Android Enterprise Professional Exam Answers 2024
Certification Questions & Certification Answers
Using Android Enterprise Versus Device Admin (DA) Is Recommended For All Deployments Going Forward Because:
- Device Admin API’s have been marked deprecated and will eventually not be supported
- Device Admin API’s provided an outdated security model and management approach
- Android Enterprise offers a modern management framework with enterprise APIs and secure app deployment via managed Google Play.
- All of the above
Correct Answer:
__________________ Is A Standard For Enterprise Customers To Recognize Android Devices That Perform Against Enterprise-Grade Testing And Integrate With Enterprise-Focused Features. (fill In The Blank)
- Android Enterprise Recommended
Correct Answer:
The Following Enrollment Methods Are Supported With Android Enterprise:
- NFC
- QR Code
- Zero-Touch
- All of the above
Correct Answer:
Restricting Applications From Communicating Directly To Each Other Is An Example Of What Android Security Principle:
- Verified Boot
- Safety Net
- Application Sandboxing
- Address Space Layout Randomization (ASLR)
Correct Answer:
Google Recommends Which Of The Following Methods To Securely Manage, Deploy Or Host In-House Company Applications?
- Sideloading
- Android admin console
- Zero Touch Portal
- Managed Google Play Store
Correct Answer:
- Managed Google Play Store
The Android Open Source Software Stack Is Built On:
- SELinux
Correct Answer:
The Identity Method That Is Preferred For G-Suite Customers:
- Managed Google Play Account
- Managed Google Account
- EMM Enhanced Account
- Gmail Account
Correct Answer:
‘Sideloading’ Is The #1 Risk For Introducing Malware And PHAs Onto Your Device.
- True
Correct Answer:
The Advantages Of Hosting Private Apps On Google Play Include: (Select All That Apply)
- Easy administration
- Security
- Reliability
Correct Answer:
Hardware-Backed Security Does Which Of The Following? (Select All That Apply)
- Mitigates exploitation
- Prevents brute force attacks
- Protects the boot process
- Keeps data safe from physical attacks
Correct Answer:
__________________ Ensures Key Generation, Key Import, Signing And Verification Services Are Kept Separate From The OS. (fill In The Blank)
- Trusted Execution Environment (TEE)
Correct Answer:
Using A Pin + Hardware Key To Derive Encryption Keys Is Called ________________.
- PIN verification process
Correct Answer:
COPE Devices Provide: (Select All That Apply)
- flexibility of using full device management with a work profile
Correct Answer:
Google Play Protect Includes: (Select All That Apply)
- Real-time malware detection
- Daily scan of apps on devices
- Blocking of harmful apps
Correct Answer:
- Real-time malware detection
- Daily scan of apps on devices
- Blocking of harmful apps
____________ Ensures Keys Created With A Newer OS Cannot Be Used By Older OS Versions.
- Version binding
Correct Answer:
Android 8.0+ Includes ___________ To Not Allow Downgrading OS To An Older Less Secure Version Or Patch Level.
- Rollback prevention
Correct Answer:
The Identity Method That Is Preferred For G-Suite Customers Is Referred To As:
- Managed Google Play Account & Gmail
- Managed Google Account
- EMM Enhanced Account
- Gmail
Correct Answer:
___________ Is A Collection Of Google Applications And APIs That Help Support Functionality Across Devices And A Requirement For Android Enterprise.
- Android Managed Services (AMS)
- Google Mobile Services (GMS)
- Android Compatibility Services (ACS)
- Compatibility Test Suite (CTS)
Correct Answer:
- Google Mobile Services (GMS)
To Make Android Even Safer, Google Shares Source Code For Security fixes Every ______ Days With Partners And Publish Updates For Nexus And Pixel Devices.
- 30
- 90
- 180
- Dessert release
Correct Answer:
________________ Can Add IMEI Or Serial Numbers To The Zero Touch Portal?
- End-Users
- Resellers
- Resellers and carrier partners
- Customers
Correct Answer:
- Resellers and carrier partners
The Newest Enrollment Method With The Launch Of __________ Is ___________:
- Android P, Fast Touch
- Android O, Zero Touch
- Android N, Easy Scale
- Android M, Managed Deployment
Correct Answer:
As Users Are The first Line Of Defense Against Any Mobile Threat, EMM’s Can Employ Policies That Can Force:
- Verified Boot
- Strong PIN, pattern or password lock
- Continuous SMS and call monitoring
- Passphrase to recover lost email accounts
Correct Answer:
- Strong PIN, pattern or password lock
In Order To Gain User Buy In For Work Profiles, Explain To Users That IT Cannot Monitor ____________ . (Select All That Apply)
- Call logs
- Personal photos
- Personal app installs
- SMS
Correct Answer:
Some Of The Advantages Of Hosting Private Apps On Managed Google Play Are:
- Application scanning, delta upgrades, free app hosting
- Security, cross platform application support and competitive pricing
- Security, easy administration and being able to host apps from any platform
- Hosting private apps on Google Play is not recommended
Correct Answer:
- Application scanning, delta upgrades, free app hosting
Devices With A Work Profile Differentiate Work Apps From Personal Apps By A:
- Badged hashtag
- Badged dot
- Badged star
- Badged briefcase
Correct Answer:
How Many Managed Google Play Accounts Can A Customer Get For Free From Google For Use With Their EMM?
