This page lists the IAM roles and permissions for Access Context Manager. To search through all roles and permissions, see the role and permission index.
Access Context Manager roles
| Role | Permissions | 
|---|---|
Cloud Access Binding Admin( Create, edit, and change Cloud access bindings.  | 
   
       
  | 
Cloud Access Binding Reader( Read access to Cloud access bindings.  | 
   
 
  | 
Access Context Manager Admin( Full access to policies, access levels, access zones and authorized orgs descs.  | 
   
       
 
       
 
       
 
       
 
 
 
 
  | 
Access Context Manager Editor( Edit access to policies. Create, edit, and change access levels, access zones and authorized orgs descs.  | 
   
       
 
       
 
 
 
 
 
 
 
       
 
 
 
 
  | 
Access Context Manager Reader( Read access to policies, access levels, access zones and authorized orgs descs.  | 
   
 
 
 
 
 
 
 
 
 
 
 
  | 
VPC Service Controls Troubleshooter Viewer( 
  | 
   
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
  | 
Access Context Manager permissions
| Permission | Included in roles | 
|---|---|
        
       | 
      
         
          Owner ( 
          Editor ( 
          Access Context Manager Admin ( 
          Access Context Manager Editor ( Service agent roles 
  | 
    
        
       | 
      
         
          Owner ( 
          Editor ( 
          Access Context Manager Admin ( 
          Access Context Manager Editor ( Service agent roles 
  | 
    
        
       | 
      
         
          Owner ( 
          Editor ( 
          Viewer ( 
          Access Context Manager Admin ( 
          Access Context Manager Editor ( 
          Access Context Manager Reader ( 
          VPC Service Controls Troubleshooter Viewer ( 
          Security Auditor ( 
          Support User ( Service agent roles 
  | 
    
        
       | 
      
         
          Owner ( 
          Editor ( 
          Viewer ( 
          Access Context Manager Admin ( 
          Access Context Manager Editor ( 
          Access Context Manager Reader ( 
          VPC Service Controls Troubleshooter Viewer ( 
          Security Admin ( 
          Security Auditor ( 
          Security Reviewer ( 
          Support User (  | 
    
        
       | 
      
         
          Owner ( 
          Editor ( 
          Access Context Manager Admin ( 
          Access Context Manager Editor (  | 
    
        
       | 
      
         
          Owner ( 
          Editor ( 
          Access Context Manager Admin ( 
          Access Context Manager Editor ( Service agent roles 
  | 
    
        
       | 
      
         
          Owner ( 
          Editor ( 
          Access Context Manager Admin ( 
          Access Context Manager Editor (  | 
    
        
       | 
      
         
          Owner ( 
          Editor ( 
          Access Context Manager Admin ( 
          Access Context Manager Editor (  | 
    
        
       | 
      
         
          Owner ( 
          Editor ( 
          Viewer ( 
          Access Context Manager Admin ( 
          Access Context Manager Editor ( 
          Access Context Manager Reader ( 
          VPC Service Controls Troubleshooter Viewer ( 
          Security Auditor ( 
          Support User (  | 
    
        
       | 
      
         
          Owner ( 
          Editor ( 
          Viewer ( 
          Access Context Manager Admin ( 
          Access Context Manager Editor ( 
          Access Context Manager Reader ( 
          VPC Service Controls Troubleshooter Viewer ( 
          Security Admin ( 
          Security Auditor ( 
          Security Reviewer ( 
          Support User (  | 
    
        
       | 
      
         
          Owner ( 
          Editor ( 
          Access Context Manager Admin ( 
          Access Context Manager Editor (  | 
    
        
       | 
      
         
          Owner ( 
          Editor ( 
          Cloud Access Binding Admin (  | 
    
        
       | 
      
         
          Owner ( 
          Editor ( 
          Cloud Access Binding Admin (  | 
    
        
       | 
      
         
          Owner ( 
          Editor ( 
          Viewer ( 
          Cloud Access Binding Admin ( 
          Cloud Access Binding Reader ( 
          Support User ( Service agent roles 
  | 
    
