Group with collaborative inbox settings allows you to evenly distribute support request emails among the team. By setting the posting permissions to "Anyone on the web," external customers can send emails directly to the group, and the emails will be distributed to the support agents as tasks. This is a cost-effective solution that also provides an organized way to manage and track customer support requests.
NEW QUESTION # 31
An employee at your organization had very poor quality during a Google Meet video call from their laptop. They were at a coffee shop and not on the corporate network during the meeting.
You must troubleshoot the issue quickly and efficiently. What should you do first?
- A. Check to see if there was a Google Meet outage at the time of the meeting by using the Google Workspace Status Dashboard.
- B. Search for the Meet log events during the time of the Meeting by using the security investigation tool.
- C. Check the user's participant statistics by using the Meet quality tool and entering the corresponding meeting code.
- D. Check to see if Context-Aware access rules were set to prevent Meet access from the user's network location.
Answer: C
NEW QUESTION # 32
Your organization is using Password Sync to sync passwords from Active Directory to Google Workspace. A user changed their network password and cannot log in to Google Workspace with the new password. What steps should you take to troubleshoot this issue?
- A. Reauthorize the Password Sync tool in the Google Workspace Admin Console.
- B. Reset the user's password in Active Directory.
- C. Confirm that the Password Sync service is running on all domain controllers.
- D. Reinstall Password Sync on all domain controllers.
Answer: C
Explanation:
* Check Service Status: Verify that the Password Sync service is running on all domain controllers by accessing the Services panel on each domain controller.
* Restart Service if Necessary: If the service is not running, restart it and ensure it is set to start automatically.
* Review Logs: Check the event logs on the domain controllers for any errors related to Password Sync.
* Sync Test: Perform a password change on a test user account and verify that the change is synchronized with Google Workspace.
References:
* Google Workspace Admin Help - Set Up Password Sync
* Google Workspace Admin Help - Troubleshoot Password Sync
NEW QUESTION # 33
As the newly hired Admin in charge of Google Workspace, you learn that the organization has been using Google Workspace for months and has configured several security rules for accessing Google Drive. A week after you start your role, users start to complain that they cannot access Google Drive anymore from one satellite office and that they receive an error message that "a company policy is blocking access to this app." The users have no issue with Gmail or Google Calendar. While investigating, you learn that both this office's Internet Service Provider (ISP) and the global IP address when accessing the internet were changed over the weekend. What is the most logical reason for this issue?
- A. An access level was defined based on the IP range and applied to Google Drive via Context-Aware Access.
- B. You need to raise a ticket to Google Cloud Support to have your new IP ranges registered for Drive API access.
- C. Under Drive and Docs > Sharing Settings, the "Whitelisted domains" list needs to be updated to add the new ISP domain.
- D. The Network Mask defined in Security > Settings > SSO with 3rd Party IdPs should be updated to reflect the new IP range.
Answer: A
Explanation:
Access Context-Aware Access Settings: In the Google Admin console, go to Security > Context-Aware Access.
Review Access Levels: Check the existing access levels and policies applied to Google Drive.
Update IP Ranges: Update the IP range in the access levels to include the new IP addresses from the satellite office.
Apply Changes: Save and apply the changes to ensure that users in the satellite office can access Google Drive.
Verify Access: Test access from the satellite office to confirm that users can now access Google Drive without issues.
Reference:
Google Workspace Admin Help - Context-Aware Access
Google Workspace Admin Help - Setting up Context-Aware Access
NEW QUESTION # 34
Your organization's security team has published a list of vetted third-party apps and extensions that can be used by employees. All other apps are prohibited unless a business case is presented and approved. The Chrome Web Store policy applied at the top-level organization allows all apps and extensions with an admin blocklist. You need to disable any unapproved apps that have already been installed and prevent employees from installing unapproved apps. What should you do?
- A. Change the Chrome Web Store allow/block mode setting to block all apps, admin manages allowlist. Add the apps on the security team's vetted list to the allowlist.
- B. Disable Extensions and Chrome packaged apps as Allowed types of apps and extensions for the top-level organizational unit. Selectively enable the appropriate extension types for each suborganization
- C. Change the Chrome Web Store allow/block mode setting to allow all apps, admin manages blocklist, In the App access control card, block any existing web app that is not on the security team's vetted list.
- D. Disable the Chrome Web Store service for the top-level organizational unit. Enable the Chrome Web Store service for organizations that require Chrome apps and extensions.
Answer: A
Explanation:
Changing the Chrome Web Store policy to block all apps and managing an allowlist ensures that only vetted, approved apps are allowed for installation. This approach enforces the security team's policy by restricting access to unapproved apps while enabling the installation of only those apps that have been explicitly approved. This method provides control over what can be installed, aligning with the organization's security requirements.
NEW QUESTION # 35
As a team manager, you need to create a vacation calendar that your team members can use to share their time off. You want to use the calendar to visualize online status for team members, especially if multiple individuals are on vacation What should you do to create this calendar?
- A. Request the creation of a calendar resource, configure the calendar to "Automatically add all invitations to this calendar," and give your team "See only free/busy" access.
