BigQuery IAM 역할 및 권한

이 문서에서는 BigQuery의 Identity and Access Management (IAM) 사전 정의된 역할 및 권한 목록을 제공합니다. 이 페이지에는 다음에 대한 역할과 권한이 나와 있습니다.

  • BigQuery: 데이터 세트, 테이블, 뷰, 루틴과 같은 BigQuery 리소스에 적용되는 역할 및 권한입니다. 이러한 역할과 권한의 대부분은 프로젝트, 폴더, 조직과 같은 Resource Manager 리소스에 부여할 수도 있습니다.
  • BigQuery Connection API: 서비스 에이전트에 Cloud SQL 연결에 대한 액세스 권한을 부여하는 역할입니다.
  • BigQuery 연속 쿼리: 서비스 계정에 연속 쿼리에 대한 액세스 권한을 부여하는 역할입니다.
  • BigQuery 데이터 정책: BigQuery의 데이터 정책에 적용되는 역할 및 권한입니다.
  • BigQuery Data Transfer Service: 서비스 에이전트에게 데이터를 전송하는 작업을 만들 수 있는 액세스 권한을 부여하는 역할입니다.
  • Apache Flink용 BigQuery 엔진: Apache Flink용 BigQuery 엔진 리소스에 적용되는 역할 및 권한입니다.
  • BigQuery Migration Service API: BigQuery Migration Service 리소스에 적용되는 역할 및 권한입니다.
  • BigQuery Omni: 서비스 에이전트에 테이블에 대한 액세스 권한을 부여하는 역할입니다.
  • BigQuery 공유: BigQuery 공유 리소스에 적용되는 역할 및 권한입니다.

BigQuery 사전 정의된 IAM 역할

다음 표에는 사전 정의된 BigQuery IAM 역할과 각 역할에 포함된 모든 권한 목록이 나와 있습니다. 각 권한은 특정 리소스 유형에 적용할 수 있습니다.

BigQuery 역할

이 표에는 BigQuery의 IAM 역할과 권한이 나와 있습니다. 모든 역할과 권한을 검색하려면 역할 및 권한 색인을 참고하세요.

Role Permissions

(roles/bigquery.admin)

Provides permissions to manage all resources within the project. Can manage all data within the project, and can cancel jobs from other users running within the project.

Lowest-level resources where you can grant this role:

  • Dataset
  • These resources within a dataset:
    • Table
    • View
    • Routine
  • Connection
  • Saved query
  • Data canvas
  • Pipeline
  • Data preparation
  • Repository

This role can also be granted on Resource Manager resources (projects, folders, and organizations).

bigquery.bireservations.*

  • bigquery.bireservations.get
  • bigquery.bireservations.update

bigquery.capacityCommitments.*

  • bigquery.capacityCommitments.create
  • bigquery.capacityCommitments.delete
  • bigquery.capacityCommitments.get
  • bigquery.capacityCommitments.list
  • bigquery.capacityCommitments.update

bigquery.config.*

  • bigquery.config.get
  • bigquery.config.update

bigquery.connections.*

  • bigquery.connections.create
  • bigquery.connections.delegate
  • bigquery.connections.delete
  • bigquery.connections.get
  • bigquery.connections.getIamPolicy
  • bigquery.connections.list
  • bigquery.connections.setIamPolicy
  • bigquery.connections.update
  • bigquery.connections.updateTag
  • bigquery.connections.use

bigquery.dataPolicies.create

bigquery.dataPolicies.delete

bigquery.dataPolicies.get

bigquery.dataPolicies.getIamPolicy

bigquery.dataPolicies.list

bigquery.dataPolicies.setIamPolicy

bigquery.dataPolicies.update

bigquery.datasets.*

  • bigquery.datasets.create
  • bigquery.datasets.createTagBinding
  • bigquery.datasets.delete
  • bigquery.datasets.deleteTagBinding
  • bigquery.datasets.get
  • bigquery.datasets.getIamPolicy
  • bigquery.datasets.link
  • bigquery.datasets.listEffectiveTags
  • bigquery.datasets.listSharedDatasetUsage
  • bigquery.datasets.listTagBindings
  • bigquery.datasets.setIamPolicy
  • bigquery.datasets.update
  • bigquery.datasets.updateTag

bigquery.jobs.*

  • bigquery.jobs.create
  • bigquery.jobs.delete
  • bigquery.jobs.get
  • bigquery.jobs.list
  • bigquery.jobs.listAll
  • bigquery.jobs.listExecutionMetadata
  • bigquery.jobs.update

bigquery.models.*

  • bigquery.models.create
  • bigquery.models.delete
  • bigquery.models.export
  • bigquery.models.getData
  • bigquery.models.getMetadata
  • bigquery.models.list
  • bigquery.models.updateData
  • bigquery.models.updateMetadata
  • bigquery.models.updateTag

bigquery.objectRefs.*

  • bigquery.objectRefs.read
  • bigquery.objectRefs.write

bigquery.readsessions.*

  • bigquery.readsessions.create
  • bigquery.readsessions.getData
  • bigquery.readsessions.update

bigquery.reservationAssignments.*

  • bigquery.reservationAssignments.create
  • bigquery.reservationAssignments.delete
  • bigquery.reservationAssignments.list
  • bigquery.reservationAssignments.search

bigquery.reservations.*

  • bigquery.reservations.create
  • bigquery.reservations.delete
  • bigquery.reservations.get
  • bigquery.reservations.list
  • bigquery.reservations.listFailoverDatasets
  • bigquery.reservations.update
  • bigquery.reservations.use

bigquery.routines.*

  • bigquery.routines.create
  • bigquery.routines.delete
  • bigquery.routines.get
  • bigquery.routines.list
  • bigquery.routines.update
  • bigquery.routines.updateTag

bigquery.rowAccessPolicies.create

bigquery.rowAccessPolicies.delete

bigquery.rowAccessPolicies.get

bigquery.rowAccessPolicies.getIamPolicy

bigquery.rowAccessPolicies.list

bigquery.rowAccessPolicies.overrideTimeTravelRestrictions

bigquery.rowAccessPolicies.setIamPolicy

bigquery.rowAccessPolicies.update

bigquery.savedqueries.*

  • bigquery.savedqueries.create
  • bigquery.savedqueries.delete
  • bigquery.savedqueries.get
  • bigquery.savedqueries.list
  • bigquery.savedqueries.update

bigquery.tables.*

  • bigquery.tables.create
  • bigquery.tables.createIndex
  • bigquery.tables.createSnapshot
  • bigquery.tables.createTagBinding
  • bigquery.tables.delete
  • bigquery.tables.deleteIndex
  • bigquery.tables.deleteSnapshot
  • bigquery.tables.deleteTagBinding
  • bigquery.tables.export
  • bigquery.tables.get
  • bigquery.tables.getData
  • bigquery.tables.getIamPolicy
  • bigquery.tables.list
  • bigquery.tables.listEffectiveTags
  • bigquery.tables.listTagBindings
  • bigquery.tables.replicateData
  • bigquery.tables.restoreSnapshot
  • bigquery.tables.setCategory
  • bigquery.tables.setColumnDataPolicy
  • bigquery.tables.setIamPolicy
  • bigquery.tables.update
  • bigquery.tables.updateData
  • bigquery.tables.updateIndex
  • bigquery.tables.updateTag

bigquery.transfers.*

  • bigquery.transfers.get
  • bigquery.transfers.update

bigquerymigration.translation.translate

cloudkms.keyHandles.*

  • cloudkms.keyHandles.create
  • cloudkms.keyHandles.get
  • cloudkms.keyHandles.list

cloudkms.operations.get

cloudkms.projects.showEffectiveAutokeyConfig

dataform.*

  • dataform.commentThreads.create
  • dataform.commentThreads.delete
  • dataform.commentThreads.get
  • dataform.commentThreads.list
  • dataform.commentThreads.update
  • dataform.comments.create
  • dataform.comments.delete
  • dataform.comments.get
  • dataform.comments.list
  • dataform.comments.update
  • dataform.compilationResults.create
  • dataform.compilationResults.get
  • dataform.compilationResults.list
  • dataform.compilationResults.query
  • dataform.config.get
  • dataform.config.update
  • dataform.locations.get
  • dataform.locations.list
  • dataform.releaseConfigs.create
  • dataform.releaseConfigs.delete
  • dataform.releaseConfigs.get
  • dataform.releaseConfigs.list
  • dataform.releaseConfigs.update
  • dataform.repositories.commit
  • dataform.repositories.computeAccessTokenStatus
  • dataform.repositories.create
  • dataform.repositories.delete
  • dataform.repositories.fetchHistory
  • dataform.repositories.fetchRemoteBranches
  • dataform.repositories.get
  • dataform.repositories.getIamPolicy
  • dataform.repositories.list
  • dataform.repositories.queryDirectoryContents
  • dataform.repositories.readFile
  • dataform.repositories.setIamPolicy
  • dataform.repositories.update
  • dataform.workflowConfigs.create
  • dataform.workflowConfigs.delete
  • dataform.workflowConfigs.get
  • dataform.workflowConfigs.list
  • dataform.workflowConfigs.update
  • dataform.workflowInvocations.cancel
  • dataform.workflowInvocations.create
  • dataform.workflowInvocations.delete
  • dataform.workflowInvocations.get
  • dataform.workflowInvocations.list
  • dataform.workflowInvocations.query
  • dataform.workspaces.commit
  • dataform.workspaces.create
  • dataform.workspaces.delete
  • dataform.workspaces.fetchFileDiff
  • dataform.workspaces.fetchFileGitStatuses
  • dataform.workspaces.fetchGitAheadBehind
  • dataform.workspaces.get
  • dataform.workspaces.getIamPolicy
  • dataform.workspaces.installNpmPackages
  • dataform.workspaces.list
  • dataform.workspaces.makeDirectory
  • dataform.workspaces.moveDirectory
  • dataform.workspaces.moveFile
  • dataform.workspaces.pull
  • dataform.workspaces.push
  • dataform.workspaces.queryDirectoryContents
  • dataform.workspaces.readFile
  • dataform.workspaces.removeDirectory
  • dataform.workspaces.removeFile
  • dataform.workspaces.reset
  • dataform.workspaces.searchFiles
  • dataform.workspaces.setIamPolicy
  • dataform.workspaces.writeFile

