Cloud Engineering

Cloud Engineering

Home
Archive
About

The Principle of Least Privilege - Serverless Expeditions

A video demo of how to assign manage permissions and security-best practices for service accounts on Cloud Run

JK Gunnink's avatar
JK Gunnink
May 28, 2024
Cross-posted by JK’s Blog
"Informational video on applying Least Privilege principles to serverless applications."
- JK Gunnink

There are two security settings for Cloud Run services: what can trigger the service and what the service can do when it runs. Developers often forget about the latter, which can lead to lost data and cost overruns.

I filmed this video with Martin showing how to tighten security by applying the Principle of Least Privilege to a Cloud Run service.

Enjoy!

P.S. If you don’t like videos, there’s a blog post I made last year covering pretty much exactly what this video was made from linked here.

No posts

© 2026 · Privacy ∙ Terms ∙ Collection notice
Start your SubstackGet the app
Substack is the home for great culture