nerdexam
Google

PROFESSIONAL-CLOUD-NETWORK-ENGINEER · Question #89

You need to centralize the Identity and Access Management permissions and email distribution for the WebServices Team as efficiently as possible. What should you do?

The correct answer is A. Create a Google Group for the WebServices Team. To efficiently centralize Identity and Access Management permissions and email distribution for a team, creating a Google Group is the most effective solution.

Submitted by miguelv· Apr 18, 2026Implementing network security

Question

You need to centralize the Identity and Access Management permissions and email distribution for the WebServices Team as efficiently as possible. What should you do?

Options

  • ACreate a Google Group for the WebServices Team.
  • BCreate a G Suite Domain for the WebServices Team.
  • CCreate a new Cloud Identity Domain for the WebServices Team.
  • DCreate a new Custom Role for all members of the WebServices Team.

How the community answered

(39 responses)
  • A
    77% (30)
  • B
    8% (3)
  • C
    3% (1)
  • D
    13% (5)

Why each option

To efficiently centralize Identity and Access Management permissions and email distribution for a team, creating a Google Group is the most effective solution.

ACreate a Google Group for the WebServices Team.Correct

Creating a Google Group allows you to consolidate both IAM permissions and email distribution for the WebServices Team. You can add all team members to this single group, grant IAM roles to the group, which automatically applies to all members, and use the group's email address for team communications.

BCreate a G Suite Domain for the WebServices Team.

Creating a G Suite Domain is for managing an entire organization's users, email, and collaboration services, not just for a specific team, and doesn't directly centralize IAM within Google Cloud for sub-organizational units.

CCreate a new Cloud Identity Domain for the WebServices Team.

Creating a new Cloud Identity Domain is primarily for managing user identities and their synchronization, typically at an organizational level, and does not inherently provide email distribution or efficient IAM role assignment for a specific team like a Google Group does.

DCreate a new Custom Role for all members of the WebServices Team.

Creating a new Custom Role defines a specific set of permissions, but it doesn't centralize user management or email distribution; you would still need a mechanism (like a Google Group) to assign this role to multiple users efficiently.

Concept tested: Google Groups for IAM and email distribution

Source: https://cloud.google.com/iam/docs/overview#google_groups_as_members

Topics

#IAM#Google Groups#Identity Management#Access Control

Community Discussion

No community discussion yet for this question.

Full PROFESSIONAL-CLOUD-NETWORK-ENGINEER Practice