        
       | 
      
         
          Owner ( 
          Editor ( 
          Viewer ( 
          Cloud Access Binding Admin ( 
          Cloud Access Binding Reader ( 
          Security Admin ( 
          Security Auditor ( 
          Security Reviewer ( 
          Support User ( Service agent roles 
  | 
    
        
       | 
      
         
          Owner ( 
          Editor ( 
          Cloud Access Binding Admin (  | 
    
        
       | 
      
         
          Owner ( 
          Editor ( 
          Access Context Manager Admin ( 
          Access Context Manager Editor (  | 
    
        
       | 
      
         
          Owner ( 
          Editor ( 
          Access Context Manager Admin ( 
          Access Context Manager Editor (  | 
    
        
       | 
      
         
          Owner ( 
          Editor ( 
          Viewer ( 
          Access Context Manager Admin ( 
          Access Context Manager Editor ( 
          Access Context Manager Reader ( 
          VPC Service Controls Troubleshooter Viewer ( 
          Security Auditor ( 
          Support User (  | 
    
        
       | 
      
         
          Owner ( 
          Editor ( 
          Viewer ( 
          Access Context Manager Admin ( 
          Access Context Manager Editor ( 
          Access Context Manager Reader ( 
          VPC Service Controls Troubleshooter Viewer ( 
          Security Admin ( 
          Security Auditor ( 
          Security Reviewer ( 
          Support User (  | 
    
        
       | 
      
         
          Owner ( 
          Editor ( 
          Viewer ( 
          Access Context Manager Admin ( 
          Access Context Manager Editor ( 
          Access Context Manager Reader ( 
          VPC Service Controls Troubleshooter Viewer ( 
          Security Admin ( 
          Security Auditor ( 
          Security Reviewer ( 
          Support User ( Service agent roles 
  | 
    
        
       | 
      
         
          Owner ( 
          Access Context Manager Admin ( 
          Security Admin (  | 
    
        
       | 
      
         
          Owner ( 
          Editor ( 
          Access Context Manager Admin ( 
          Access Context Manager Editor (  | 
    
        
       | 
      
         
          Owner ( 
          Editor ( 
          Access Context Manager Admin ( 
          Access Context Manager Editor (  | 
    
        
       | 
      
         
          Owner ( 
          Editor ( 
          Access Context Manager Admin ( 
          Access Context Manager Editor ( Service agent roles 
  | 
    
        
       | 
      
         
          Owner ( 
          Editor ( 
          Access Context Manager Admin ( 
          Access Context Manager Editor ( Service agent roles 
  | 
    
        
       | 
      
         
          Owner ( 
          Editor ( 
          Viewer ( 
          Access Context Manager Admin ( 
          Access Context Manager Editor ( 
          Access Context Manager Reader ( 
          VPC Service Controls Troubleshooter Viewer ( 
          Security Auditor ( 
          Support User ( 
          SLZ BQDW Blueprint Organization Level Remediator ( Service agent roles 
  | 
    
        
       | 
      
         
          Owner ( 
          Editor ( 
          Viewer ( 
          Access Context Manager Admin ( 
          Access Context Manager Editor ( 
          Access Context Manager Reader ( 
          VPC Service Controls Troubleshooter Viewer ( 
          Security Admin ( 
          Security Auditor ( 
          Security Reviewer ( 
          Support User ( 
          SLZ BQDW Blueprint Organization Level Remediator (  | 
    
        
       | 
      
         
          Owner ( 
          Editor ( 
          Access Context Manager Admin ( 
          Access Context Manager Editor (  | 
    
        
       | 
      
         
          Owner ( 
          Editor ( 
          Access Context Manager Admin ( 
          Access Context Manager Editor ( 
          SLZ BQDW Blueprint Organization Level Remediator ( Service agent roles 
  |