Overview of Google Cloud Resource Manager
Google Cloud Resource Manager acts like a container for your cloud resources, allowing you to group your resources in a hierarchical way within the project, folder, or organization. Think of Resource Manager as a high-level way to perform macro-level segmentation. This not only helps you define the entire organization’s structure but also the implementation of security guardrails that can be inherited. More on this in the Policy inheritance section.
Figure 4.1 is an example of how you can structure your organization on Google Cloud. The top-level organization is where all your other components such as folders and projects are created. Organizing your resources in a hierarchical way lets you manage aspects such as access control and other configuration settings. The same applies to IAM policies, which can be applied at different levels and are then inherited top-down.
Figure 4.1 – Organization hierarchy...