Using Console
Using CLI
Using Python
google-cloud-iam
library by running the following command:
[PROJECT_ID]
with your GCP project ID.[SERVICE_ACCOUNT_EMAIL]
with the email address of the service account that has infrastructure modification capabilities.[NEW_ROLE]
with the desired role that limits the infrastructure modification capabilities..py
extension (e.g., remediate_iam.py
).