Organisation policy
Constraints on public access, key management and external identities, and where they are overridden.
A Google Cloud organisation where projects outgrew the policy. We review it and write the fixes down.
Constraints on public access, key management and external identities, and where they are overridden.
Basic roles still in use, service account impersonation chains and IAM conditions that narrow access.
Perimeter design, access levels, and the ingress rules that quietly defeat the perimeter.
Cloud Audit Logs coverage, log sinks and whether Security Command Centre findings reach an owner.
Committed use discount coverage, idle persistent disks and BigQuery slot versus on-demand choice.
No. We hold no Google Cloud partner status. The review carries no vendor incentive.
Yes. Region and multi-region placement for Australian data is part of the review.
Its access model and cost model are. A full data platform build is a separate scope.
Send the accounts in scope and what prompted the question. We confirm scope and fee before any access.
Last reviewed: