Updated Free Google Chrome-Enterprise-Administrator Test Engine Questions with 52 Q&As [Q21-Q37]

Share

Updated Free Google Chrome-Enterprise-Administrator Test Engine Questions with 52 Q&As

The Best Professional Chrome Enterprise Chrome-Enterprise-Administrator Professional Exam Questions


Google Chrome-Enterprise-Administrator Exam Syllabus Topics:

TopicDetails
Topic 1
  • Chrome Updates: This section of the exam measures skills of a Chrome IT Policy Analyst and addresses the various update methods available for Chrome. It includes selecting the right update strategy for different business and security needs, managing compliance across platforms, and adapting update methods based on environmental changes or risks.
Topic 2
  • Chrome Extensions: This section of the exam measures skills of an Endpoint Security Manager and involves managing Chrome extension policies. It includes designing extension management strategies, handling extension exemptions, creating approval workflows, and assessing extensions for their risk and compliance with business continuity requirements.
Topic 3
  • Manage Chrome Enterprise in the Cloud: This section of the exam measures skills of a Cloud Systems Administrator and focuses on preparing and configuring environments for Chrome cloud management. Candidates must demonstrate how to verify domains, use admin roles, configure organizational structures, deploy enrollment tokens, enable reporting, and maintain Chrome using the Google Admin console.
Topic 4
  • Chrome Enterprise Management Fundamentals: This section of the exam measures skills of a Chrome Device Administrator and covers the foundational elements of managing Chrome in an enterprise. It includes understanding how policies are applied and resolved, differentiating managed browsers from profiles, and describing how policies work. It also covers Chrome's built-in security features, how extensions are used and deployed, and how the release cycle and channels are managed.
Topic 5
  • Analyze Chrome Data: This section of the exam measures skills of a Chrome Data Analyst and focuses on using the Google Admin console to view, analyze, and troubleshoot browser data. It includes reviewing reports, diagnosing browser or update issues, investigating performance problems, and identifying security risks based on log events and Chrome activity.

 

NEW QUESTION # 21
Which operating system must be used to self-host a Chrome extension*?

  • A. ChromeOS
  • B. Linux
  • C. Windows 11
  • D. macOS

Answer: B

Explanation:
While the provided study guide doesn't explicitly detail the OS requirements for self-hosting Chrome extensions, general web hosting best practices suggest that Linux is a common and robust platform for serving files and managing web-related services. Its open-source nature, command-line interface, and extensive server software support make it well-suited for self-hosting compared to desktop-centric operating systems like Windows 11 or macOS, and the client-focused ChromeOS. Self-hosting typically involves setting up a web server to distribute the extension files, a task commonly performed on Linux servers.


NEW QUESTION # 22
A company has multiple departments, including Engineering, Marketing, Sales, and HR. Each department has different needs and schedules for Chrome updates. For instance, the Engineering team requires the latest updates as soon as they are available to ensure they have the latest features and security patches. However, the HR department prefers a more stable environment and only wants updates after they have been thoroughly tested.
Which feature in the Google Admin console can an administrator use to meet the company's requirements?

  • A. Set device policies for each department
  • B. Create different user groups for each department
  • C. Create active directory forest for each department
  • D. Create organizational units for each department

Answer: D

Explanation:
Organizational Units (OUs) in the Google Admin console allow administrators to apply different Chrome policies to different groups of devices or users based on their organizational structure. By creating separate OUs for Engineering and HR (and potentially other departments), the administrator can configure different Chrome update policies for each OU, ensuring Engineering gets rapid updates while HR stays on a more stable release. User groups primarily manage access to services, and device policies are generally applied at the device level, not necessarily tied to departmental needs for update cadences. Active Directory forests are a Microsoft concept and not directly used for managing Chrome update policies in the Google Admin console.


NEW QUESTION # 23
A Chrome administrator is using both Cloud policies and Local policies to apply settings to Chrome browsers The administrator wants to ensure that on Windows computers, the Cloud policies will have precedence if Cloud and Local policies conflict What Registry value can be created under HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Google\Chrome to achieve this?

