nerdexam
Google

ASSOCIATE-GOOGLE-WORKSPACE-ADMINISTRATOR · Question #105

Your company's security team should be able to investigate unauthorized external file sharing. You need to ensure that the security team can use the security investigation tool and you must follow…

The correct answer is D. Create a custom admin role with security center privileges. Assign the role to the individual. The principle of least privilege requires granting only the permissions necessary to perform the job. The security investigation tool is part of Google Workspace's Security Center, so a custom admin role with security center privileges gives the security team exactly what they…

Managing Security and Compliance

Question

Your company's security team should be able to investigate unauthorized external file sharing. You need to ensure that the security team can use the security investigation tool and you must follow the principle of least privilege. What should you do?

Options

  • AGrant the super admin role to a delegate from the security team.
  • BCreate a pre-built reporting role. Assign the role to the security team alias.
  • CShare the Drive audit log with the security team.
  • DCreate a custom admin role with security center privileges. Assign the role to the individual

How the community answered

(41 responses)
  • A
    7% (3)
  • B
    2% (1)
  • C
    5% (2)
  • D
    85% (35)

Explanation

The principle of least privilege requires granting only the permissions necessary to perform the job. The security investigation tool is part of Google Workspace's Security Center, so a custom admin role with security center privileges gives the security team exactly what they need - no more. Option A (super admin) grants full unrestricted administrative access, which violates least privilege. Option B (pre-built reporting role) typically grants access to standard reports, not the security investigation tool. Option C (sharing the Drive audit log) provides a static export rather than the interactive investigation tool, and does not grant the full capability needed for investigating unauthorized sharing.

Topics

#Google Workspace Admin Roles#Least Privilege Principle#Security Investigation Tool#Custom Admin Roles

Community Discussion

No community discussion yet for this question.

Full ASSOCIATE-GOOGLE-WORKSPACE-ADMINISTRATOR Practice