Skip to Content

Google Professional Google Workspace Administrator Exam Questions and Answers – 1

The latest Google Professional Google Workspace Administrator certification actual real practice exam question and answer (Q&A) dumps are available free, which are helpful for you to pass the Google Professional Google Workspace Administrator exam and earn Google Professional Google Workspace Administrator certification.

Question 71

Exam Question

Your-company.com recently started using Google Workspace. The CIO is happy with the deployment, but received notifications that some employees have issues with consumer Google accounts (conflict accounts). You want to put a plan in place to address this concern.

What should you do?

A. Use the conflict account remove tool to remove the accounts from Google Workspace.
B. Rename the accounts to [email protected], and recreate the accounts.
C. Ask users to request a new Google Workspace account from your local admin.
D. Use the Transfer tool for unmanaged users to find the conflict accounts.

Correct Answer

D. Use the Transfer tool for unmanaged users to find the conflict accounts.

Reference

Google Workspace Updates > Resolve conflicting accounts with the new Transfer tool for unmanaged users

Question 72

Exam Question

Your organization deployed Google Workspace Enterprise within the last year, with the support of a partner. The deployment was conducted in three stages: Core IT, Google Guides, and full organization. You have been tasked with developing a targeted ongoing adoption plan for your Google Workspace organization.

What should you do?

A. Use Google Guides to deliver ad-hoc training to all of their co-workers and reports.
B. Use Reports APIs to gather adoption metrics and Gmail APIs to deliver training content directly.
C. Use a script to monitor Email attachment types and target users that aren’t using Drive sharing.
D. Use Work Insights to gather adoption metrics and target your training exercises.

Correct Answer

A. Use Google Guides to deliver ad-hoc training to all of their co-workers and reports.

Explanation

Identifies Google Guides as early adopters and champions that can help co-workers get up to speed quickly.

Question 73

Exam Question

In the years prior to your organization moving to Google Workspace, it was relatively common practice for users to create consumer Google accounts with their corporate email address (for example, to monitor Analytics, manage AdSense, and collaborate in Docs with other partners who were on Google Workspace.) You were able to address active employees’ use of consumer accounts during the rollout, and you are now concerned about blocking former employees who could potentially still have access to those services even though they don’t have access to their corporate email account.

What should you do?

A. Contact Google Enterprise Support to provide a list of all accounts on your domain(s) that access non-Google Workspace Google services and have them blocked.
B. Use the Transfer Tool for Unmanaged Accounts to send requests to the former users to transfer their account to your domain as a managed account.
C. Provide a list of all active employees to the managers of your company’s Analytics, AdSense, etc. accounts, so they can clean up the respective access control lists.
D. Provision former user accounts with Cloud Identity licenses, generate a new Google password, and place them in an OU with all Google Workspace and Other Google Services disabled.

Correct Answer

B. Use the Transfer Tool for Unmanaged Accounts to send requests to the former users to transfer their account to your domain as a managed account.

Reference

Google Workspace Admin Help > Add new users or email addresses > Add users in bulk to large organizations > Add users with unmanaged accounts > Use the transfer tool to migrate unmanaged users

Question 74

Exam Question

Your organization is on Google Workspace Enterprise and allows for external sharing of Google Drive files to facilitate collaboration with other Google Workspace customers. Recently you have had several incidents of files and folders being broadly shared with external users and groups. Your chief security officer needs data on the scope of external sharing and ongoing alerting so that external access does not have to be disabled.

What two actions should you take to support the chief security officer’s request? (Choose two.)

A. Review total external sharing in the Aggregate Reports section.
B. Create an alert from Drive Audit reports to notify of external file sharing.
C. Review who has viewed files using the Google Drive Activity Dashboard.
D. Create a custom Dashboard for external sharing in the Security Investigation Tool.
E. Automatically block external sharing using DLP rules.

Correct Answer

B. Create an alert from Drive Audit reports to notify of external file sharing.
D. Create a custom Dashboard for external sharing in the Security Investigation Tool.

Reference

Google Workspace Admin Help > Security and data protection > Security center: Prevent, detect, and remediate security threats > Security investigation tool > Investigate file sharing

Question 75

Exam Question

Your client is a 5,000-employee company with a high turn-over rate that requires them to add and suspend user accounts. When new employees are onboarded, a user object is created in Active Directory. They have determined that manually creating the users in Google Workspace Admin Panel is time-consuming and prone to error. You need to work with the client to identify a method of creating new users that will reduce time and error.

What should you do?

A. Install Google Cloud Directory Sync on all Domain Controllers.
B. Install Google Workspace Sync for Microsoft Outlook on all employees’ computers.
C. Install Google Cloud Directory Sync on a supported server.
D. Install Google Apps Manager to automate add-user scripts.

