Skip to main content
Google Workspace Help
Security & data protection
  • Administrators
  • Getting started
  • Set up and manage services
  • Apps and integrations
  • Billing and subscriptions
  • Data migration
  • Data synchronization
  • Device management
  • Domain management
  • Generative AI
  • Reports and monitoring
  • Security and data protection
  • User management
  • Legal and compliance
  • Support and troubleshooting
  • Users
  • Calendar
  • Chat
  • Cloud Search
  • Gmail
  • Groups
  • Docs, Forms, Sheets, and Slides
  • Drive
  • Keep
  • Marketplace
  • Meet
  • Meet Hardware
  • Sites
  • Vault
  • Vids
  • Developers
  • Apps Script
  • Marketplace
  • Workspace APIs
  • Training & business user guides
  • Workspace Learning Center
  • Google Skills
  • Communities
  • Workspace Admin Community
  • Workspace Developers Community
Support
/
  • English
  • Deutsch
  • Español – América Latina
  • Français
  • Indonesia
  • Italiano
  • Nederlands
  • Polski
  • Português – Brasil
  • Svenska
  • Tiếng Việt
  • Türkçe
  • Русский
  • עברית
  • العربيّة
  • فارسی
  • हिंदी
  • বাংলা
  • ภาษาไทย
  • 中文 – 简体
  • 中文 – 繁體
  • 日本語
  • 한국어
Sign in
  • Administrators
  • Security & data protection
Admin console Contact us
Overview Guides
Google Workspace Help
  • Security & data protection
    • Overview
    • Guides
  • Documentation
    • More
  • Community
    • More
  • Support
  • Get started
  • Security checklists
  • Security center: Prevent, detect & remediate security threats
  • About the security center
  • View the security dashboard, investigation tool, and security health page
  • Security investigation tool
    • About the security investigation tool
    • Admin privileges for the security investigation tool
    • Run a search in the security investigation tool
      • Data sources for the security investigation tool
      • Group results by attribute when searching
      • Customize searches with nested queries
      • Run a search for device data
      • Run a search for Gmail message data
      • Run a search for user data
    • Manage your investigations
      • Configure settings for your investigations
      • Save, share, delete, and duplicate investigations
      • Change the time zone in the security investigation tool
    • Common uses for the security investigation tool
      • Take action based on search results
      • Use the investigation tool to end meetings
      • Use the investigation tool to view sensitive content
      • Investigate chat messages to moderate content and protect your data
      • Investigate reports of malicious emails
      • Investigate file sharing
      • Investigate users across data sources
      • Transfer a Drive file from an unknown owner
      • Search and investigate user log events
      • Investigate and take action on suspicious files
      • Investigate and take action on suspicious session cookies
    • Require reviewers for bulk actions
    • Start an investigation from the alert center
    • View VirusTotal reports from the investigation tool
    • Create and manage activity rules
    • Admin access to reporting rules & activity rules
  • Security dashboard reports
    • Use the security dashboard
    • Create a custom chart based on an investigation
  • Security health page
    • Get started with the security health page
    • Threat types
    • Monitor the health of your Calendar settings
    • Monitor the health of your device management settings
    • Monitor the health of your Drive settings
    • Monitor the health of your Gmail settings
    • Monitor the health of your Groups settings
    • Monitor the health of your Marketplace apps settings
    • Monitor the health of your security settings
    • Monitor the health of your Sites settings
  • Admin auditing for the security center
  • Admin privileges for the security center
  • Security advisor
    • Security advisor: Turn on recommended settings
    • Security advisor for app access protection
    • Security advisor for data protection
  • Account security
  • Set up 2-Step Verification for your organization
    • About 2SV enforcement for admins
    • Protect your business with 2-Step Verification
    • Recover an account protected by 2-Step Verification
    • Avoid account lockouts when 2-Step Verification is enforced by your organization
    • Deploy 2-Step Verification
    • How 2-Step Verification works with legacy apps
    • How 2-Step Verification works with third-party IdPs
  • Manage a user's security settings
  • Protect Google Workspace accounts with security challenges
  • Add employee ID as a login challenge
  • Temporarily turn off login challenges for a user
  • Prevent cookie theft with session binding
  • Block access to consumer accounts
  • Set session length for Google Cloud services
  • Set session length for Google services
  • Advanced Protection Program
    • Protect users with the Advanced Protection Program
    • Enable user enrollment in the Advanced Protection Program
    • Manage Advanced Protection Program user enrollment
    • Advanced Protection Program FAQ
  • Set up email authentication
  • About authentication methods
  • Authentication report
  • Help prevent Drive spam and phishing
  • Set up BIMI
  • Set up DKIM
  • Set up DMARC
  • Set up SPF
  • Manage Gemini & control access to agents
  • How Google helps protect Gemini users from malicious content & prompt injections
  • Control access to Gemini Enterprise agents
  • Manage Gemini Enterprise agents for Workspace users
  • Set up Agent Gateway for Workspace MCP ingress
  • Indirect prompt injections & Google's layered defense strategy for Gemini
  • Alert center
  • About the alert center
  • Configure alert center email notifications
  • Delete alerts
  • Grant access to the alert center
  • Provide feedback on alerts
  • Recommended actions: Take action in response to alerts
  • Use rules to turn alerts on or off
  • Use the alert center
  • View alert details
  • View and change alert assignees
  • View and change alert severity
  • View and change alert status
  • View VirusTotal reports from the alert center
  • Assured Controls & Access Transparency
  • About Assured Controls and Assured Controls Plus
  • Access Approvals: Require Google staff to request approval before viewing support data
  • Access Management: Limit the Google staff who can take support actions related to your data
  • Access Transparency log events
  • Access Transparency: View logs on Google access to user content
  • Assured Support for Access Management
  • What data is covered by Access Management and Access Approvals?
