Google Cloud IAM
Connect Google Cloud IAM to Iru Compliance Automation to collect policy bindings, permissions, and audit logs.
Inherited permissions are where GCP access quietly gets complicated. Iru connects to Google Cloud IAM and resolves exactly what access landed for any user across the resource hierarchy, not just what was assigned at one level.
Key Capabilities
- Verify role bindings follow least privilege at every level of the resource hierarchy
- Confirm inherited access is understood rather than assumed
- Track policy and binding changes
- Flag high-risk delegation before it becomes a problem
Evidence Collected
- IAM policy bindings by project, folder, and organization
- Effective permissions and inheritance analysis
- Cloud Audit Logs covering Admin Activity changes to policies and bindings
- Service account inventory and key usage
- Access Transparency records where the program applies