dataplex.datascans.*

  • dataplex.datascans.create
  • dataplex.datascans.delete
  • dataplex.datascans.get
  • dataplex.datascans.getData
  • dataplex.datascans.getIamPolicy
  • dataplex.datascans.list
  • dataplex.datascans.run
  • dataplex.datascans.setIamPolicy
  • dataplex.datascans.update

dataplex.operations.get

dataplex.operations.list

dataplex.projects.search

resourcemanager.projects.get

resourcemanager.projects.list

(roles/bigquery.connectionAdmin)

Lowest-level resources where you can grant this role:

  • Connection

This role can also be granted on Resource Manager resources (projects, folders, and organizations).

bigquery.connections.*

  • bigquery.connections.create
  • bigquery.connections.delegate
  • bigquery.connections.delete
  • bigquery.connections.get
  • bigquery.connections.getIamPolicy
  • bigquery.connections.list
  • bigquery.connections.setIamPolicy
  • bigquery.connections.update
  • bigquery.connections.updateTag
  • bigquery.connections.use

(roles/bigquery.connectionUser)

Lowest-level resources where you can grant this role:

  • Connection

This role can also be granted on Resource Manager resources (projects, folders, and organizations).

bigquery.connections.get

bigquery.connections.getIamPolicy

bigquery.connections.list

bigquery.connections.use

(roles/bigquery.dataEditor)

When granted on a table or view, this role provides permissions to:

  • Read and update data and metadata for the table or view.
  • Delete the table or view.

This role cannot be granted to individual models.

When granted on a dataset, this role provides permissions to:

  • Read the dataset's metadata and list tables in the dataset.
  • Create, update, get, and delete the dataset's tables.

The BigQuery Data Editor role is mapped to the WRITER BigQuery basic role. When you grant the BigQuery Data Editor role to a principal at the dataset level, the principal is granted WRITER access to the dataset.

When applied at the project or organization level, this role also lets users create new datasets.

Lowest-level resources where you can grant this role:

  • Dataset
  • These resources within a dataset:
    • Table
    • View
    • Routine

This role can also be granted on Resource Manager resources (projects, folders, and organizations).

bigquery.config.get

bigquery.datasets.create

bigquery.datasets.get

bigquery.datasets.getIamPolicy

bigquery.datasets.updateTag

bigquery.models.*

  • bigquery.models.create
  • bigquery.models.delete
  • bigquery.models.export
  • bigquery.models.getData
  • bigquery.models.getMetadata
  • bigquery.models.list
  • bigquery.models.updateData
  • bigquery.models.updateMetadata
  • bigquery.models.updateTag

bigquery.routines.*

  • bigquery.routines.create
  • bigquery.routines.delete
  • bigquery.routines.get
  • bigquery.routines.list
  • bigquery.routines.update
  • bigquery.routines.updateTag

bigquery.tables.create

bigquery.tables.createIndex

bigquery.tables.createSnapshot

bigquery.tables.delete

bigquery.tables.deleteIndex

bigquery.tables.export

bigquery.tables.get

bigquery.tables.getData

bigquery.tables.getIamPolicy

bigquery.tables.list

bigquery.tables.replicateData

bigquery.tables.restoreSnapshot

bigquery.tables.update

bigquery.tables.updateData

bigquery.tables.updateIndex

bigquery.tables.updateTag

cloudkms.keyHandles.*

  • cloudkms.keyHandles.create
  • cloudkms.keyHandles.get
  • cloudkms.keyHandles.list

cloudkms.operations.get

cloudkms.projects.showEffectiveAutokeyConfig

dataplex.datascans.create

dataplex.datascans.delete

dataplex.datascans.get

dataplex.datascans.getData

dataplex.datascans.getIamPolicy

dataplex.datascans.list

dataplex.datascans.run

dataplex.datascans.update

dataplex.operations.get

dataplex.operations.list

resourcemanager.projects.get

resourcemanager.projects.list

(roles/bigquery.dataOwner)

When granted on a table or view, this role provides permissions to:

  • Read and update data and metadata for the table or view.
  • Share the table or view.
  • Delete the table or view.

This role cannot be granted to individual models.

When granted on a dataset, this role provides permissions to:

  • Read, update, and delete the dataset.
  • Create, update, get, and delete the dataset's tables.

The BigQuery Data Owner role is mapped to the OWNER BigQuery basic role. When you grant the BigQuery Data Owner role to a principal at the dataset level, the principal is granted OWNER access to the dataset.

When applied at the project or organization level, this role can also create new datasets.

Lowest-level resources where you can grant this role:

  • Dataset
  • These resources within a dataset:
    • Table
    • View
    • Routine

This role can also be granted on Resource Manager resources (projects, folders, and organizations).

bigquery.config.get

bigquery.dataPolicies.create

bigquery.dataPolicies.delete

bigquery.dataPolicies.get

bigquery.dataPolicies.getIamPolicy

bigquery.dataPolicies.list

bigquery.dataPolicies.setIamPolicy

bigquery.dataPolicies.update

bigquery.datasets.*

  • bigquery.datasets.create
  • bigquery.datasets.createTagBinding
  • bigquery.datasets.delete
  • bigquery.datasets.deleteTagBinding
  • bigquery.datasets.get
  • bigquery.datasets.getIamPolicy
  • bigquery.datasets.link
  • bigquery.datasets.listEffectiveTags
  • bigquery.datasets.listSharedDatasetUsage
  • bigquery.datasets.listTagBindings
  • bigquery.datasets.setIamPolicy
  • bigquery.datasets.update
  • bigquery.datasets.updateTag

bigquery.models.*

  • bigquery.models.create
  • bigquery.models.delete
  • bigquery.models.export
  • bigquery.models.getData
  • bigquery.models.getMetadata
  • bigquery.models.list
  • bigquery.models.updateData
  • bigquery.models.updateMetadata
  • bigquery.models.updateTag

bigquery.routines.*

  • bigquery.routines.create
  • bigquery.routines.delete
  • bigquery.routines.get
  • bigquery.routines.list
  • bigquery.routines.update
  • bigquery.routines.updateTag

bigquery.rowAccessPolicies.create

bigquery.rowAccessPolicies.delete

bigquery.rowAccessPolicies.get

bigquery.rowAccessPolicies.getIamPolicy

bigquery.rowAccessPolicies.list

bigquery.rowAccessPolicies.setIamPolicy

bigquery.rowAccessPolicies.update

bigquery.tables.*

  • bigquery.tables.create
  • bigquery.tables.createIndex
  • bigquery.tables.createSnapshot
  • bigquery.tables.createTagBinding
  • bigquery.tables.delete
  • bigquery.tables.deleteIndex
  • bigquery.tables.deleteSnapshot
  • bigquery.tables.deleteTagBinding
  • bigquery.tables.export
  • bigquery.tables.get
  • bigquery.tables.getData
  • bigquery.tables.getIamPolicy
  • bigquery.tables.list
  • bigquery.tables.listEffectiveTags
  • bigquery.tables.listTagBindings
  • bigquery.tables.replicateData
  • bigquery.tables.restoreSnapshot
  • bigquery.tables.setCategory
  • bigquery.tables.setColumnDataPolicy
  • bigquery.tables.setIamPolicy
  • bigquery.tables.update
  • bigquery.tables.updateData
  • bigquery.tables.updateIndex
  • bigquery.tables.updateTag

cloudkms.keyHandles.*

  • cloudkms.keyHandles.create
  • cloudkms.keyHandles.get
  • cloudkms.keyHandles.list

cloudkms.operations.get

cloudkms.projects.showEffectiveAutokeyConfig

dataplex.datascans.*

  • dataplex.datascans.create
  • dataplex.datascans.delete
  • dataplex.datascans.get
  • dataplex.datascans.getData
  • dataplex.datascans.getIamPolicy
  • dataplex.datascans.list
  • dataplex.datascans.run
  • dataplex.datascans.setIamPolicy
  • dataplex.datascans.update

dataplex.operations.get

dataplex.operations.list

resourcemanager.projects.get

resourcemanager.projects.list

(roles/bigquery.dataViewer)

When granted on a table or view, this role provides permissions to:

  • Read data and metadata from the table or view.