- B. Create a secondary calendar under your account, and give your team "Make changes to events" access.
- C. Create a secondary calendar under your account, and give your team "See only free/busy" access
- D. Request the creation of a calendar resource, configure the calendar to "Auto-accept invitations that do not conflict," and give your team "See all event details" access.
Answer: B
Explanation:
* Create Secondary Calendar: As the team manager, create a new calendar under your Google account specifically for tracking team vacations.
* Access Settings: Go to the calendar settings and navigate to "Share with specific people".
* Grant Access: Add your team members and give them "Make changes to events" access, allowing them to add their vacation times directly to the calendar.
* Educate Team: Inform team members on how to use this calendar to add their vacation times and check others' schedules.
* Monitor Usage: Regularly review the calendar to ensure it is being used correctly and effectively by all team members.
References:
* Google Workspace Admin Help - Share a Calendar
* Google Workspace Admin Help - Create a Team Calendar
NEW QUESTION # 36
An employee using a Workspace Enterprise Standard license was terminated from your organization. You need to ensure that the former employee no longer has access to their Workspace account and preserve access to the former employee's documents for the manager and the team.
You want to minimize license cost. What should you do?
- A. Switch the license type of the former employee's Workspace account to an Archived User license.
- B. Reset the password of the former employee and keep their Workspace license active.
- C. Suspend former employee's Workspace account.
- D. Delete the former employee's Workspace account.
Answer: A
Explanation:
Switching the former employee's account to an Archived User license ensures that their data and documents are preserved, and access is retained for the manager and team without incurring the full cost of an active Workspace license. Archived User licenses are a cost-effective way to maintain access to documents while preventing unauthorized access to the account.
NEW QUESTION # 37
Your company moved to Google Workspace last month and wants to install Hangouts Meet Hardware in all of their conference rooms. This will allow employees to walk into a room and use the in-room hardware to easily join their scheduled meeting. A distributed training session is coming up, and the facilitator wants to make remote room joining even easier. Participants in remote rooms should walk into their room and begin receiving the training without having to take any actions to join the session.
How should you accomplish this?
- A. By adding the rooms to the Calendar invite, they will all auto-join at the scheduled time.
- B. In the Admin Console, select the devices in Meeting Room Hardware, select Call, and Enter the meeting code.
- C. Select Add Live Stream to the Calendar invite; all rooms added to the event will auto-join at the scheduled time.
- D. Room participants will need to start the meeting from the remote in the room.
Answer: C
Explanation:
* Google Calendar Live Stream:
* When you create a Calendar event, you have the option to add a live stream. This feature allows participants to watch the event without having to actively join the meeting.
* By adding the live stream to the Calendar invite and including the conference rooms, the rooms will automatically start the live stream at the scheduled time.
* Adding Live Stream:
* In the Google Calendar event, select the option to "Add live stream".
* Add the conference rooms to the event as participants. These rooms will automatically connect to the live stream when the event starts.
* Advantages:
* This method ensures that participants in remote rooms can receive the training session without any manual intervention.
* It simplifies the process for users, providing a seamless experience.
References:
* Google Workspace Admin Help: Add live streaming to an event
* Google Meet hardware overview
NEW QUESTION # 38
Your organization is concerned with the increasing threat of phishing attacks that may impact users.
Leadership has declined to force-enable 2-Step verification. You need to apply a security measure to prevent unauthorized access to user accounts.
What should you do?
- A. Enable Enforce Strong Password policy.
- B. Revoke token authorizations to external applications.
- C. Enable Employee ID Login Challenge.
- D. Decrease the Maximum User Session Length.
Answer: C
Explanation:
* Sign in to the Google Admin console.
* From the Admin console Home page, go to "Security" and then "Login challenges."
* Enable the "Employee ID login challenge" setting.
* Configure the challenge by defining the employee IDs that users need to provide during the login process.
Enabling Employee ID login challenges adds an additional layer of security without requiring 2-Step verification. This helps prevent unauthorized access by ensuring that users provide an additional piece of information known only to them.
References:
* Google Workspace Admin Help - Configure login challenges
* "?>>?b GF\]\rom the Admin console Home page, go to "Security."
* Under "Security," select "API controls."
* In the "API controls" section, click on "Manage Third-Party App Access."
* Find the Google Drive API in the list.
* Choose "Disable All Access" for Google Drive to ensure that no third-party apps have OAuth permissions to Google Drive.
This configuration adheres to the policy set by the Chief Information Security Officer by preventing third-party apps from accessing Google Drive via OAuth.
References:
* Google Workspace Admin Help - Manage API client access
NEW QUESTION # 39
Your global marketing team has over 500 employees. They recently started working with Google Analytics and want to move to managed accounts. You decide to use Google Cloud Directory Sync (GCDS) to sync users from your current identity provider. Your organization currently has no Google Workspace licenses linked to the Admin console. You run GCDS for the first time and receive the following error, "Domain user limit reached." You need to identify and fix the problem.
What should you do?
- A. Check if GCDS has the correct permissions to run a sync on your domain.
- B. Ensure that there is a subscription available and enough licenses to sync the new users.
- C. Wait 48 hours until the domain is fully provisioned.