  • A. "Value: CloudPolicyOverridesPlatformPolicy Type REG_DWORD Data 1"
  • B. "Value PolicySupercedence Type REG_SZ Data Cloud"
  • C. "Value: PolicyOverridePreference Type REG_SZ Data Cloud"
  • D. "Value: LocalPolicyOverride Type: REG_DWORD Data 0"

Answer: A

Explanation:
To ensure cloud policies override local policies on Windows, the administrator needs to create a specific Registry value. The correct value is `"CloudPolicyOverridesPlatformPolicy"` of type `REG_DWORD` with data `1`. This setting explicitly tells the Chrome browser to prioritize cloud-managed policies over local policies.


NEW QUESTION # 24
An organization has a critical extension that is force-installed on managed Chrome browsers to meet specific security needs Additionally, the organization has specified that when extensions are unpublished from the Chrome Web Store, they are also disabled The extension has been taken over by a malicious actor and has been unpublished from the Chrome Web Store What impact will this have to the force-installed extension?

  • A. The admin will receive an alert in the Google Admin console to remediate the conflict
  • B. The force-installed extension will be disabled for existing users only
  • C. The force-installed extension will automatically be disabled
  • D. The force-installed extension will observe no change

Answer: C

Explanation:
If an extension that is force-installed via policy is unpublished from the Chrome Web Store, the Chrome browser will detect this status and automatically disable the extension on managed devices. This is a security mechanism to prevent the continued use of potentially compromised or no longer maintained extensions.


NEW QUESTION # 25
The cyber risk team is conducting a review of software permissions The team needs an export of all installed browser extensions with a medium or high risk score and more than five permissions Where in the Google Admin console can an administrator generate this list?

  • A. Chrome Browser -> Reports -> Apps & extensions usage
  • B. Reporting -> Audit and Investigation -> Chrome Insights Report
  • C. Chrome Browser -> Managed Browser -> All Browsers
  • D. Chrome Browser -> Apps & Extensions -> All Browsers

Answer: A

Explanation:
The "Chrome Browser -> Reports -> Apps & extensions usage" section in the Google Admin console provides detailed information about installed extensions, including permissions and a risk assessment (if available through integrated security features). This report allows administrators to filter and analyze extensions based on their risk score and the number of permissions they request, enabling them to identify extensions that meet the cyber risk team's criteria.


NEW QUESTION # 26
In Chrome's Safe Browsing settings, which option provides the most robust protection againstonline threats and is suitable for a highly secure environment?

  • A. Enhanced Protection
  • B. Advanced Threat Protection
  • C. Secure Browsing Mode
  • D. Proactive Defense

Answer: A

Explanation:
Among the Safe Browsing options, **Enhanced Protection** offers the most robust security. It proactively checks URLs, downloads, and extensions against Google's Safe Browsing database in real time, and it can also share more data with Google to improve detection and provide personalized warnings. This level of protection is best suited for environments with high security requirements. The other options might represent different levels of Safe Browsing with varying degrees of protection.


NEW QUESTION # 27
Which data point is available in the Chrome Versions report\*?

  • A. Active Browsers
  • B. Inactive Browsers
  • C. Total Browsers
  • D. Last update

Answer: A

Explanation:
The Chrome Versions report specifically focuses on the distribution of different Chrome browser versions across the managed fleet. A key data point in this report is the number of "Active Browsers" on each version, allowing administrators to understand their update status and identify any significant fragmentation. While
"Total Browsers" might be a related metric, the core focus of the "Versions" report is on the active instances and their respective versions. Information on "Inactive Browsers" or the "Last update" time for individual browsers might be found in other reports.


NEW QUESTION # 28
An end user is returning from an extended leave of absence and finds their browser is no longer active The administrator is not sure if the inactivity policy has been violated What is the minimum action necessary to re-enroll this browser?

  • A. Close and reopen Chrome
  • B. Delete the browser from CEC and reopen Chrome
  • C. Verify the policy has been violated and then wipe the browser
  • D. Delete the device management token and reopen Chrome

Answer: D

Explanation:
If a browser becomes inactive due to policy, the device management token likely needs to be refreshed or re- established. Deleting the token and then reopening Chrome will typically trigger the browser to attempt re- enrollment and obtain a new token, bringing it back under management. Wiping the browser or deleting it from the CEC might be necessary in more severe cases but is not the minimum action. Simply closing and reopening Chrome might not be sufficient if the token has expired or been invalidated.