This role cannot be granted to individual models.

When granted on a dataset, this role provides permissions to list all of the resources in the dataset (such as tables, views, snapshots, models, and routines) and to read their data and metadata with applicable APIs and in queries.

The BigQuery Data Viewer role is mapped to the READER BigQuery basic role. When you grant the BigQuery Data Viewer role to a principal at the dataset level, the principal is granted READER access to the dataset.

When applied at the project or organization level, this role can also enumerate all datasets in the project. Additional roles, however, are necessary to allow the running of jobs.

Lowest-level resources where you can grant this role:

  • Dataset
  • These resources within a dataset:
    • Table
    • View
    • Routine

This role can also be granted on Resource Manager resources (projects, folders, and organizations).

bigquery.datasets.get

bigquery.datasets.getIamPolicy

bigquery.models.export

bigquery.models.getData

bigquery.models.getMetadata

bigquery.models.list

bigquery.routines.get

bigquery.routines.list

bigquery.tables.createSnapshot

bigquery.tables.export

bigquery.tables.get

bigquery.tables.getData

bigquery.tables.getIamPolicy

bigquery.tables.list

bigquery.tables.replicateData

dataplex.datascans.get

dataplex.datascans.getData

dataplex.datascans.getIamPolicy

dataplex.datascans.list

resourcemanager.projects.get

resourcemanager.projects.list

(roles/bigquery.filteredDataViewer)

Access to view filtered table data defined by a row access policy. bigquery.filteredDataViewer is a system-managed role. Grant the role by using row-level access policies. Don't apply the role directly to a resource through Identity and Access Management (IAM).

bigquery.rowAccessPolicies.getFilteredData

(roles/bigquery.jobUser)

Provides permissions to run jobs, including queries, within the project.

This role can only be granted on Resource Manager resources (projects, folders, and organizations).

bigquery.config.get

bigquery.jobs.create

dataform.locations.*

  • dataform.locations.get
  • dataform.locations.list

dataform.repositories.create

dataform.repositories.list

resourcemanager.projects.get

resourcemanager.projects.list

(roles/bigquery.metadataViewer)

When granted on a table or view, this role provides permissions to:

  • Read metadata from the table or view.

This role cannot be granted to individual models.

When granted on a dataset, this role provides permissions to:

  • List tables and views in the dataset.
  • Read metadata from the dataset's tables and views.

When applied at the project or organization level, this role provides permissions to:

  • List all datasets and read metadata for all datasets in the project.
  • List all tables and views and read metadata for all tables and views in the project.

Additional roles are necessary to allow the running of jobs.

Lowest-level resources where you can grant this role:

  • Dataset
  • These resources within a dataset:
    • Table
    • View
    • Routine

This role can also be granted on Resource Manager resources (projects, folders, and organizations).

bigquery.datasets.get

bigquery.datasets.getIamPolicy

bigquery.models.getMetadata

bigquery.models.list

bigquery.routines.get

bigquery.routines.list

bigquery.tables.get

bigquery.tables.getIamPolicy

bigquery.tables.list

dataplex.projects.search

resourcemanager.projects.get

resourcemanager.projects.list

(roles/bigquery.objectRefAdmin)

Administer ObjectRef resources that includes read and write permissions

Lowest-level resources where you can grant this role:

  • Connection

This role can also be granted on Resource Manager resources (projects, folders, and organizations).

bigquery.objectRefs.*

  • bigquery.objectRefs.read
  • bigquery.objectRefs.write

(roles/bigquery.objectRefReader)

Role for reading referenced objects via ObjectRefs in BigQuery

Lowest-level resources where you can grant this role:

  • Connection

This role can also be granted on Resource Manager resources (projects, folders, and organizations).

bigquery.objectRefs.read

(roles/bigquery.readSessionUser)

Provides the ability to create and use read sessions.

This role can only be granted on Resource Manager resources (projects, folders, and organizations).

bigquery.readsessions.*

  • bigquery.readsessions.create
  • bigquery.readsessions.getData
  • bigquery.readsessions.update

resourcemanager.projects.get

resourcemanager.projects.list

(roles/bigquery.resourceAdmin)

Administers BigQuery workloads, including slot assignments, commitments, and reservations.

This role can only be granted on Resource Manager resources (projects, folders, and organizations).

bigquery.bireservations.*

  • bigquery.bireservations.get
  • bigquery.bireservations.update

bigquery.capacityCommitments.*

  • bigquery.capacityCommitments.create
  • bigquery.capacityCommitments.delete
  • bigquery.capacityCommitments.get
  • bigquery.capacityCommitments.list
  • bigquery.capacityCommitments.update

bigquery.jobs.get

bigquery.jobs.list

bigquery.jobs.listAll

bigquery.jobs.listExecutionMetadata

bigquery.reservationAssignments.*

  • bigquery.reservationAssignments.create
  • bigquery.reservationAssignments.delete
  • bigquery.reservationAssignments.list
  • bigquery.reservationAssignments.search

bigquery.reservations.*

  • bigquery.reservations.create
  • bigquery.reservations.delete
  • bigquery.reservations.get
  • bigquery.reservations.list
  • bigquery.reservations.listFailoverDatasets
  • bigquery.reservations.update
  • bigquery.reservations.use

recommender.bigqueryCapacityCommitmentsInsights.*

  • recommender.bigqueryCapacityCommitmentsInsights.get
  • recommender.bigqueryCapacityCommitmentsInsights.list
  • recommender.bigqueryCapacityCommitmentsInsights.update

recommender.bigqueryCapacityCommitmentsRecommendations.*

  • recommender.bigqueryCapacityCommitmentsRecommendations.get
  • recommender.bigqueryCapacityCommitmentsRecommendations.list
  • recommender.bigqueryCapacityCommitmentsRecommendations.update

resourcemanager.projects.get

resourcemanager.projects.list

(roles/bigquery.resourceEditor)

Manages BigQuery workloads, but is unable to create or modify slot commitments.

This role can only be granted on Resource Manager resources (projects, folders, and organizations).

bigquery.bireservations.get

bigquery.capacityCommitments.get

bigquery.capacityCommitments.list

bigquery.jobs.get

bigquery.jobs.list

bigquery.jobs.listAll

bigquery.jobs.listExecutionMetadata

bigquery.reservationAssignments.*

  • bigquery.reservationAssignments.create
  • bigquery.reservationAssignments.delete
  • bigquery.reservationAssignments.list
  • bigquery.reservationAssignments.search

bigquery.reservations.*

  • bigquery.reservations.create
  • bigquery.reservations.delete
  • bigquery.reservations.get
  • bigquery.reservations.list
  • bigquery.reservations.listFailoverDatasets
  • bigquery.reservations.update
  • bigquery.reservations.use

resourcemanager.projects.get

resourcemanager.projects.list

(roles/bigquery.resourceViewer)

Can view BigQuery workloads, but cannot create or modify slot reservations or commitments.

This role can only be granted on Resource Manager resources (projects, folders, and organizations).

bigquery.bireservations.get

bigquery.capacityCommitments.get

bigquery.capacityCommitments.list

bigquery.jobs.get

bigquery.jobs.list

bigquery.jobs.listAll

bigquery.jobs.listExecutionMetadata

bigquery.reservationAssignments.list

bigquery.reservationAssignments.search

bigquery.reservations.get

bigquery.reservations.list

bigquery.reservations.listFailoverDatasets

resourcemanager.projects.get

resourcemanager.projects.list

(roles/bigquery.studioAdmin)

Combination role of BigQuery Admin, Dataform Admin, Notebook Runtime Admin and Dataproc Serverless Editor.