- As many as needed
- 5
- 20
- 35
Correct Answer:
Please Select The Most Accurate Statement As It Pertains To Managed Google Play Accounts:
- Managed Google Play accounts are quick and easy to claim and require organizations to register their actual name with Google
- Managed Google Play accounts are easy to claim but require a 1 week approval period from Google
- Managed Google Play accounts are quick and easy to attain obfuscated identities that can be claimed for as many users as needed
- Manage Google Play accounts provide end users with identities that allows them to sign in to Google services such as G-Suite
Correct Answer:
- Managed Google Play accounts are quick and easy to attain obfuscated identities that can be claimed for as many users as needed
Google Play Protect Scans ___________ Apps That Are Installed Onto A Device:
- Only Google Play store
- All
- Only sideloaded
- Third party
Correct Answer:
As It Pertains To Shared Device Use Cases, Support For _____________ Was Added In Android Pie (9.0) Kiosk Mode.
- Work profile
- Multiple containers
- Multiple Apps
- Multiple DPC’s
Correct Answer:
_____________ Establishes Best Practices And Common Requirements For Devices And Services, Backed By A Thorough Testing Process Conducted By Google.
- Android Enterprise Recommended
Correct Answer:
- Android Enterprise Recommended
True Or False: During Deployment Planning, Determine Scope Of Testing And Timelines For Different Stages Of The Deployment.
- True
Correct Answer:
When Enrolling Devices Using The NFC Method, Organizations Can Use __________ To Transfer Configurations To A New Device:
- Either a pre-programmed master device or NFC tag
- A pre-programmed master device
- Only a pre-programmed NFC tag
- Android Enterprise does not support NFC enrollment
Correct Answer:
- Either a pre-programmed master device or NFC tag
Managed Google Play Provides Organizations Complete Control Over App Visibility And Distribution By:
- Allowing whitelisting and silent app push
- Providing application user data to admins
- Easy sideloading of select apps
- Making full Google Play store available to all user
Correct Answer:
- Allowing whitelisting and silent app push
Android Devices Utilize A __________, To Run Privileged Or Security-Sensitive Operations Such As PIN Verification, Secure Storage Of Encryption Keys And Verified Boot.
- Tamper Resistant Zone
- Trusted Execution Environment
- Trusted Encryption Zone
- Secure Execution Environment
Correct Answer:
- Trusted Execution Environment
Before Deploying Android In A No Connectivity Environment, You Should Strongly Consider:
- Android Enterprise devices must be able to access the Managed Google Play store to get apps and updates, and Google Play Protect security services.
- Android Enterprise devices require special permissions and policies to run in such environments
- The devices running in these environments must be running Android Oreo (8.0) or higher
- None of the above
Correct Answer:
- Android Enterprise devices must be able to access the Managed Google Play store to get apps and updates, and Google Play Protect security services.
During The ____________ Process, Each Bootstage Cryptographically Verifies The Integrity And Authenticity Of The Next Stage Before Executing It.
- Verified Boot
- Kernel checking
- Hashtagging
- System check
Correct Answer:
What Is The Proper Method A User Should Follow In Order To Add A Work Profile To Their Personal Device?
- Clear all personal data from device, download EMM app from Play Store, follow the setup wizard to complete.
- Download EMM app from Google Play, enter corporate credentials, follow the setup wizard to complete.
- Hard reset the device, send it into IT department for set up, retrieve device when ready.
- Enroll device in Zero Touch portal, inform IT so they can configure, follow the setup wizard.
Correct Answer:
- Download EMM app from Google Play, enter corporate credentials, follow the setup wizard to complete.
What Are The Are Two Identities That Can Be Used With Android Enterprise?
- Managed Google Play Account & Gmail
- Gmail & Managed Google Account
- Managed Google Account & Managed Google Play Account
- Managed EMM Account
Correct Answer:
- Managed Google Account & Managed Google Play Account
Android Enterprise Recommended Ensures Devices Are Up To Date With Regular Security Patches Delivered Within _________. Android Enterprise Recommended Devices Are Also Guaranteed To Get At Least ______________.
- 45 days, 2 additional major OS updates
- 90 days, 1 additional major OS update
- 60 days, 1 additional major OS update
- 90 days, 2 additional major OS updates
Correct Answer:
- 90 days, 1 additional major OS update
All Android OEM’s That Opt To Use Google Mobile Services (GMS) Must Adhere To A _________ And Successfully Pass ____________.
- Compatibility Definition Document (CDD), Compatibility Test Suite (CTS)
- Compatibility Definition Document (CDD), Android Test Suite (ATS)
- Enterprise Recommended Document (ERD) and Compatibility Test Suite (CTS) Compatibility Definition Document (CDD), Android Device Test (ADT) Compatibility Definition Document (CDD), Android Device Test (ADT)
Correct Answer:
- Compatibility Definition Document (CDD), Compatibility Test Suite (CTS)
The feature that gives IT control over company data while allowing workers to keep their pictures and apps private is called:
- Android profiles
- Zero-touch
- Work profile
- Managed Google Play
Correct Answer:
__________________ enables large-scale Android deployments across multiple device makers with no manual set up. (fill in the blank)
- EMM token
- Zero-touch
- QR code
Correct Answer:
With Managed Google Play, You Can: (Select All That Apply)
- Manage and configure apps
- Host and publish internal apps
- Distribute and purchase apps
Correct Answer:
- Manage and configure apps
- Host and publish internal apps
- Distribute and purchase apps
This page was last edited on 12th March, 2024 at 9:01 AM (UTC).
I hope this helps! Let me know if you have any other questions.