Policy Settings
The Enforce GCP IAM User-Managed Service Accounts Do Not Have Admin Privileges policy pack has 2 policy settings:
Policy | Setting | Note |
---|---|---|
GCP > IAM > Service Account > Approved | Check: Approved | |
GCP > IAM > Service Account > Approved > Custom | Calculated |