Lowest-level resources where you can grant this role:

  • Dataset
  • These resources within a dataset:
    • Table
    • View
    • Routine
  • Connection
  • Saved query
  • Data canvas
  • Data preparation
  • Pipeline
  • Repository

This role can also be granted on Resource Manager resources (projects, folders, and organizations).

aiplatform.notebookRuntimeTemplates.*

  • aiplatform.notebookRuntimeTemplates.apply
  • aiplatform.notebookRuntimeTemplates.create
  • aiplatform.notebookRuntimeTemplates.delete
  • aiplatform.notebookRuntimeTemplates.get
  • aiplatform.notebookRuntimeTemplates.getIamPolicy
  • aiplatform.notebookRuntimeTemplates.list
  • aiplatform.notebookRuntimeTemplates.setIamPolicy
  • aiplatform.notebookRuntimeTemplates.update

aiplatform.notebookRuntimes.*

  • aiplatform.notebookRuntimes.assign
  • aiplatform.notebookRuntimes.delete
  • aiplatform.notebookRuntimes.get
  • aiplatform.notebookRuntimes.list
  • aiplatform.notebookRuntimes.start
  • aiplatform.notebookRuntimes.update
  • aiplatform.notebookRuntimes.upgrade

aiplatform.operations.list

bigquery.bireservations.*

  • bigquery.bireservations.get
  • bigquery.bireservations.update

bigquery.capacityCommitments.*

  • bigquery.capacityCommitments.create
  • bigquery.capacityCommitments.delete
  • bigquery.capacityCommitments.get
  • bigquery.capacityCommitments.list
  • bigquery.capacityCommitments.update

bigquery.config.*

  • bigquery.config.get
  • bigquery.config.update

bigquery.connections.*

  • bigquery.connections.create
  • bigquery.connections.delegate
  • bigquery.connections.delete
  • bigquery.connections.get
  • bigquery.connections.getIamPolicy
  • bigquery.connections.list
  • bigquery.connections.setIamPolicy
  • bigquery.connections.update
  • bigquery.connections.updateTag
  • bigquery.connections.use

bigquery.dataPolicies.create

bigquery.dataPolicies.delete

bigquery.dataPolicies.get

bigquery.dataPolicies.getIamPolicy

bigquery.dataPolicies.list

bigquery.dataPolicies.setIamPolicy

bigquery.dataPolicies.update

bigquery.datasets.*

  • bigquery.datasets.create
  • bigquery.datasets.createTagBinding
  • bigquery.datasets.delete
  • bigquery.datasets.deleteTagBinding
  • bigquery.datasets.get
  • bigquery.datasets.getIamPolicy
  • bigquery.datasets.link
  • bigquery.datasets.listEffectiveTags
  • bigquery.datasets.listSharedDatasetUsage
  • bigquery.datasets.listTagBindings
  • bigquery.datasets.setIamPolicy
  • bigquery.datasets.update
  • bigquery.datasets.updateTag

bigquery.jobs.*

  • bigquery.jobs.create
  • bigquery.jobs.delete
  • bigquery.jobs.get
  • bigquery.jobs.list
  • bigquery.jobs.listAll
  • bigquery.jobs.listExecutionMetadata
  • bigquery.jobs.update

bigquery.models.*

  • bigquery.models.create
  • bigquery.models.delete
  • bigquery.models.export
  • bigquery.models.getData
  • bigquery.models.getMetadata
  • bigquery.models.list
  • bigquery.models.updateData
  • bigquery.models.updateMetadata
  • bigquery.models.updateTag

bigquery.objectRefs.*

  • bigquery.objectRefs.read
  • bigquery.objectRefs.write

bigquery.readsessions.*

  • bigquery.readsessions.create
  • bigquery.readsessions.getData
  • bigquery.readsessions.update

bigquery.reservationAssignments.*

  • bigquery.reservationAssignments.create
  • bigquery.reservationAssignments.delete
  • bigquery.reservationAssignments.list
  • bigquery.reservationAssignments.search

bigquery.reservations.*

  • bigquery.reservations.create
  • bigquery.reservations.delete
  • bigquery.reservations.get
  • bigquery.reservations.list
  • bigquery.reservations.listFailoverDatasets
  • bigquery.reservations.update
  • bigquery.reservations.use

bigquery.routines.*

  • bigquery.routines.create
  • bigquery.routines.delete
  • bigquery.routines.get
  • bigquery.routines.list
  • bigquery.routines.update
  • bigquery.routines.updateTag

bigquery.rowAccessPolicies.create

bigquery.rowAccessPolicies.delete

bigquery.rowAccessPolicies.get

bigquery.rowAccessPolicies.getIamPolicy

bigquery.rowAccessPolicies.list

bigquery.rowAccessPolicies.overrideTimeTravelRestrictions

bigquery.rowAccessPolicies.setIamPolicy

bigquery.rowAccessPolicies.update

bigquery.savedqueries.*

  • bigquery.savedqueries.create
  • bigquery.savedqueries.delete
  • bigquery.savedqueries.get
  • bigquery.savedqueries.list
  • bigquery.savedqueries.update

bigquery.tables.*

  • bigquery.tables.create
  • bigquery.tables.createIndex
  • bigquery.tables.createSnapshot
  • bigquery.tables.createTagBinding
  • bigquery.tables.delete
  • bigquery.tables.deleteIndex
  • bigquery.tables.deleteSnapshot
  • bigquery.tables.deleteTagBinding
  • bigquery.tables.export
  • bigquery.tables.get
  • bigquery.tables.getData
  • bigquery.tables.getIamPolicy
  • bigquery.tables.list
  • bigquery.tables.listEffectiveTags
  • bigquery.tables.listTagBindings
  • bigquery.tables.replicateData
  • bigquery.tables.restoreSnapshot
  • bigquery.tables.setCategory
  • bigquery.tables.setColumnDataPolicy
  • bigquery.tables.setIamPolicy
  • bigquery.tables.update
  • bigquery.tables.updateData
  • bigquery.tables.updateIndex
  • bigquery.tables.updateTag

bigquery.transfers.*

  • bigquery.transfers.get
  • bigquery.transfers.update

bigquerymigration.translation.translate

cloudaicompanion.codeToolsSettings.*

  • cloudaicompanion.codeToolsSettings.create
  • cloudaicompanion.codeToolsSettings.delete
  • cloudaicompanion.codeToolsSettings.get
  • cloudaicompanion.codeToolsSettings.list
  • cloudaicompanion.codeToolsSettings.update

cloudaicompanion.companions.*

  • cloudaicompanion.companions.generateChat
  • cloudaicompanion.companions.generateCode

cloudaicompanion.dataSharingWithGoogleSettings.*

  • cloudaicompanion.dataSharingWithGoogleSettings.create
  • cloudaicompanion.dataSharingWithGoogleSettings.delete
  • cloudaicompanion.dataSharingWithGoogleSettings.get
  • cloudaicompanion.dataSharingWithGoogleSettings.list
  • cloudaicompanion.dataSharingWithGoogleSettings.update

cloudaicompanion.entitlements.get

cloudaicompanion.geminiGcpEnablementSettings.*

  • cloudaicompanion.geminiGcpEnablementSettings.create
  • cloudaicompanion.geminiGcpEnablementSettings.delete
  • cloudaicompanion.geminiGcpEnablementSettings.get
  • cloudaicompanion.geminiGcpEnablementSettings.list
  • cloudaicompanion.geminiGcpEnablementSettings.update

cloudaicompanion.instances.*

  • cloudaicompanion.instances.completeCode
  • cloudaicompanion.instances.completeTask
  • cloudaicompanion.instances.exportMetrics
  • cloudaicompanion.instances.generateCode
  • cloudaicompanion.instances.generateText
  • cloudaicompanion.instances.queryEffectiveSetting
  • cloudaicompanion.instances.queryEffectiveSettingBindings

cloudaicompanion.licenses.selfAssign

cloudaicompanion.loggingSettings.*

  • cloudaicompanion.loggingSettings.create
  • cloudaicompanion.loggingSettings.delete
  • cloudaicompanion.loggingSettings.get
  • cloudaicompanion.loggingSettings.list
  • cloudaicompanion.loggingSettings.update

cloudaicompanion.operations.get

cloudaicompanion.releaseChannelSettings.*

  • cloudaicompanion.releaseChannelSettings.create
  • cloudaicompanion.releaseChannelSettings.delete
  • cloudaicompanion.releaseChannelSettings.get
  • cloudaicompanion.releaseChannelSettings.list
  • cloudaicompanion.releaseChannelSettings.update

cloudaicompanion.settingBindings.*

  • cloudaicompanion.settingBindings.codeToolsSettingsCreate
  • cloudaicompanion.settingBindings.codeToolsSettingsDelete
  • cloudaicompanion.settingBindings.codeToolsSettingsGet
  • cloudaicompanion.settingBindings.codeToolsSettingsList
  • cloudaicompanion.settingBindings.codeToolsSettingsUpdate
  • cloudaicompanion.settingBindings.codeToolsSettingsUse
  • cloudaicompanion.settingBindings.dataSharingWithGoogleSettingsCreate
  • cloudaicompanion.settingBindings.dataSharingWithGoogleSettingsDelete
  • cloudaicompanion.settingBindings.dataSharingWithGoogleSettingsGet
  • cloudaicompanion.settingBindings.dataSharingWithGoogleSettingsList
  • cloudaicompanion.settingBindings.dataSharingWithGoogleSettingsUpdate
  • cloudaicompanion.settingBindings.dataSharingWithGoogleSettingsUse
  • cloudaicompanion.settingBindings.geminiGcpEnablementSettingsCreate
  • cloudaicompanion.settingBindings.geminiGcpEnablementSettingsDelete
  • cloudaicompanion.settingBindings.geminiGcpEnablementSettingsGet
  • cloudaicompanion.settingBindings.geminiGcpEnablementSettingsList
  • cloudaicompanion.settingBindings.geminiGcpEnablementSettingsUpdate
  • cloudaicompanion.settingBindings.geminiGcpEnablementSettingsUse
  • cloudaicompanion.settingBindings.loggingSettingsCreate
  • cloudaicompanion.settingBindings.loggingSettingsDelete
  • cloudaicompanion.settingBindings.loggingSettingsGet
  • cloudaicompanion.settingBindings.loggingSettingsList
  • cloudaicompanion.settingBindings.loggingSettingsUpdate
  • cloudaicompanion.settingBindings.loggingSettingsUse
  • cloudaicompanion.settingBindings.releaseChannelSettingsCreate
  • cloudaicompanion.settingBindings.releaseChannelSettingsDelete
  • cloudaicompanion.settingBindings.releaseChannelSettingsGet
  • cloudaicompanion.settingBindings.releaseChannelSettingsList
  • cloudaicompanion.settingBindings.releaseChannelSettingsUpdate
  • cloudaicompanion.settingBindings.releaseChannelSettingsUse

