GWS-ADMIN Core Workspace Services Practice Question
Which TWO of the following are valid methods to audit file access in Google Drive?
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
Use the Security Investigation Tool
Audit logs and the Investigation tool are the standard ways to monitor file activity.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
Enable Google Vault for Drive exports
Why it's wrong here
Vault is for legal holds and discovery, not real-time activity auditing.
- ✗
Set up alerts for all file deletions
Why it's wrong here
This is a notification setting, not an audit method.
- ✓
Use the Security Investigation Tool
Why this is correct
Provides granular search for Drive activity.
- ✓
Review the Drive Audit logs in the Reports section
Why this is correct
Standard report for file activity history.
- ✗
Check the user's 'My Drive' settings
Why it's wrong here
User settings do not provide audit logs.
About these practice questions
Courseiva writes every GWS-ADMIN question from scratch — 208 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed August 2026 · checked against the official Google Cloud exam blueprint
This GWS-ADMIN practice question is part of Courseiva's free Google Cloud certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the GWS-ADMIN exam.