As your organization's administrator, you want to assign a delegated admin custom role in order to perform a limited set of ChromeOS device management tasks only for the Marketing organizational unit. What should you do?
To delegate ChromeOS device management specifically for the Marketing OU, create a custom role with 'Chrome Management permissions' and assign it specifically to the Marketing devices OU. This ensures that the delegated admin can manage only the devices within that specific OU without impacting the entire organization.
Verified Answer from Official Source:
The correct answer is verified from the Google Admin Console Role Management Guide, which recommends assigning roles at the appropriate OU level for granular access control.
'Assign roles to specific OUs to limit administrative control to relevant organizational units, such as the Marketing devices OU.'
By targeting the role to the Marketing devices OU, you ensure that the delegated admin does not have unnecessary access to devices in other parts of the organization, maintaining the principle of least privilege.
Objectives:
Implement delegated administration for specific OUs.
Limit administrative scope to enhance security.
Google Admin Console Role Management Guide
Suzan
7 days agoReyes
12 days agoStefania
17 days agoCarma
22 days agoLucina
27 days agoLorrine
1 month agoVeronique
1 month agoRaul
2 months agoArlen
2 months agoRosendo
2 months agoAllene
2 months agoWillard
3 months agoPeggy
3 months agoLouvenia
3 months agoElsa
3 months agoIesha
3 months agoMitsue
3 months agoKeneth
4 months agoMarleen
4 months agoRickie
4 months agoCeola
4 months agoDoyle
4 months agoVerda
5 months agoMitsue
5 months agoChauncey
5 months agoDetra
2 days agoRenea
5 months ago