Identity as a Service (IDaaS) and enterprise mobility management (EMM)
The Secure LDAP service provides a simple and secure way to connect your LDAP-based applications and services to Cloud Identity or Google Workspace.
The password vaulted apps service can manage access to some of the apps that don't support federation and that are available to users on the user Dashboard.
Using Context-Aware Access, you can create granular access control policies to apps based on attributes such as user identity, location, device security status, and IP address.
As an administrator, you can set up company-owned and personal Microsoft Windows devices to use Google’s single-sign on (SSO) access security, push Windows settings, and wipe device data remotely. Enhanced desktop security for Windows has two complementary features that can be set up together or individually.
As an administrator, you can define rules to automate device management tasks and get security alerts. For example, you can automatically block devices that report suspicious activity.
Security controls that admins can use to protect sensitive company data on iOS devices
Restrict copy and paste on data belonging to G Suite accounts to other accounts. This can prevent corporate data from being exfiltrated to personal accounts.
Restrict the ability for users to drag and drop files from specific apps within their G Suite account.