with-agents

Cloud Bytes — selected guide

Cloud IAM in a minute

Google Cloud Tech 11 of 12
In this collection Browse 12 summaries 11 of 12

The source names neither its presenter nor an affiliation. This 2021 security primer presents Cloud Identity and Access Management (IAM) as resource authorization across the Google Cloud resource hierarchy.

Key Points Covered

  • Policies apply at fine-grained resource levels: The primer connects organizations, folders, and projects with organization-wide policy visibility and auditing [00:00:00].
  • Resource Manager supports hierarchy-wide changes: It is paired with IAM for policy administration across the resource hierarchy [00:00:00].
  • Recommendations assist rather than decide: Policy Intelligence and IAM Recommender are described as finding and helping reduce overly permissive access, but the primer does not cover business context, separation of duties, or safe rollout [00:00:54].

Security synthesis here is limited to IAM's resource-authorization role; it does not establish a complete identity, authentication, or security architecture. Use this as historical orientation and check current policy types, conditions, deny behavior, recommender scope, audit coverage, quotas, and limits in current documentation.

Full video: https://www.youtube.com/watch?v=zd5d9Vv1ZFE(opens in a new tab)