Skip to content

Latest commit

 

History

History
19 lines (13 loc) · 733 Bytes

service-account-user.md

File metadata and controls

19 lines (13 loc) · 733 Bytes

CloudSploit

GOOGLE / IAM / Service Account User

Quick Info

Plugin Title Service Account User
Cloud GOOGLE
Category IAM
Description Ensures that no users have the Service Account User role.
More Info The Service Account User role gives users the access to all service accounts of a project. This can result in an elevation of privileges and is not recommended.
GOOGLE Link https://cloud.google.com/iam/docs/overview
Recommended Action Ensure that no service accounts have the Service Account User role attached.

Detailed Remediation Steps