[Data access and authentication] Altostrat is using a third-party SAML Identity Provider (IdP) for Google Workspace SSO. They want to ensure that even if a user’s IdP credentials are compromised, their Google Workspace account remains protected. What additional security measure should they implement?
Select two that apply, and then click Submit.
- Enforce complex password policies on the IdP
- Enable Google’s two-step verification (2SV) after successful IdP authentication
- Implement context-aware access policies
- Restrict access to Google Workspace from specific IP addresses
- Disable third-party app access for all users