6
Google Cloud Identity and Access Management
In this chapter, we will explore Google Cloud Identity and Access Management (IAM), an essential service to comprehend for the exam. With IAM, you can authorize cloud services, and assign appropriate access to users and applications. Acquiring a good understanding of IAM is crucial to ensure that your cloud implementation follows the principle of least privilege, restricting access to only what is necessary.
In this chapter, we will cover the following topics:
- Overview of IAM
- IAM roles and permissions
- Service accounts
- IAM policy bindings
- IAM conditions
- Cloud Storage, IAM, and ACLs
- Logging and IAM APIs