What else can you do to increase your organization’s defense-in-depth strategy?

The credentials of several individuals within your organization have recently been stolen. Using the Google Workspace login logs, you have determined that in several cases, the stolen credentials have been used in countries other than the ones your organization works in.

What else can you do to increase your organization’s defense-in-depth strategy?
A . Implement an IP block on the malicious user’s IPs under Security Settings in the Admin Console.
B . Use Context-Aware Access to deny access to Google services from geo locations other than the ones your organization operates in.
C . Enforce higher complexity passwords by rolling it out to the affected users.
D . Use Mobile device management geo-fencing to prevent malicious actors from using
these stolen credentials.

Answer: B


https://support.google.com/a/answer/9262032?hl=en#zippy=%2Cdefine-access-levelsbasic-mode:~:text=This%20example%20shows%20an%20access%20level%20called%20%E2%80%9Ccorp_access.%E2%80%9D%20If%20%E2%80%9Ccorp_access%E2%80%9D%20is%20applied%20to%20Gmail%2C%20users%20can%20access%20Gmail%20only%20from%20an%20encrypted%20and%20company%2Downed%20device%2C%20and%20only %20from%20the%20US%20or%20Canada.

Notify of
Inline Feedbacks
View all comments