Google Professional Google Workspace Administrator Exam (page: 3)
Google Professional Workspace Administrator
Updated on: 09-Feb-2026

What action should be taken to configure alerting related to phishing attacks?

  1. Set up a Token audit log event alert.
  2. Set up an Admin audit log event alert.
  3. Set up an email settings changed alert.
  4. Set up a suspicious login event alert.

Answer(s): D

Explanation:

Admin Console: Log into the Google Admin console at admin.google.com. Security Settings: Navigate to Security > Investigation Tool.
Create an Alert:
Click on "Create activity rule".
In the conditions section, select "Event is" and choose "Login".
Set the condition to "Suspicious login".

Alert Details: Configure the alert details, such as who will receive the alert and any additional notification settings.
Save and Activate: Save the rule and activate it to start monitoring for suspicious login attempts.
Reference
Google Workspace Admin: Manage Alerts
Google Workspace Security: Investigation Tool



A company using Google Workspace has reports of cyber criminals trying to steal usernames and passwords to access critical business dat

  1. You need to protect the highly sensitive user accounts from unauthorized access.
    What should you do?
  2. Turn on password expiration.
  3. Enforce 2FA with a physical security key.
  4. Use a third-party identity provider.
  5. Enforce 2FA with Google Authenticator app.

Answer(s): B

Explanation:

Admin Console: Log into the Google Admin console at admin.google.com. Security Settings: Navigate to Security > Authentication > 2-step verification.
Enforce 2FA:
Enable "Enforce 2-step verification".
Set the option to require "Security Keys".
Deployment: Ensure all highly sensitive user accounts are equipped with physical security keys (e.g., YubiKey).
Enrollment: Assist users in enrolling their security keys through the Google Account settings under "Security".
Reference
Google Workspace Admin: Enforce 2-Step Verification

Google Workspace Security: Security Keys



After migrating to Google Workspace, your legal team requests access to search all email and create litigation holds for employees who are involved with active litigation. You need to help the legal team meet this request.

What should you do?

  1. Add the legal team to the User Management Admin system role.
  2. Add the legal team to the Google Vault Google Group.
  3. Create a custom role with Google Vault access, and add the legal team.
  4. Create a matter in Google Vault, and share with the legal team.

Answer(s): C

Explanation:

Step by Step Comprehensive Detailed Explanation
Admin Console: Log into the Google Admin console at admin.google.com. Roles and Privileges: Navigate to Admin roles > Create new role.
Create Custom Role:
Name the role (e.g., Legal Team Vault Access).
Assign privileges specific to Google Vault, such as "Manage Holds" and "Manage Searches".
Assign Role:
Add the legal team members to the custom role.
Ensure they have appropriate permissions to access Google Vault.
Google Vault Access:
The legal team can now access Google Vault (vault.google.com) to create and manage searches and holds.
Reference
Google Workspace Admin: Create and Assign Roles
Google Vault Help: Managing Roles



Your company's compliance officer has requested that you apply a content compliance rule that will reject all external outbound email that has any occurrence of credit card numbers and your company's account number syntax, which is AccNo. You need to configure a content compliance rule to scan email to meet these requirements.

Which combination of attributes will meet this objective?

  1. Name the rule > select Outbound and Internal Sending > select If ANY of the following match > add two expressions: one for Simple Content Match to find AccNo, and one for predefined content match to select Credit Card Numbers > choose Reject.
  2. Name the rule > select Outbound > select If ANY of the following match > add two expressions:
    one for Simple Content Match to find AccNo, and one for predefined content match to select Credit Card Numbers
    > choose Reject
  3. Name the rule > select Outbound and Internal Sending > select If ALL of the following match > add two expressions: one for Advanced Content Match to find AccNo in the Body, and one for predefined content match to select Credit Card Numbers > choose Reject.
  4. Name the rule > select Outbound > select If ALL of the following match > add two expressions: one for Advanced Content Match to find AccNo in the Body, and one for predefined content match to select Credit Card Numbers > choose Reject.

Answer(s): A

Explanation:

Admin Console: Log into the Google Admin console at admin.google.com. Gmail Settings: Navigate to Apps > Google Workspace > Gmail > Compliance.
Create Rule:
Click on "Add another rule" under the "Content compliance" section. Name the rule appropriately (e.g., Reject Sensitive Info).
Conditions:
Select "Outbound and Internal Sending" to ensure all outgoing and internal emails are scanned. In the "If ANY of the following match" section, add two expressions:
Simple Content Match: Configure to find "AccNo".
Predefined Content Match: Select "Credit Card Numbers".
Action:
Choose "Reject" as the action for emails that match these conditions. Save Rule: Save the rule and apply it to ensure it is active.
Reference
Google Workspace Admin: Set up Compliance Rules
Google Workspace Admin: Configure Content Compliance



Your company has decided to change SSO providers. Instead of authenticating into Google Workspace and other cloud services with an external SSO system, you will now be using Google as the Identity Provider (IDP) and SSO provider to your other third-party cloud services.

What two features are essential to reconfigure in Google Workspace? (Choose two.)

  1. Apps > add SAML apps to your domain.
  2. Reconfigure user provisioning via Google Cloud Directory Sync.
  3. Replace the third-party IDP verification certificate.
  4. Disable SSO with third party IDP.
  5. Enable API Permissions for Google Cloud Platform.