NEW QUESTION # 29
What policy and value provides the most protection against malicious websites?

  • A. Enable site isolation for all websites
  • B. Allow the user ability to bypass Safe Browsing warnings
  • C. Set the Safe Browsing policy to Enhanced mode
  • D. Set the site isolation policy to be required for all websites

Answer: C

Explanation:
Setting the **Safe Browsing policy to Enhanced mode** provides the most direct and comprehensive protection against malicious websites by leveraging Google's real-time threat intelligence. Allowing users to bypass warnings (option A) defeats the purpose of Safe Browsing. While site isolation (options C and D) protects against cross-site data leakage, it doesn't directly prevent users from accessing malicious sites in the first place. Enhanced Safe Browsing actively warns and blocks access to dangerous websites.


NEW QUESTION # 30
A small business wants to have all of their macOS devices enroll in Chrome Enterprise Core. They do not have a Mobile Device Management solution but do maintain a base image for their Mac computers Where should they put the enrollment token*?

  • A. HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Google\Chrome\CloudManagementEnrollmentToken
  • B. /Library/Google/Chrome/CloudManagementEnrollmentToken
  • C. /Library/Google/Chrome/Enrollment/DeviceManagementToken
  • D. /etc/opt/chrome/policies/enrollment/CloudManagementEnrollmentToken

Answer: B

Explanation:
For macOS devices without MDM, the enrollment token can be embedded in the base image. The correct path for placing the cloud management enrollment token on macOS is `/Library/Google/Chrome
/CloudManagementEnrollmentToken`. The other paths listed are for Windows Registry (A), a non-standard Linux path (C), and a potentially incorrect macOS path (D).


NEW QUESTION # 31
An administrator identifies that the next major Chrome release, Chrome 130, has an issue with oneof their critical business applications. The company's Chrome browsers are currently on version 129.0.6568.91. The administrator needs to prevent browsers from updating to Chrome 130, while allowing continued updates within the Chrome 129 major version.
Which target version prefix should the administrator use in the updates setting to achieve this?

  • A. 129.
  • B. 129'"
  • C. 0
  • D. 129(

Answer: A

Explanation:
To target all updates within the 129 major version, the administrator should use the target version prefix `129.
`. This tells Chrome to stay within the 129 branch and accept minor updates (like 129.0.x.y to 129.1.x.y) but not to upgrade to the next major version (130). The other options are not the correct syntax for specifying a major version prefix for target updates.


NEW QUESTION # 32
The browser administrators at a company have configured the following extension policies:
Policy Name | Policy Value
------- | --------
ExtensionInstallAllowlist | [ "lpbdmphcndhhacbfcgbdmnoffaeppiici",
"gihagpmigkmndpbjkmlolikibogeofcm", "enebfpjnlbicamdncnfhlaapucdmgkj",
"hhpkimhnadcdidjaejaegpeeikllochd", "bmplllbeanipnjdckniakhniegbcobannoj" ] ExtensionInstallBlocklist | [ ] ExtensionInstallForceList | [ "gihagpmigkmndpbjkmlolikibogeofcm;[https://clients2.google.com/service
/update2/crx](https://clients2.google.com/service/update2/crx)", "ufninibicajhgibfhjcgnimlmdhccodfl;
[https://clients2.google.com/service/update2/crx](https://clients2.google.com/service/update2/crx)",
"hhpkimhnadcdidjaejaegpeeikllochd;[https://clients2.google.com/service/update2/crx](https://clients2.google.
com/service/update2/crx)" ]
An employee at the company wants to install an extension from the Chrome Web Store called "Grammar Friend" with the extension ID `ufninibicajhgibfhjcgnimlmdhccodfl` What will happen when the user goes to the Grammar Friend page in the Chrome Web Store?

  • A. The "Add to Chrome" button will be available to click, and the user can install the extension.
  • B. A red banner that says "Your administrator has blocked this item (ID ufninibicajhgibfhjcgnimlmdhccodfl)" will appear, and the "Add to Chrome" button will be grayed out.
  • C. The "Remove from Chrome" button will be available because the extension is already installed.
  • D. A blue banner that says "This item's installation is required by your organization" will appear, and the
    "Remove from Chrome" button will be grayed out.