Correct Answer

C. Install Google Cloud Directory Sync on a supported server.

Reference

Google Workspace Admin Help > Google Cloud Directory Sync > System requirements

Question 76

Exam Question

Your chief compliance officer is concerned about API access to organization data across different cloud vendors. He has tasked you with compiling a list of applications that have API access to Google Workspace data, the data they have access to, and the number of users who are using the applications.

How should you compile the data being requested?

A. Review the API permissions installed apps list, and export the list.
B. Review the token audit log, and compile a list of all the applications and their scopes.
C. Review the authorized applications for each user via the Google Workspace Admin panel.
D. Create a survey via Google forms, and collect the application data from users.

Correct Answer

B. Review the token audit log, and compile a list of all the applications and their scopes.

Reference

Question 77

Exam Question

In your organization, users have been provisioned with either Google Workspace Enterprise, Google Workspace Business, or no license, depending on their job duties, and the cost of user licenses is paid out of each division’s budget. In order to effectively manage the license disposition, team leaders require the ability to look up the type of license that is currently assigned, along with the last logon date, for their direct reports.

You have been tasked with recommending a solution to the Director of IT, and have gathered the following requirements:

  • Team leaders must be able to retrieve this data on their own (i.e., self-service).
  • Team leaders are not permitted to have any level of administrative access to the Google Workspace Admin panel.
  • Team leaders must only be able to look up data for their direct reports.
  • The data must always be current to within 1 week.
  • Costs must be mitigated.

What approach should you recommend?

A. Export log data to BigQuery with custom scopes.
B. Use a third-party tool.
C. Use App Script and filter views within a Google Sheet.
D. Create an app using AppMaker and App Script.

Correct Answer

D. Create an app using AppMaker and App Script.

Reference

AppSheet Help > Get started with AppSheet

Question 78

Exam Question

Your company has decided to change SSO providers. Instead of authenticating into Google Workspace and other cloud services with an external SSO system, you will now be using Google as the Identity Provider (IDP) and SSO provider to your other third-party cloud services.

What two features are essential to reconfigure in Google Workspace? (Choose two.)

A. Apps > add SAML apps to your domain.
B. Enable API Permissions for Google Cloud Platform.
C. Replace the third-party IDP verification certificate.
D. Disable SSO with third party IDP.
E. Reconfigure user provisioning via Google Cloud Directory Sync.

Correct Answer

A. Apps > add SAML apps to your domain.
D. Disable SSO with third party IDP.

Reference

Google Workspace Admin Help > Integrate 3rd-party and custom apps > Set up SSO via a third party Identity provider > About SSO

Question 79

Exam Question

After making a recent migration to Google Workspace, you updated your Google Cloud Directory Sync configuration to synchronize the global address list. Users are now seeing duplicate contacts in their global directory in Google Workspace. You need to resolve this issue.

What should you do?

A. Create a new global directory, and delete the original.
B. Update shared contact search rules to exclude internal users.
C. Enable directory contact deduplication in the Google Workspace Admin panel.
D. Train users to use Google Workspace’s merge contacts feature.

Correct Answer

B. Update shared contact search rules to exclude internal users.

Explanation

“To resolve this issue, correct your shared contact search rules to exclude users in your own domain. On the next sync, GCDS attempts to delete the redundant contacts. You might need to adjust the shared contact deletion limit for that first sync.

Reference

Google Workspace Admin Help > Google Cloud Directory Sync > Troubleshoot common GCDS issues

Question 80

Exam Question

Your cyber security team has requested that all email destined for external domains be scanned for credit card numbers, and if found, the email must be encrypted using your cloud-based third-party encryption provider. You are responsible for configuring to meet this request.

What should you do?

A. Create a content compliance rule on outbound mail using the predefined rule for credit card numbers, and add a custom header that your third-party encryption provider can scan for and encrypt.
B. Create a content compliance rule on outbound mail using the predefined rule for credit card numbers, and check “Encrypt message if not encrypted”.
C. Create a content compliance rule on outbound mail and internal-sending mail using the predefined rule for credit card numbers, and add a custom header that your third-party encryption provider can scan for and encrypt.
D. Create a content compliance rule on outbound mail using the predefined rule for credit card numbers, and check “Change route” to send to your third-party encryption provider to encrypt.

Correct Answer

D. Create a content compliance rule on outbound mail using the predefined rule for credit card numbers, and check “Change route” to send to your third-party encryption provider to encrypt.

Reference

Google Workspace Admin Help > Advanced Gmail management > Advanced email routing > Set up an alternate route for messages that need secure transport