cloudaicompanion.topics.create

cloudkms.keyHandles.*

  • cloudkms.keyHandles.create
  • cloudkms.keyHandles.get
  • cloudkms.keyHandles.list

cloudkms.operations.get

cloudkms.projects.showEffectiveAutokeyConfig

compute.projects.get

compute.regions.*

  • compute.regions.get
  • compute.regions.list

compute.reservations.get

compute.reservations.list

compute.zones.*

  • compute.zones.get
  • compute.zones.list

dataform.*

  • dataform.commentThreads.create
  • dataform.commentThreads.delete
  • dataform.commentThreads.get
  • dataform.commentThreads.list
  • dataform.commentThreads.update
  • dataform.comments.create
  • dataform.comments.delete
  • dataform.comments.get
  • dataform.comments.list
  • dataform.comments.update
  • dataform.compilationResults.create
  • dataform.compilationResults.get
  • dataform.compilationResults.list
  • dataform.compilationResults.query
  • dataform.config.get
  • dataform.config.update
  • dataform.locations.get
  • dataform.locations.list
  • dataform.releaseConfigs.create
  • dataform.releaseConfigs.delete
  • dataform.releaseConfigs.get
  • dataform.releaseConfigs.list
  • dataform.releaseConfigs.update
  • dataform.repositories.commit
  • dataform.repositories.computeAccessTokenStatus
  • dataform.repositories.create
  • dataform.repositories.delete
  • dataform.repositories.fetchHistory
  • dataform.repositories.fetchRemoteBranches
  • dataform.repositories.get
  • dataform.repositories.getIamPolicy
  • dataform.repositories.list
  • dataform.repositories.queryDirectoryContents
  • dataform.repositories.readFile
  • dataform.repositories.setIamPolicy
  • dataform.repositories.update
  • dataform.workflowConfigs.create
  • dataform.workflowConfigs.delete
  • dataform.workflowConfigs.get
  • dataform.workflowConfigs.list
  • dataform.workflowConfigs.update
  • dataform.workflowInvocations.cancel
  • dataform.workflowInvocations.create
  • dataform.workflowInvocations.delete
  • dataform.workflowInvocations.get
  • dataform.workflowInvocations.list
  • dataform.workflowInvocations.query
  • dataform.workspaces.commit
  • dataform.workspaces.create
  • dataform.workspaces.delete
  • dataform.workspaces.fetchFileDiff
  • dataform.workspaces.fetchFileGitStatuses
  • dataform.workspaces.fetchGitAheadBehind
  • dataform.workspaces.get
  • dataform.workspaces.getIamPolicy
  • dataform.workspaces.installNpmPackages
  • dataform.workspaces.list
  • dataform.workspaces.makeDirectory
  • dataform.workspaces.moveDirectory
  • dataform.workspaces.moveFile
  • dataform.workspaces.pull
  • dataform.workspaces.push
  • dataform.workspaces.queryDirectoryContents
  • dataform.workspaces.readFile
  • dataform.workspaces.removeDirectory
  • dataform.workspaces.removeFile
  • dataform.workspaces.reset
  • dataform.workspaces.searchFiles
  • dataform.workspaces.setIamPolicy
  • dataform.workspaces.writeFile

dataplex.datascans.*

  • dataplex.datascans.create
  • dataplex.datascans.delete
  • dataplex.datascans.get
  • dataplex.datascans.getData
  • dataplex.datascans.getIamPolicy
  • dataplex.datascans.list
  • dataplex.datascans.run
  • dataplex.datascans.setIamPolicy
  • dataplex.datascans.update

dataplex.operations.get

dataplex.operations.list

dataplex.projects.search

dataproc.batches.*

  • dataproc.batches.analyze
  • dataproc.batches.cancel
  • dataproc.batches.create
  • dataproc.batches.delete
  • dataproc.batches.get
  • dataproc.batches.list
  • dataproc.batches.sparkApplicationRead
  • dataproc.batches.sparkApplicationWrite

dataproc.operations.cancel

dataproc.operations.delete

dataproc.operations.get

dataproc.operations.list

dataproc.sessionTemplates.*

  • dataproc.sessionTemplates.create
  • dataproc.sessionTemplates.delete
  • dataproc.sessionTemplates.get
  • dataproc.sessionTemplates.list
  • dataproc.sessionTemplates.update

dataproc.sessions.*

  • dataproc.sessions.create
  • dataproc.sessions.delete
  • dataproc.sessions.get
  • dataproc.sessions.list
  • dataproc.sessions.sparkApplicationRead
  • dataproc.sessions.sparkApplicationWrite
  • dataproc.sessions.terminate

dataprocrm.nodePools.*

  • dataprocrm.nodePools.create
  • dataprocrm.nodePools.delete
  • dataprocrm.nodePools.deleteNodes
  • dataprocrm.nodePools.get
  • dataprocrm.nodePools.list
  • dataprocrm.nodePools.resize

dataprocrm.nodes.get

dataprocrm.nodes.heartbeat

dataprocrm.nodes.list

dataprocrm.nodes.update

dataprocrm.operations.get

dataprocrm.operations.list

dataprocrm.workloads.*

  • dataprocrm.workloads.cancel
  • dataprocrm.workloads.create
  • dataprocrm.workloads.delete
  • dataprocrm.workloads.get
  • dataprocrm.workloads.list

resourcemanager.projects.get

resourcemanager.projects.list

(roles/bigquery.studioUser)

Combination role of BigQuery Job User, BigQuery Read Session User, Dataform Code Creator, Notebook Runtime User and Dataproc Serverless Editor.

Lowest-level resources where you can grant this role:

  • Saved query
  • Data canvas
  • Data preparation
  • Pipeline
  • Repository

This role can also be granted on Resource Manager resources (projects, folders, and organizations).

aiplatform.notebookRuntimeTemplates.apply

aiplatform.notebookRuntimeTemplates.get

aiplatform.notebookRuntimeTemplates.getIamPolicy

aiplatform.notebookRuntimeTemplates.list

aiplatform.notebookRuntimes.assign

aiplatform.notebookRuntimes.get

aiplatform.notebookRuntimes.list

aiplatform.operations.list

bigquery.config.get

bigquery.jobs.create

bigquery.readsessions.*

  • bigquery.readsessions.create
  • bigquery.readsessions.getData
  • bigquery.readsessions.update

cloudaicompanion.companions.*

  • cloudaicompanion.companions.generateChat
  • cloudaicompanion.companions.generateCode

cloudaicompanion.entitlements.get

cloudaicompanion.instances.*

  • cloudaicompanion.instances.completeCode
  • cloudaicompanion.instances.completeTask
  • cloudaicompanion.instances.exportMetrics
  • cloudaicompanion.instances.generateCode
  • cloudaicompanion.instances.generateText
  • cloudaicompanion.instances.queryEffectiveSetting
  • cloudaicompanion.instances.queryEffectiveSettingBindings

cloudaicompanion.licenses.selfAssign

cloudaicompanion.operations.get

cloudaicompanion.topics.create

compute.projects.get

compute.regions.*

  • compute.regions.get
  • compute.regions.list

compute.zones.*

  • compute.zones.get
  • compute.zones.list

dataform.commentThreads.get

dataform.commentThreads.list

dataform.comments.get

dataform.comments.list

dataform.locations.*

  • dataform.locations.get
  • dataform.locations.list

dataform.repositories.create

dataform.repositories.list

dataplex.projects.search

dataproc.batches.*

  • dataproc.batches.analyze
  • dataproc.batches.cancel
  • dataproc.batches.create
  • dataproc.batches.delete
  • dataproc.batches.get
  • dataproc.batches.list
  • dataproc.batches.sparkApplicationRead
  • dataproc.batches.sparkApplicationWrite

dataproc.operations.cancel

dataproc.operations.delete

dataproc.operations.get

dataproc.operations.list

dataproc.sessionTemplates.*

  • dataproc.sessionTemplates.create
  • dataproc.sessionTemplates.delete
  • dataproc.sessionTemplates.get
  • dataproc.sessionTemplates.list
  • dataproc.sessionTemplates.update

dataproc.sessions.*

  • dataproc.sessions.create
  • dataproc.sessions.delete
  • dataproc.sessions.get
  • dataproc.sessions.list
  • dataproc.sessions.sparkApplicationRead
  • dataproc.sessions.sparkApplicationWrite
  • dataproc.sessions.terminate

dataprocrm.nodePools.*

  • dataprocrm.nodePools.create
  • dataprocrm.nodePools.delete
  • dataprocrm.nodePools.deleteNodes
  • dataprocrm.nodePools.get
  • dataprocrm.nodePools.list
  • dataprocrm.nodePools.resize

dataprocrm.nodes.get

dataprocrm.nodes.heartbeat

dataprocrm.nodes.list

dataprocrm.nodes.update

dataprocrm.operations.get

dataprocrm.operations.list

dataprocrm.workloads.*

  • dataprocrm.workloads.cancel
  • dataprocrm.workloads.create
  • dataprocrm.workloads.delete
  • dataprocrm.workloads.get
  • dataprocrm.workloads.list

resourcemanager.projects.get

resourcemanager.projects.list

(roles/bigquery.user)

When granted on a dataset, this role provides the ability to read the dataset's metadata and list tables in the dataset.