Answer: D

Explanation:
The extension ID `ufninibicajhgibfhjcgnimlmdhccodfl` is present in the `ExtensionInstallForceList`.
Extensions in this list are automatically installed and cannot be removed by the user. Therefore, when the user visits the Chrome Web Store page for "Grammar Friend," they will see a blue banner indicating that the extension is required by their organization, and the "Remove from Chrome" button will be disabled. The "Add to Chrome" button will not be clickable in the standard way because it's already being force-installed.


NEW QUESTION # 33
A browser administrator is looking to deploy Chrome Enterprise Core and build a configuration that supports both managed device browsers as well as managed profiles Company
- Employees
- Users
- Contractors
If this is the current organizational unit (OU) structure in the Google Admin console, which change should the administrator make to the structure to support the desired use case?

  • A. Create a Managed Browsers OU nested under the Company OU
  • B. Create a Managed Browsers OU nested under the Users OU
  • C. Create a Managed Browsers OU nested under the Contractors OU
  • D. Create a Managed Browsers OU nested under the Employees OU

Answer: A

Explanation:
To effectively manage both managed device browsers (which apply policies at the device level) and managed profiles (which apply policies at the user profile level), creating a separate OU at the top level (under
"Company") or directly under it, specifically for "Managed Browsers," is the recommended approach. This allows for distinct policies tailored to the browser instance, regardless of the user signed in. Nesting under specific user OUs (Employees, Users, Contractors) would complicate the management of shared devices or scenarios where different user types might use the same managed browser.


NEW QUESTION # 34
When a Chrome browser under cloud management goes to a potentially risky website, that action is logged in the Audit and Investigation Report as what type of event"?

  • A. SSL Error
  • B. Untrusted Site Visit
  • C. Site Warning Unsafe Site Visit
  • D. Site Isolation Violation

Answer: C

Explanation:
When Chrome's Safe Browsing feature identifies a website as potentially risky and displays a warning page that the user might bypass to visit the site, this interaction is typically logged in the Audit and Investigation Report as a "Site Warning Unsafe Site Visit" event. This allows administrators to track instances where users might be exposed to potentially malicious content despite browser warnings. SSL errors relate to certificate issues, untrusted site visit is a more general term, and site isolation violation refers to a different security mechanism.


NEW QUESTION # 35
An organization is deploying 50 new devices which will be managed by a Mobile Device Management solution Which method should be used to enroll the Chrome browser on those devices into Chrome Enterprise Core?

  • A. Use Google Admin console bulk enrollment feature to generate a set of unique tokens, and thendistribute them via secure file sharing platform
  • B. Use Google Admin to generate 50 individual device registration keys and distribute them using mobile device management software
  • C. Generate a single device enrollment token and email it to all users, instructing them to enroll their devices individually
  • D. Use Google Admin to generate an enrollment token and distribute it using mobile device management software

Answer: D

Explanation:
The study guide emphasizes using enrollment tokens generated in the Google Admin console for enrolling browsers. When using an MDM solution, the most efficient and recommended method is to generate a single enrollment token and then deploy it to the devices through the MDM software. This allows for automated and scalable enrollment. Bulk enrollment features in the Admin console are typically for direct enrollment, not through MDM. Individual tokens or keys would be inefficient for a large deployment.


NEW QUESTION # 36
An organization has a compatibility issue with an internal website after the latest Chrome update The decision is made to revert any updates to the working version and stop Chrome from updating beyond the working version For security, Chrome needs to continue updating older versions to the latest compatible version Which configuration would an administrator set?

  • A. Google Updater policy precedence
  • B. Auto update check period
  • C. Target version and rollback
  • D. Update to extended stable channel

Answer: C

Explanation:
To pin Chrome to a specific working version and prevent upgrades beyond it while still allowing updates within that major version for security patches, the "Target version and rollback" policy is the appropriate choice. This allows administrators to specify a target version and potentially roll back if issues arise, while still receiving critical security updates within that targeted version.


NEW QUESTION # 37
......

Try 100% Updated Chrome-Enterprise-Administrator Exam Questions [2025]: https://www.itexamsimulator.com/Chrome-Enterprise-Administrator-brain-dumps.html

Pass Chrome-Enterprise-Administrator Exam - Real Questions and Answers: https://drive.google.com/open?id=1xWDm4mqSqdLRdfzOl8341pyex1qo1RWc