  • Chrome Enterprise
  • Chrome data protection summary report
  • Chrome high risk domains report
  • Chrome high risk users report
  • Chrome threat protection summary report
  • Domain types with most content transfer on Chrome report
  • Domains with most content transfer on Chrome report
  • Monitoring for insider risk and data loss
  • Protect Chrome users with Chrome Enterprise Premium
  • Sensitive content transfers on Chrome report
  • Set up timeout deadlines for DLP & malware scans
  • Use Chrome Enterprise Premium to integrate DLP with Chrome
  • Use custom URL lists for DLP in Chrome
  • Use data masking to strengthen DLP in Chrome
  • Users with most content transfer on Chrome report
  • Set up Workspace Client-side encryption
  • About Client-side encryption
  • Protect your organization's data with CSE
  • Set up Client-side encryption (standard method)
  • Set up Client-side encryption (simplified method)
  • Add and manage key services for Client-side encryption
  • Assign Client-side encryption to users
  • Choose your key service for Client-side encryption
  • Client-side encryption FAQ
  • Client-side encryption user experience overview
  • Connect to your identity provider for Client-side encryption
  • Convert exported and decrypted Google files to Microsoft Office files
  • Decrypt exported Client-side encrypted files and email
  • Gmail only: Configure S/MIME for Client-side encryption
  • Set up and manage hardware keys for Gmail
  • Migrate messages to Gmail as client-side encrypted email
  • Provide external access to client-side encrypted content
  • Set up your external key service for Client-side encryption
  • Turn Client-side encryption on or off for users
  • View logs and reports for Client-side encryption
  • Classification labels
  • Apply Default classification labels to new files automatically
  • Apply classification labels to Drive files automatically with DLP rules
  • Create classification labels for your organization
  • Edit and monitor classification labels for your organization
  • Enable or disable a classification label
  • Get started as a classification labels admin
  • Label Google Drive files automatically using AI classification
  • Context-Aware Access
  • About Context-Aware Access
  • Allow users to unblock apps with remediation messages in Context Aware Access
  • Apply recommended access levels
  • Assign Context-Aware access levels to apps
  • Assign Context-Aware access levels to the Admin console
  • Assign access levels to Google-owned apps
  • Assign access levels to private web apps
  • Assign access levels to third-party apps
  • Apply a default Context-Aware Access policy for all SAML apps
  • Combine DLP rules with Context-Aware Access conditions
  • Context-Aware Access examples for Advanced mode
  • Context-Aware Access examples for Basic mode
  • Context-Aware Access FAQ
  • Control access to actions in apps
  • Create Context-Aware access levels
  • Delete access levels (which are a shared resource)
  • Deploy Context-Aware Access
  • Protect your business with Context-Aware Access
  • Use Context-Aware Access with configuration groups
  • Use case: Device policy enforcement
  • Use case: Managed Chrome browser enforcement
  • Use case: Public IP address enforcement
  • Use case: Require enterprise certificates
  • Use cases: Exempt trusted third-party apps from being blocked
  • Data loss prevention
  • About DLP
  • Create data protection rules
  • DLP Data Protection Insights reports
  • Examples of DLP rules with nested condition operators
  • How to use predefined content detectors
  • Prevent data leaks with Data protection recommended rules
  • View content that triggers DLP rules
  • View DLP content and rule size limits