πΌ 1.6 Ensure That IAM Users Are Not Assigned the Service Account User or Service Account Token Creator Roles at Project Level - Level 1 (Automated)
- Contextual name: πΌ 1.6 Ensure That IAM Users Are Not Assigned the Service Account User or Service Account Token Creator Roles at Project Level - Level 1 (Automated)
- ID:
/frameworks/cis-gcp-v3.0.0/01/06
- Located in: πΌ 1 Identity and Access Management
Descriptionβ
It is recommended to assign the Service Account User (iam.serviceAccountUser)
and Service Account Token Creator (iam.serviceAccountTokenCreator)
roles to a user for a specific service account rather than assigning the role to a user at project level.
Similarβ
Sub Sectionsβ
Section | Sub Sections | Internal Rules | Policies | Flags |
---|
Policies (1)β