What action should be taken to configure alerting related to phishing attacks?
Answer(s): D
Admin Console: Log into the Google Admin console at admin.google.com. Security Settings: Navigate to Security > Investigation Tool.Create an Alert:Click on "Create activity rule".In the conditions section, select "Event is" and choose "Login".Set the condition to "Suspicious login".Alert Details: Configure the alert details, such as who will receive the alert and any additional notification settings.Save and Activate: Save the rule and activate it to start monitoring for suspicious login attempts.ReferenceGoogle Workspace Admin: Manage AlertsGoogle Workspace Security: Investigation Tool
A company using Google Workspace has reports of cyber criminals trying to steal usernames and passwords to access critical business dat
Answer(s): B
Admin Console: Log into the Google Admin console at admin.google.com. Security Settings: Navigate to Security > Authentication > 2-step verification.Enforce 2FA:Enable "Enforce 2-step verification".Set the option to require "Security Keys".Deployment: Ensure all highly sensitive user accounts are equipped with physical security keys (e.g., YubiKey).Enrollment: Assist users in enrolling their security keys through the Google Account settings under "Security".ReferenceGoogle Workspace Admin: Enforce 2-Step VerificationGoogle Workspace Security: Security Keys
After migrating to Google Workspace, your legal team requests access to search all email and create litigation holds for employees who are involved with active litigation. You need to help the legal team meet this request.What should you do?
Answer(s): C
Step by Step Comprehensive Detailed ExplanationAdmin Console: Log into the Google Admin console at admin.google.com. Roles and Privileges: Navigate to Admin roles > Create new role.Create Custom Role:Name the role (e.g., Legal Team Vault Access).Assign privileges specific to Google Vault, such as "Manage Holds" and "Manage Searches".Assign Role:Add the legal team members to the custom role.Ensure they have appropriate permissions to access Google Vault.Google Vault Access:The legal team can now access Google Vault (vault.google.com) to create and manage searches and holds.ReferenceGoogle Workspace Admin: Create and Assign RolesGoogle Vault Help: Managing Roles
Your company's compliance officer has requested that you apply a content compliance rule that will reject all external outbound email that has any occurrence of credit card numbers and your company's account number syntax, which is AccNo. You need to configure a content compliance rule to scan email to meet these requirements.Which combination of attributes will meet this objective?
Answer(s): A
Admin Console: Log into the Google Admin console at admin.google.com. Gmail Settings: Navigate to Apps > Google Workspace > Gmail > Compliance.Create Rule:Click on "Add another rule" under the "Content compliance" section. Name the rule appropriately (e.g., Reject Sensitive Info).Conditions:Select "Outbound and Internal Sending" to ensure all outgoing and internal emails are scanned. In the "If ANY of the following match" section, add two expressions:Simple Content Match: Configure to find "AccNo".Predefined Content Match: Select "Credit Card Numbers".Action:Choose "Reject" as the action for emails that match these conditions. Save Rule: Save the rule and apply it to ensure it is active.ReferenceGoogle Workspace Admin: Set up Compliance RulesGoogle Workspace Admin: Configure Content Compliance
Your company has decided to change SSO providers. Instead of authenticating into Google Workspace and other cloud services with an external SSO system, you will now be using Google as the Identity Provider (IDP) and SSO provider to your other third-party cloud services.What two features are essential to reconfigure in Google Workspace? (Choose two.)
Answer(s): A,D
Apps > add SAML apps to your domain:When switching to Google as the Identity Provider (IDP) for Single Sign-On (SSO), you need to configure Google Workspace to act as the SSO provider for third-party applications. This involves adding the necessary SAML (Security Assertion Markup Language) applications to your domain within Google Workspace.Navigate to the Admin console, go to Apps > Web and mobile apps, and add SAML apps to your domain. This allows Google to authenticate users for those apps.Disable SSO with third party IDP:Since you are switching from an external SSO provider to Google Workspace as your IDP, you must disable the current SSO configuration with the third-party provider. Go to the Admin console, navigate to Security > Set up single sign-on (SSO) with a third party IdP, and disable the existing SSO setup. This ensures that users will now authenticate directly through Google Workspace instead of the previous SSO provider.
Google Workspace Admin Help: Set up your own custom SAML app Google Workspace Admin Help: Disable SSO with third party IdP
Share your comments for Google GOOGLE-WORKSPACE-ADMINISTRATOR exam with other users:
very helpfull
good questions
help to practice csa exam
nice tip and well documented
i need the exam
please upload
prepping for fsc exam
pd1 with great experience
@t it seems like azure service bus message quesues could be the best solution
helpful to check your understanding.
question 128 the answer should be static not auto
more comments here
great support to appear for exams
useful dumps
making progress
q31 answer should be d i think
is this real?
q10: c and f are also true. q11: this is outdated. you no longer need ownership on a pipe to operate it
good questions with simple explanation
admin guide (windows) respond to malicious causality chains. when the cortex xdr agent identifies a remote network connection that attempts to perform malicious activity—such as encrypting endpoint files—the agent can automatically block the ip address to close all existing communication and block new connections from this ip address to the endpoint. when cortex xdrblocks an ip address per endpoint, that address remains blocked throughout all agent profiles and policies, including any host-firewall policy rules. you can view the list of all blocked ip addresses per endpoint from the action center, as well as unblock them to re-enable communication as appropriate. this module is supported with cortex xdr agent 7.3.0 and later. select the action mode to take when the cortex xdr agent detects remote malicious causality chains: enabled (default)—terminate connection and block ip address of the remote connection. disabled—do not block remote ip addresses. to allow specific and known s
very inciting
question 5, it seems a instead of d, because: - care plan = case - patient = person account - product = product2;
it look like real one
i am taking oracle fcc certification test next two days, pls share question dumps
i need dumps
its time to comptia sec+
question 35 has an answer for a different question. i believe the answer is "a" because it shut off the firewall. "0" in registry data means that its false (aka off).
helpful content
oracle 19c is complex db
helpful for practice
support team is fast and deeply knowledgeable. i appreciate that a lot.
helpful questions
thanks for question
the software is provided for free so this is a big change. all other sites are charging for that. also that fucking examtopic site that says free is not free at all. you are hit with a pay-wall.