Answer(s): A,D

Explanation:

Apps > add SAML apps to your domain:
When switching to Google as the Identity Provider (IDP) for Single Sign-On (SSO), you need to configure Google Workspace to act as the SSO provider for third-party applications. This involves adding the necessary SAML (Security Assertion Markup Language) applications to your domain within Google Workspace.
Navigate to the Admin console, go to Apps > Web and mobile apps, and add SAML apps to your domain. This allows Google to authenticate users for those apps.
Disable SSO with third party IDP:
Since you are switching from an external SSO provider to Google Workspace as your IDP, you must disable the current SSO configuration with the third-party provider. Go to the Admin console, navigate to Security > Set up single sign-on (SSO) with a third party IdP, and disable the existing SSO setup. This ensures that users will now authenticate directly through Google Workspace instead of the previous SSO provider.


Reference:

Google Workspace Admin Help: Set up your own custom SAML app Google Workspace Admin Help: Disable SSO with third party IdP



Viewing Page 3 of 41



Share your comments for Google Professional Google Workspace Administrator exam with other users:

kk 1/17/2024 3:00:00 PM

very helpful
UNITED STATES


Raj 7/24/2023 10:20:00 AM

please upload oracle 1z0-1110-22 exam pdf
INDIA


Blessious Phiri 8/13/2023 11:58:00 AM

becoming interesting on the logical part of the cdbs and pdbs
Anonymous


LOL what a joke 9/10/2023 9:09:00 AM

some of the answers are incorrect, i would be wary of using this until an admin goes back and reviews all the answers
UNITED STATES


Muhammad Rawish Siddiqui 12/9/2023 7:40:00 AM

question # 267: federated operating model is also correct.
SAUDI ARABIA


Mayar 9/22/2023 4:58:00 AM

its helpful alot.
Anonymous


Sandeep 7/25/2022 11:58:00 PM

the questiosn from this braindumps are same as in the real exam. my passing mark was 84%.
INDIA


Eman Sawalha 6/10/2023 6:09:00 AM

it is an exam that measures your understanding of cloud computing resources provided by aws. these resources are aligned under 6 categories: storage, compute, database, infrastructure, pricing and network. with all of the services and typees of services under each category
GREECE


Mars 11/16/2023 1:53:00 AM

good and very useful
TAIWAN PROVINCE OF CHINA


ronaldo7 10/24/2023 5:34:00 AM

i cleared the az-104 exam by scoring 930/1000 on the exam. it was all possible due to this platform as it provides premium quality service. thank you!
UNITED STATES


Palash Ghosh 9/11/2023 8:30:00 AM

easy questions
Anonymous


Noor 10/2/2023 7:48:00 AM

could you please upload ad0-127 dumps
INDIA


Kotesh 7/27/2023 2:30:00 AM

good content
Anonymous


Biswa 11/20/2023 9:07:00 AM

understanding about joins
Anonymous


Jimmy Lopez 8/25/2023 10:19:00 AM

please upload oracle cloud infrastructure 2023 foundations associate exam braindumps. thank you.
Anonymous


Lily 4/24/2023 10:50:00 PM

questions made studying easy and enjoyable, passed on the first try!
UNITED STATES


John 8/7/2023 12:12:00 AM

has anyone recently attended safe 6.0 exam? did you see any questions from here?
Anonymous


Big Dog 6/24/2023 4:47:00 PM

question 13 should be dhcp option 43, right?
UNITED STATES


B.Khan 4/19/2022 9:43:00 PM

the buy 1 get 1 is a great deal. so far i have only gone over exam. it looks promissing. i report back once i write my exam.
INDIA


Ganesh 12/24/2023 11:56:00 PM

is this dump good
Anonymous


Albin 10/13/2023 12:37:00 AM

good ................
EUROPEAN UNION


Passed 1/16/2022 9:40:00 AM

passed
GERMANY


Harsh 6/12/2023 1:43:00 PM

yes going good
Anonymous


Salesforce consultant 1/2/2024 1:32:00 PM

good questions for practice
FRANCE


Ridima 9/12/2023 4:18:00 AM

need dump and sap notes for c_s4cpr_2308 - sap certified application associate - sap s/4hana cloud, public edition - sourcing and procurement
Anonymous


Tanvi Rajput 10/6/2023 6:50:00 AM

question 11: d i personally feel some answers are wrong.
UNITED KINGDOM


Anil 7/18/2023 9:38:00 AM

nice questions
Anonymous


Chris 8/26/2023 1:10:00 AM

looking for c1000-158: ibm cloud technical advocate v4 questions
Anonymous


sachin 6/27/2023 1:22:00 PM

can you share the pdf
Anonymous


Blessious Phiri 8/13/2023 10:26:00 AM

admin ii is real technical stuff
Anonymous


Luis Manuel 7/13/2023 9:30:00 PM

could you post the link
UNITED STATES


vijendra 8/18/2023 7:54:00 AM

hello send me dumps
Anonymous


Simeneh 7/9/2023 8:46:00 AM

it is very nice
Anonymous


john 11/16/2023 5:13:00 PM

i gave the amazon dva-c02 tests today and passed. very helpful.
Anonymous