As your organization's administrator, you want to assign a delegated admin custom role in order to perform a limited set of ChromeOS device management tasks only for the Marketing organizational unit. What should you do?
To delegate ChromeOS device management specifically for the Marketing OU, create a custom role with 'Chrome Management permissions' and assign it specifically to the Marketing devices OU. This ensures that the delegated admin can manage only the devices within that specific OU without impacting the entire organization.
Verified Answer from Official Source:
The correct answer is verified from the Google Admin Console Role Management Guide, which recommends assigning roles at the appropriate OU level for granular access control.
'Assign roles to specific OUs to limit administrative control to relevant organizational units, such as the Marketing devices OU.'
By targeting the role to the Marketing devices OU, you ensure that the delegated admin does not have unnecessary access to devices in other parts of the organization, maintaining the principle of least privilege.
Objectives:
Implement delegated administration for specific OUs.
Limit administrative scope to enhance security.
Google Admin Console Role Management Guide
Raul
9 hours agoArlen
6 days agoRosendo
11 days agoAllene
16 days agoWillard
21 days agoPeggy
26 days agoLouvenia
1 month agoElsa
1 month agoIesha
1 month agoMitsue
2 months agoKeneth
2 months agoMarleen
2 months agoRickie
2 months agoCeola
2 months agoDoyle
2 months agoVerda
3 months agoMitsue
3 months agoChauncey
3 months agoRenea
3 months ago