When granted on a project, this role also provides the ability to run jobs, including queries, within the project. A principal with this role can enumerate their own jobs, cancel their own jobs, and enumerate datasets within a project. Additionally, allows the creation of new datasets within the project; the creator is granted the BigQuery Data Owner role (roles/bigquery.dataOwner) on these new datasets.

Lowest-level resources where you can grant this role:

  • Dataset
  • These resources within a dataset:
    • Routine

This role can also be granted on Resource Manager resources (projects, folders, and organizations).

bigquery.bireservations.get

bigquery.capacityCommitments.get

bigquery.capacityCommitments.list

bigquery.config.get

bigquery.datasets.create

bigquery.datasets.get

bigquery.datasets.getIamPolicy

bigquery.jobs.create

bigquery.jobs.list

bigquery.models.list

bigquery.readsessions.*

  • bigquery.readsessions.create
  • bigquery.readsessions.getData
  • bigquery.readsessions.update

bigquery.reservationAssignments.list

bigquery.reservationAssignments.search

bigquery.reservations.get

bigquery.reservations.list

bigquery.reservations.listFailoverDatasets

bigquery.reservations.use

bigquery.routines.list

bigquery.savedqueries.get

bigquery.savedqueries.list

bigquery.tables.list

bigquery.transfers.get

bigquerymigration.translation.translate

cloudkms.keyHandles.*

  • cloudkms.keyHandles.create
  • cloudkms.keyHandles.get
  • cloudkms.keyHandles.list

cloudkms.operations.get

cloudkms.projects.showEffectiveAutokeyConfig

dataform.locations.*

  • dataform.locations.get
  • dataform.locations.list

dataform.repositories.create

dataform.repositories.list

dataplex.projects.search

resourcemanager.projects.get

resourcemanager.projects.list

BigQuery Connection API 역할

이 표에는 BigQuery Connection API의 IAM 역할과 권한이 나와 있습니다. 모든 역할과 권한을 검색하려면 역할 및 권한 색인을 참고하세요.

Role Permissions

(roles/bigqueryconnection.serviceAgent)

Gives BigQuery Connection Service access to Cloud SQL instances in user projects.

cloudsql.instances.connect

cloudsql.instances.get

logging.logEntries.create

logging.logEntries.route

monitoring.metricDescriptors.create

monitoring.metricDescriptors.get

monitoring.metricDescriptors.list

monitoring.monitoredResourceDescriptors.*

  • monitoring.monitoredResourceDescriptors.get
  • monitoring.monitoredResourceDescriptors.list

monitoring.timeSeries.create

BigQuery 연속 쿼리 역할

이 표에는 BigQuery 연속 쿼리의 IAM 역할과 권한이 나와 있습니다. 모든 역할과 권한을 검색하려면 역할 및 권한 색인을 참고하세요.

Role Permissions

(roles/bigquerycontinuousquery.serviceAgent)

Gives BigQuery Continuous Query access to the service accounts in the user project.

iam.serviceAccounts.getAccessToken

BigQuery 데이터 정책 역할

이 표에는 BigQuery 데이터 정책의 IAM 역할과 권한이 나와 있습니다. 모든 역할과 권한을 검색하려면 역할 및 권한 색인을 참고하세요.

Role Permissions

(roles/bigquerydatapolicy.admin)

Role for managing Data Policies in BigQuery

This role can only be granted on Resource Manager resources (projects, folders, and organizations).

bigquery.dataPolicies.create

bigquery.dataPolicies.delete

bigquery.dataPolicies.get

bigquery.dataPolicies.getIamPolicy

bigquery.dataPolicies.list

bigquery.dataPolicies.setIamPolicy

bigquery.dataPolicies.update

(roles/bigquerydatapolicy.maskedReader)

Masked read access to sub-resources tagged by the policy tag associated with a data policy, for example, BigQuery columns

This role can only be granted on Resource Manager resources (projects, folders, and organizations).

bigquery.dataPolicies.maskedGet

(roles/bigquerydatapolicy.rawDataReader)

Raw read access to sub-resources associated with a data policy, for example, BigQuery columns

This role can only be granted on Resource Manager resources (projects, folders, and organizations).

bigquery.dataPolicies.getRawData

(roles/bigquerydatapolicy.viewer)

Role for viewing Data Policies in BigQuery

This role can only be granted on Resource Manager resources (projects, folders, and organizations).

bigquery.dataPolicies.get

bigquery.dataPolicies.list

BigQuery Data Transfer Service 역할

이 표에는 BigQuery Data Transfer Service의 IAM 역할과 권한이 나와 있습니다. 모든 역할과 권한을 검색하려면 역할 및 권한 색인을 참고하세요.

Role Permissions

(roles/bigquerydatatransfer.serviceAgent)

Gives BigQuery Data Transfer Service access to start BigQuery jobs in consumer project.

bigquery.config.get

bigquery.jobs.create

compute.networkAttachments.get

compute.networkAttachments.update

compute.regionOperations.get

compute.subnetworks.use

dataform.locations.*

  • dataform.locations.get
  • dataform.locations.list

dataform.repositories.create

dataform.repositories.list

iam.serviceAccounts.getAccessToken

logging.logEntries.create

logging.logEntries.route

resourcemanager.projects.get

resourcemanager.projects.list

serviceusage.services.use

이 표에는 Apache Flink용 BigQuery 엔진의 IAM 역할과 권한이 나와 있습니다. 모든 역할과 권한을 검색하려면 역할 및 권한 색인을 참고하세요.

Role Permissions

(roles/managedflink.admin)

Full access to Managed Flink resources.

managedflink.*

  • managedflink.deployments.create
  • managedflink.deployments.delete
  • managedflink.deployments.get
  • managedflink.deployments.list
  • managedflink.deployments.update
  • managedflink.jobs.create
  • managedflink.jobs.delete
  • managedflink.jobs.get
  • managedflink.jobs.list
  • managedflink.jobs.update
  • managedflink.locations.get
  • managedflink.locations.list
  • managedflink.operations.cancel
  • managedflink.operations.delete
  • managedflink.operations.get
  • managedflink.operations.list
  • managedflink.sessions.create
  • managedflink.sessions.delete
  • managedflink.sessions.get
  • managedflink.sessions.list
  • managedflink.sessions.update

resourcemanager.projects.get

resourcemanager.projects.list

(roles/managedflink.developer)

Full access to Managed Flink Jobs and Sessions and read access to Deployments.

managedflink.deployments.get

managedflink.deployments.list

managedflink.jobs.*

  • managedflink.jobs.create
  • managedflink.jobs.delete
  • managedflink.jobs.get
  • managedflink.jobs.list
  • managedflink.jobs.update

managedflink.locations.*

  • managedflink.locations.get
  • managedflink.locations.list

managedflink.operations.get

managedflink.operations.list

managedflink.sessions.*

  • managedflink.sessions.create
  • managedflink.sessions.delete
  • managedflink.sessions.get
  • managedflink.sessions.list
  • managedflink.sessions.update

resourcemanager.projects.get

resourcemanager.projects.list

(roles/managedflink.serviceAgent)

Gives Managed Flink Service Agent access to Cloud Platform resources.

compute.networkAttachments.create

compute.networkAttachments.delete

compute.networkAttachments.get

compute.networkAttachments.list

compute.networkAttachments.update

compute.networks.get

compute.networks.list

compute.regionOperations.get

compute.subnetworks.get

compute.subnetworks.list

compute.subnetworks.use

dns.networks.targetWithPeeringZone

managedkafka.clusters.get

managedkafka.clusters.list

managedkafka.clusters.update

monitoring.metricDescriptors.create

monitoring.metricDescriptors.get

monitoring.metricDescriptors.list

monitoring.monitoredResourceDescriptors.*

  • monitoring.monitoredResourceDescriptors.get
  • monitoring.monitoredResourceDescriptors.list

monitoring.timeSeries.create

serviceusage.services.use

storage.objects.get

(roles/managedflink.viewer)

Readonly access to Managed Flink resources.

managedflink.deployments.get

managedflink.deployments.list

managedflink.jobs.get

managedflink.jobs.list

managedflink.locations.*

  • managedflink.locations.get
  • managedflink.locations.list

managedflink.operations.get

managedflink.operations.list

managedflink.sessions.get

managedflink.sessions.list

resourcemanager.projects.get

resourcemanager.projects.list

BigQuery Migration Service 역할

이 표에는 BigQuery Migration Service의 IAM 역할과 권한이 나와 있습니다. 모든 역할과 권한을 검색하려면 역할 및 권한 색인을 참고하세요.

