with-agents

Get Started with Google Cloud — selected guide

Resource Access Control IAM Roles and Permissions

Google Cloud Tech 4 of 12
In this collection Browse 12 summaries 4 of 12

This item-level access-control example demonstrates the relationship among a principal, an IAM role, and observed resource access. [00:00:00]-[00:00:53]

Key Points Covered

  • Granting a person the Storage Admin role gives that account broad control over Cloud Storage resources after policy propagation. [00:00:00]-[00:00:53]
  • Removing the principal from the policy revokes access, confirmed by a permission error. [00:00:00]-[00:00:53]
  • IAM policy changes can take time to propagate, so an immediate check may briefly reflect the previous state. [00:00:00]

Treat the broad role and 2019 console flow as historical teaching shortcuts, not modern defaults or a complete security guide; use current live Google Cloud IAM documentation for procedures and least-privilege design.

Full video: https://www.youtube.com/watch?v=Sdt-i-Q7tyA(opens in a new tab)