github.com/aquasecurity/trivy-iac@v0.8.1-0.20240127024015-3d8e412cf0ab/avd_docs/google/iam/AVD-GCP-0006/Terraform.md (about) 1 2 Use specialised service accounts for specific purposes. 3 4 ```hcl 5 resource "google_service_account" "test" { 6 account_id = "account123" 7 display_name = "account123" 8 } 9 10 resource "google_project_iam_member" "project-123" { 11 project = "project-123" 12 role = "roles/whatever" 13 member = "serviceAccount:${google_service_account.test.email}" 14 } 15 16 ``` 17 18 #### Remediation Links 19 - https://registry.terraform.io/providers/hashicorp/google/latest/docs/resources/google_project_iam 20 21 - 22