Role Permissions

(roles/bigquerymigration.editor)

Editor of EDW migration workflows.

bigquerymigration.subtasks.*

  • bigquerymigration.subtasks.get
  • bigquerymigration.subtasks.list

bigquerymigration.workflows.create

bigquerymigration.workflows.delete

bigquerymigration.workflows.enableAiOutputTypes

bigquerymigration.workflows.enableLineageOutputTypes

bigquerymigration.workflows.enableOutputTypePermissions

bigquerymigration.workflows.get

bigquerymigration.workflows.list

bigquerymigration.workflows.update

(roles/bigquerymigration.orchestrator)

Orchestrator of EDW migration tasks.

bigquerymigration.workflows.orchestrateTask

storage.objects.list

(roles/bigquerymigration.translationUser)

User of EDW migration interactive SQL translation service.

bigquerymigration.translation.translate

(roles/bigquerymigration.viewer)

Viewer of EDW migration MigrationWorkflow.

bigquerymigration.subtasks.*

  • bigquerymigration.subtasks.get
  • bigquerymigration.subtasks.list

bigquerymigration.workflows.get

bigquerymigration.workflows.list

(roles/bigquerymigration.worker)

Worker that executes EDW migration subtasks.

storage.objects.create

storage.objects.get

storage.objects.list

BigQuery Omni 역할

이 표에는 BigQuery Omni의 IAM 역할과 권한이 나와 있습니다. 모든 역할과 권한을 검색하려면 역할 및 권한 색인을 참고하세요.

Role Permissions

(roles/bigqueryomni.serviceAgent)

Gives BigQuery Omni access to tables in user projects.

bigquery.jobs.create

bigquery.tables.updateData

BigQuery 공유 역할

이 표에는 BigQuery 공유에 대한 IAM 역할과 권한이 나와 있습니다. 모든 역할과 권한을 검색하려면 역할 및 권한 색인을 참고하세요.

Role Permissions

(roles/analyticshub.admin)

Administer Data Exchanges and Listings

analyticshub.dataExchanges.create

analyticshub.dataExchanges.delete

analyticshub.dataExchanges.get

analyticshub.dataExchanges.getIamPolicy

analyticshub.dataExchanges.list

analyticshub.dataExchanges.setIamPolicy

analyticshub.dataExchanges.update

analyticshub.dataExchanges.viewSubscriptions

analyticshub.listings.create

analyticshub.listings.delete

analyticshub.listings.get

analyticshub.listings.getIamPolicy

analyticshub.listings.list

analyticshub.listings.setIamPolicy

analyticshub.listings.update

analyticshub.listings.viewSubscriptions

analyticshub.subscriptions.*

  • analyticshub.subscriptions.create
  • analyticshub.subscriptions.delete
  • analyticshub.subscriptions.get
  • analyticshub.subscriptions.list
  • analyticshub.subscriptions.update

resourcemanager.projects.get

resourcemanager.projects.list

(roles/analyticshub.listingAdmin)

Grants full control over the Listing, including updating, deleting and setting ACLs

analyticshub.dataExchanges.get

analyticshub.dataExchanges.getIamPolicy

analyticshub.dataExchanges.list

analyticshub.listings.delete

analyticshub.listings.get

analyticshub.listings.getIamPolicy

analyticshub.listings.list

analyticshub.listings.setIamPolicy

analyticshub.listings.update

analyticshub.listings.viewSubscriptions

resourcemanager.projects.get

resourcemanager.projects.list

(roles/analyticshub.publisher)

Can publish to Data Exchanges thus creating Listings

analyticshub.dataExchanges.get

analyticshub.dataExchanges.getIamPolicy

analyticshub.dataExchanges.list

analyticshub.listings.create

analyticshub.listings.get

analyticshub.listings.getIamPolicy

analyticshub.listings.list

resourcemanager.projects.get

resourcemanager.projects.list

(roles/analyticshub.subscriber)

Can browse Data Exchanges and subscribe to Listings

analyticshub.dataExchanges.get

analyticshub.dataExchanges.getIamPolicy

analyticshub.dataExchanges.list

analyticshub.dataExchanges.subscribe

analyticshub.listings.get

analyticshub.listings.getIamPolicy

analyticshub.listings.list

analyticshub.listings.subscribe

resourcemanager.projects.get

resourcemanager.projects.list

(roles/analyticshub.subscriptionOwner)

Grants full control over the Subscription, including updating and deleting

analyticshub.dataExchanges.get

analyticshub.dataExchanges.getIamPolicy

analyticshub.dataExchanges.list

analyticshub.listings.get

analyticshub.listings.getIamPolicy

analyticshub.listings.list

analyticshub.subscriptions.*

  • analyticshub.subscriptions.create
  • analyticshub.subscriptions.delete
  • analyticshub.subscriptions.get
  • analyticshub.subscriptions.list
  • analyticshub.subscriptions.update

resourcemanager.projects.get

resourcemanager.projects.list

(roles/analyticshub.viewer)

Can browse Data Exchanges and Listings

analyticshub.dataExchanges.get

analyticshub.dataExchanges.getIamPolicy

analyticshub.dataExchanges.list

analyticshub.listings.get

analyticshub.listings.getIamPolicy

analyticshub.listings.list

resourcemanager.projects.get

resourcemanager.projects.list

BigQuery 권한

다음 표에는 BigQuery에서 사용할 수 있는 권한이 나와 있습니다. 사전 정의된 역할에 포함되어 있으며 커스텀 역할 정의에 사용될 수 있습니다. 모든 역할과 권한을 검색하려면 역할 및 권한 색인을 참고하세요.

BigQuery 권한

이 표에는 BigQuery의 IAM 권한과 이러한 권한을 포함하는 역할이 나와 있습니다. 모든 역할과 권한을 검색하려면 역할 및 권한 색인을 참고하세요.

권한 역할에 포함됨

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 리소스 관리자(roles/bigquery.resourceAdmin)

BigQuery 리소스 편집자(roles/bigquery.resourceEditor)

BigQuery 리소스 뷰어(roles/bigquery.resourceViewer)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

BigQuery 사용자(roles/bigquery.user)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 리소스 관리자(roles/bigquery.resourceAdmin)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

서비스 에이전트 역할

소유자(roles/owner)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 리소스 관리자(roles/bigquery.resourceAdmin)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

서비스 에이전트 역할

소유자(roles/owner)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 리소스 관리자(roles/bigquery.resourceAdmin)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 리소스 관리자(roles/bigquery.resourceAdmin)

BigQuery 리소스 편집자(roles/bigquery.resourceEditor)

BigQuery 리소스 뷰어(roles/bigquery.resourceViewer)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

BigQuery 사용자(roles/bigquery.user)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 리소스 관리자(roles/bigquery.resourceAdmin)

BigQuery 리소스 편집자(roles/bigquery.resourceEditor)

BigQuery 리소스 뷰어(roles/bigquery.resourceViewer)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

BigQuery 사용자(roles/bigquery.user)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

보안 관리자(roles/iam.securityAdmin)

보안 검토자(roles/iam.securityReviewer)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 리소스 관리자(roles/bigquery.resourceAdmin)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 편집자(roles/bigquery.dataEditor)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery 작업 사용자(roles/bigquery.jobUser)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

BigQuery Studio 사용자(roles/bigquery.studioUser)

BigQuery 사용자(roles/bigquery.user)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

Assured Workloads 관리자(roles/assuredworkloads.admin)

Assured Workloads 편집자(roles/assuredworkloads.editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 연결 관리자(roles/bigquery.connectionAdmin)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

서비스 에이전트 역할

소유자(roles/owner)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 연결 관리자(roles/bigquery.connectionAdmin)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

Datastream Bigquery Writer (roles/datastream.bigqueryWriter)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 연결 관리자(roles/bigquery.connectionAdmin)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 연결 관리자(roles/bigquery.connectionAdmin)

BigQuery 연결 사용자(roles/bigquery.connectionUser)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

Data Catalog 관리자(roles/datacatalog.admin)

Data Catalog 뷰어(roles/datacatalog.viewer)

Datastream Bigquery Writer (roles/datastream.bigqueryWriter)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 연결 관리자(roles/bigquery.connectionAdmin)

BigQuery 연결 사용자(roles/bigquery.connectionUser)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

보안 관리자(roles/iam.securityAdmin)

