Skip to main content

๐Ÿ“ Google IAM

  • Contextual name: ๐Ÿ“ IAM
  • ID: /ce/ca/google/iam

Policies (14)โ€‹

PolicyLogic CountFlagsCompliance
๐Ÿ›ก๏ธ Access Approval is not enabled๐ŸŸข1๐ŸŸข x6no data
๐Ÿ›ก๏ธ Consumer Google Accounts are used๐ŸŸขโšช๐ŸŸข x2, โšช x1no data
๐Ÿ›ก๏ธ Google Accounts are not configured with MFA๐ŸŸขโšช๐ŸŸข x2, โšช x1no data
๐Ÿ›ก๏ธ Identity Aware Proxy (IAP) is not used to enforce access controls๐ŸŸขโšช๐ŸŸข x2, โšช x1no data
๐Ÿ›ก๏ธ Organization Administrator Security Key Enforcement is not enabled๐ŸŸขโšช๐ŸŸข x2, โšช x1no data
๐Ÿ›ก๏ธ Organization Essential Contacts is not configured๐ŸŸข1๐ŸŸข x6no data
๐Ÿ›ก๏ธ Organization has a Redis IAM role assigned๐ŸŸข1๐ŸŸข x6no data
๐Ÿ›ก๏ธ Project with KMS keys has a principal with Owner role๐ŸŸข1๐ŸŸข x6no data
๐Ÿ›ก๏ธ Roles related to KMS are not assigned to separate users๐ŸŸข1๐ŸŸข x6no data
๐Ÿ›ก๏ธ Service Account has admin privileges๐ŸŸข1๐ŸŸข x6no data
๐Ÿ›ก๏ธ Service Account has User-Managed Keys๐ŸŸข1๐ŸŸข x6no data
๐Ÿ›ก๏ธ Service Account User-Managed Key is not rotated every 90 days๐ŸŸข1๐ŸŸข x6no data
๐Ÿ›ก๏ธ User has both Service Account Admin and Service Account User roles assigned๐ŸŸข1๐ŸŸข x6no data
๐Ÿ›ก๏ธ User is assigned a basic role๐ŸŸข1๐ŸŸข x6no data