Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Google Exam Google Workspace Administrator Topic 2 Question 52 Discussion

Actual exam question for Google's Google Workspace Administrator exam
Question #: 52
Topic #: 2
[All Google Workspace Administrator Questions]

Your organization has a group of users who interact with sensitive information and their accounts contain valuable files You need to protect these users from targeted online attacks What should you do?

Show Suggested Answer Hide Answer
Suggested Answer: D

Understanding the Requirement:

The scenario involves a group of users who handle sensitive information and have valuable files in their accounts.

The goal is to protect these users from targeted online attacks.

Options Analysis:

Option A: Enable 2-Step Verification for those users and recommend they use Google Authenticator

2-Step Verification (2SV) enhances security by adding an extra layer of authentication. Google Authenticator is a reliable method, but it may not be sufficient against highly targeted attacks.

Option B: Enable 2-Step Verification for those users and recommend they use SMS codes

While SMS codes are a form of 2SV, they are considered less secure than other methods due to potential vulnerabilities like SIM swapping.

Option C: Disable password recovery for end users

Disabling password recovery can prevent unauthorized access through recovery options but does not provide active protection against targeted attacks.

Option D: Enroll all accounts for those users in the Advanced Protection Program

The Advanced Protection Program (APP) is designed specifically to protect users at high risk of targeted attacks. It includes strong measures such as requiring a physical security key for login, blocking unauthorized access attempts, and restricting access to sensitive data.

Recommended Solution:

Enrolling users in the Advanced Protection Program (APP):

Step 1: Identify High-Risk Users:

Identify users who handle sensitive information and have valuable files.

Step 2: Enroll in APP:

Go to the Google Admin console.

Navigate to the Security section and find the Advanced Protection Program.

Enroll the identified high-risk users in APP.

Step 3: Implement Security Keys:

Ensure users have security keys (e.g., Titan Security Keys) for login.

Guide users through the process of setting up and using security keys.

Step 4: User Education:

Educate users on the importance of APP and how it protects their accounts.

Provide training on recognizing phishing attempts and other security best practices.

Benefits of APP:

Enhanced Security:

APP provides the highest level of security for Google accounts, requiring security keys for authentication.

Protection Against Phishing:

Security keys are highly resistant to phishing attacks, which are common in targeted online attacks.

Limited Access:

APP restricts access to sensitive data, ensuring that only trusted apps and services can interact with the protected accounts.


Google Workspace Admin Help: Advanced Protection Program

Google Workspace Security: Advanced Protection Program

Google Security Blog: Advanced Protection Program

Contribute your Thoughts:

Marcelle
5 days ago
I'm not sure about Google Authenticator. Maybe SMS codes would be easier for the users.
upvoted 0 times
...
Margurite
13 days ago
I agree with Leila. Google Authenticator provides an extra layer of security.
upvoted 0 times
...
Alverta
13 days ago
Haha, disabling password recovery? That's just asking for trouble! You'll have users locked out of their accounts in no time. A or B are the clear winners here.
upvoted 0 times
...
Leila
16 days ago
I think we should enable 2-Step Verification with Google Authenticator for those users.
upvoted 0 times
...
Dean
17 days ago
Option D sounds interesting, but the Advanced Protection Program might be overkill for this scenario. A or B would be more practical and cost-effective.
upvoted 0 times
...
Annamae
19 days ago
I agree, A is the way to go. 2-step verification is a must for sensitive information, and Google Authenticator is the gold standard.
upvoted 0 times
Izetta
1 days ago
User 1: I think we should enable 2-Step Verification for those users and recommend Google Authenticator.
upvoted 0 times
...
...
Glory
23 days ago
Definitely go with option A! Google Authenticator is way more secure than SMS codes. Plus, it's easier to manage and less prone to phishing attacks.
upvoted 0 times
Ellsworth
3 days ago
User 2: Yeah, I think enabling 2-Step Verification is the way to go.
upvoted 0 times
...
Clare
5 days ago
User 1: I agree, Google Authenticator is definitely more secure.
upvoted 0 times
...
...

Save Cancel