- D. Update the delete limits of GCDS, and try again.
Answer: B
Explanation:
The error "Domain user limit reached" indicates that there are not enough Google Workspace licenses available to accommodate the new users being synced by GCDS.
NEW QUESTION # 40
You have enabled Automatic Room Replacement for your calendar resources, but it is not working for any instances of a conflict booking. What could be the issue?
- A. The events have more than 20 attendees.
- B. Automatic Room Replacement does not work on recurring events.
- C. The calendar resources do not have the Resource Category configured as CONFERENCE_ROOM
- D. This feature requires calendar event owners to have the Buildings and resources administrator privilege
Answer: B
Explanation:
Automatic Room Replacement does not work on recurring events. This limitation means that if there is a conflict in room booking for a recurring event, the system will not automatically find a replacement room.
This feature is designed to work only with single-instance events.
References:
* Google Workspace Admin Help - Set up automatic room replacement
NEW QUESTION # 41
Samantha, an employee from your engineering department, has submitted a help desk ticket. She is unable to share a Google Doc file with Jason, her coworker in the marketing department. However, Samantha is able to share the same file with her colleagues in the engineering department. You must troubleshoot the issue. What should you do?
- A. Confirm if a trust rule is preventing sharing with Jason or someone that belongs to the marketing department.
- B. Instruct Samantha to export a PDF copy of the document and email it to Jason.
- C. Verify that Samantha's Drive sharing settings in the Admin console allow sharing content outside her organization.
- D. Confirm if there is a data protection rule that is preventing the sharing of this particular Google Doc.
Answer: C
NEW QUESTION # 42
You are the administrator of a domain that requires iOS mobile device management. What initial steps should be taken to ensure that you can properly manage end-user iOS devices?
- A. Configure an Apple Push Certificate, and select "certificate never expires."
- B. In the Admin console, navigate to iOS management, and enable the Apple Push Certificate connector.
- C. Follow the prompts under "company owned devices," and select "iOS Management." Select the option to "enforce management on iOS devices."
- D. Configure an Apple Push Certificate, and be sure to use a work address that can be accessed in the future.
Answer: D
NEW QUESTION # 43
Madeupcorp.com is in the process of migrating from a third-party email system to Google Workspace. The VP of Marketing is concerned that her team already administers the corporate AdSense, AdWords, and YouTube channels using their @madeupcorp.com email addresses, but has not tracked which users have access to which service. You need to ensure that there is no disruption.
What should you do?
- A. Use a Google Form to survey the Marketing department users.
- B. Assure the VP that there is no action required to configure Google Workspace.
- C. Run the Transfer Tool for Unmanaged users.
- D. Contact Google Enterprise Support to identify affected users.
Answer: C
Explanation:
* Assess the Current State: Identify which users are using the @madeupcorp.com email addresses for services like AdSense, AdWords, and YouTube.
* Use the Transfer Tool for Unmanaged Users:
* Access Google Admin Console: Go to admin.google.com and sign in with your administrator account.
* Navigate to Tools: In the Admin console, go to "Tools" and then select "Transfer tool for unmanaged users."
* Enter Domain Information: Enter the domain name (madeupcorp.com) and verify the domain.
* List Unmanaged Users: The tool will generate a list of unmanaged users who are using their
@madeupcorp.com email addresses.
* Send Transfer Requests: Send transfer requests to these users, prompting them to accept the transfer to the managed Google Workspace account.
* Follow Up: Ensure all users have accepted the transfer request to avoid any disruptions in accessing Google services with their corporate email addresses.
* Verify: Confirm that the transferred accounts are now managed under the Google Workspace domain.
References
* Google Workspace Admin Help - Transfer tool for unmanaged users
NEW QUESTION # 44
Your company has just acquired a new group of users. They have been provisioned into the Google Workspace environment with your primary domain as their primary email address. These new users still need to receive emails from their previous domain. What is the best way to achieve this for these new users, without updating the information of pre*existing users?
- A. Update the Google-provided test domain to be the domain of the acquired company, and then update the email information of all new users with alias emails.
- B. Add the acquired domain as an alias to the primary Google Workspace domain.
- C. Add the acquired domain as a secondary domain to the primary Google Workspace domain, and then update the email information of all new users with alias emails.
- D. Without adding a domain, update each user's email information with the previous domain.
Answer: C
Explanation:
To ensure new users receive emails from their previous domain without affecting existing users:
* Add the acquired domain as a secondary domain to the primary Google Workspace domain.
* Update the email information of all new users to include alias emails from the previous domain. This allows them to receive emails sent to their old addresses.
This method segregates the old and new user groups effectively and maintains the integrity of the email addresses.
References:
* Google Workspace Admin Help: Manage domains
NEW QUESTION # 45
......
Google-Workspace-Administrator Actual Questions Answers PDF 100% Cover Real Exam Questions: https://www.prep4sures.top/Google-Workspace-Administrator-exam-dumps-torrent.html
Google-Workspace-Administrator Exam questions and answers: https://drive.google.com/open?id=1hGA0Y6nfoOoxF9m70VUnRdJn2UuTDoPh