nerdexam
Google

GOOGLE-WORKSPACE-ADMINISTRATOR · Question #106

Your organization's information security team has asked you to determine and remediate if a user ([email protected]) has shared any sensitive documents outside of your organization. How would you…

The correct answer is A. Open Security Investigation Tool-> Drive Log Events. Add two conditions: Visibility Is External. https://support.google.com/a/answer/11480192?hl=en&ref_topic=11479095#:~:text=View%20file s%20shared,Click%20Search

Reporting and Auditing

Question

Your organization's information security team has asked you to determine and remediate if a user ([email protected]) has shared any sensitive documents outside of your organization. How would you audit access to documents that the user shared inappropriately?

Options

  • AOpen Security Investigation Tool-> Drive Log Events. Add two conditions: Visibility Is External,
  • BHave the super administrator use the Security API to audit Drive access.
  • CAs a super administrator, change the access on externally shared Drive files manually under
  • DOpen Security Dashboard-> File Exposure Report-> Export to Sheet, and filter for

How the community answered

(26 responses)
  • A
    77% (20)
  • B
    8% (2)
  • C
    4% (1)
  • D
    12% (3)

Explanation

https://support.google.com/a/answer/11480192?hl=en&ref_topic=11479095#:~:text=View%20file s%20shared,Click%20Search

Topics

#Security Investigation Tool#Drive audit logs#external sharing#visibility filters

Community Discussion

No community discussion yet for this question.

Full GOOGLE-WORKSPACE-ADMINISTRATOR Practice