보안 검토자(roles/iam.securityReviewer)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 연결 관리자(roles/bigquery.connectionAdmin)

BigQuery 연결 사용자(roles/bigquery.connectionUser)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

보안 관리자(roles/iam.securityAdmin)

보안 검토자(roles/iam.securityReviewer)

서비스 에이전트 역할

소유자(roles/owner)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 연결 관리자(roles/bigquery.connectionAdmin)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

보안 관리자(roles/iam.securityAdmin)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 연결 관리자(roles/bigquery.connectionAdmin)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 연결 관리자(roles/bigquery.connectionAdmin)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

Data Catalog 관리자(roles/datacatalog.admin)

Data Catalog 태그 편집자(roles/datacatalog.tagEditor)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 연결 관리자(roles/bigquery.connectionAdmin)

BigQuery 연결 사용자(roles/bigquery.connectionUser)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

BigQuery 데이터 정책 관리자(roles/bigquerydatapolicy.admin)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

BigQuery 데이터 정책 관리자(roles/bigquerydatapolicy.admin)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

BigQuery 데이터 정책 관리자(roles/bigquerydatapolicy.admin)

BigQuery 데이터 정책 뷰어(roles/bigquerydatapolicy.viewer)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

BigQuery 데이터 정책 관리자(roles/bigquerydatapolicy.admin)

보안 관리자(roles/iam.securityAdmin)

보안 검토자(roles/iam.securityReviewer)

서비스 에이전트 역할

원시 데이터 리더(roles/bigquerydatapolicy.rawDataReader)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

BigQuery 데이터 정책 관리자(roles/bigquerydatapolicy.admin)

BigQuery 데이터 정책 뷰어(roles/bigquerydatapolicy.viewer)

보안 관리자(roles/iam.securityAdmin)

보안 검토자(roles/iam.securityReviewer)

서비스 에이전트 역할

마스킹된 리더(roles/bigquerydatapolicy.maskedReader)

소유자(roles/owner)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

BigQuery 데이터 정책 관리자(roles/bigquerydatapolicy.admin)

보안 관리자(roles/iam.securityAdmin)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

BigQuery 데이터 정책 관리자(roles/bigquerydatapolicy.admin)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 편집자(roles/bigquery.dataEditor)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

BigQuery 사용자(roles/bigquery.user)

Datastream Bigquery Writer (roles/datastream.bigqueryWriter)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

태그 사용자(roles/resourcemanager.tagUser)

서비스 에이전트 역할

소유자(roles/owner)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

서비스 에이전트 역할

소유자(roles/owner)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

태그 사용자(roles/resourcemanager.tagUser)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 편집자(roles/bigquery.dataEditor)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery 데이터 뷰어(roles/bigquery.dataViewer)

BigQuery 메타데이터 뷰어(roles/bigquery.metadataViewer)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

BigQuery 사용자(roles/bigquery.user)

Data Catalog 관리자(roles/datacatalog.admin)

Data Catalog 뷰어(roles/datacatalog.viewer)

Dataplex 스토리지 데이터 소유자(roles/dataplex.storageDataOwner)

Dataplex 스토리지 데이터 리더(roles/dataplex.storageDataReader)

Datastream Bigquery Writer (roles/datastream.bigqueryWriter)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

SLZ BQDW Blueprint 프로젝트 수준 조정자(roles/securedlandingzone.bqdwProjectRemediator)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 편집자(roles/bigquery.dataEditor)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery 데이터 뷰어(roles/bigquery.dataViewer)

BigQuery 메타데이터 뷰어(roles/bigquery.metadataViewer)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

BigQuery 사용자(roles/bigquery.user)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

보안 관리자(roles/iam.securityAdmin)

보안 검토자(roles/iam.securityReviewer)

SLZ BQDW Blueprint 프로젝트 수준 조정자(roles/securedlandingzone.bqdwProjectRemediator)

서비스 에이전트 역할

소유자(roles/owner)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

태그 사용자(roles/resourcemanager.tagUser)

태그 뷰어(roles/resourcemanager.tagViewer)

서비스 에이전트 역할

소유자(roles/owner)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

태그 사용자(roles/resourcemanager.tagUser)

태그 뷰어(roles/resourcemanager.tagViewer)

서비스 에이전트 역할

소유자(roles/owner)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

보안 관리자(roles/iam.securityAdmin)

SLZ BQDW Blueprint 프로젝트 수준 조정자(roles/securedlandingzone.bqdwProjectRemediator)

서비스 에이전트 역할

소유자(roles/owner)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

SLZ BQDW Blueprint 프로젝트 수준 조정자(roles/securedlandingzone.bqdwProjectRemediator)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 편집자(roles/bigquery.dataEditor)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

Data Catalog 관리자(roles/datacatalog.admin)

Data Catalog 태그 편집자(roles/datacatalog.tagEditor)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 작업 사용자(roles/bigquery.jobUser)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

BigQuery Studio 사용자(roles/bigquery.studioUser)

BigQuery 사용자(roles/bigquery.user)

Datastream Bigquery Writer (roles/datastream.bigqueryWriter)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

Datastream Bigquery Writer (roles/datastream.bigqueryWriter)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 리소스 관리자(roles/bigquery.resourceAdmin)

BigQuery 리소스 편집자(roles/bigquery.resourceEditor)

BigQuery 리소스 뷰어(roles/bigquery.resourceViewer)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

Datastream Bigquery Writer (roles/datastream.bigqueryWriter)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 리소스 관리자(roles/bigquery.resourceAdmin)

BigQuery 리소스 편집자(roles/bigquery.resourceEditor)

BigQuery 리소스 뷰어(roles/bigquery.resourceViewer)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

BigQuery 사용자(roles/bigquery.user)

Datastream Bigquery Writer (roles/datastream.bigqueryWriter)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

보안 관리자(roles/iam.securityAdmin)

보안 검토자(roles/iam.securityReviewer)

서비스 에이전트 역할

소유자(roles/owner)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 리소스 관리자(roles/bigquery.resourceAdmin)

BigQuery 리소스 편집자(roles/bigquery.resourceEditor)

BigQuery 리소스 뷰어(roles/bigquery.resourceViewer)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 리소스 관리자(roles/bigquery.resourceAdmin)

BigQuery 리소스 편집자(roles/bigquery.resourceEditor)

BigQuery 리소스 뷰어(roles/bigquery.resourceViewer)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

BigQuery 관리자(roles/bigquery.admin)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

Datastream Bigquery Writer (roles/datastream.bigqueryWriter)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 편집자(roles/bigquery.dataEditor)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

Dataplex 스토리지 데이터 소유자(roles/dataplex.storageDataOwner)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 편집자(roles/bigquery.dataEditor)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

Dataplex 스토리지 데이터 소유자(roles/dataplex.storageDataOwner)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 편집자(roles/bigquery.dataEditor)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery 데이터 뷰어(roles/bigquery.dataViewer)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

Dataplex 스토리지 데이터 소유자(roles/dataplex.storageDataOwner)

Dataplex 스토리지 데이터 리더(roles/dataplex.storageDataReader)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 편집자(roles/bigquery.dataEditor)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery 데이터 뷰어(roles/bigquery.dataViewer)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

Dataplex 스토리지 데이터 소유자(roles/dataplex.storageDataOwner)

Dataplex 스토리지 데이터 리더(roles/dataplex.storageDataReader)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 편집자(roles/bigquery.dataEditor)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery 데이터 뷰어(roles/bigquery.dataViewer)

BigQuery 메타데이터 뷰어(roles/bigquery.metadataViewer)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

Data Catalog 관리자(roles/datacatalog.admin)

Data Catalog 뷰어(roles/datacatalog.viewer)

Dataplex 스토리지 데이터 소유자(roles/dataplex.storageDataOwner)

Dataplex 스토리지 데이터 리더(roles/dataplex.storageDataReader)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 편집자(roles/bigquery.dataEditor)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery 데이터 뷰어(roles/bigquery.dataViewer)

BigQuery 메타데이터 뷰어(roles/bigquery.metadataViewer)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

BigQuery 사용자(roles/bigquery.user)

Dataplex 스토리지 데이터 소유자(roles/dataplex.storageDataOwner)

Dataplex 스토리지 데이터 리더(roles/dataplex.storageDataReader)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

보안 관리자(roles/iam.securityAdmin)

보안 검토자(roles/iam.securityReviewer)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 편집자(roles/bigquery.dataEditor)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

Dataplex 스토리지 데이터 소유자(roles/dataplex.storageDataOwner)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 편집자(roles/bigquery.dataEditor)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

Dataplex 스토리지 데이터 소유자(roles/dataplex.storageDataOwner)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 편집자(roles/bigquery.dataEditor)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

Data Catalog 관리자(roles/datacatalog.admin)

Data Catalog 태그 편집자(roles/datacatalog.tagEditor)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery ObjectRef 관리자(roles/bigquery.objectRefAdmin)

BigQuery ObjectRef 리더(roles/bigquery.objectRefReader)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery ObjectRef 관리자(roles/bigquery.objectRefAdmin)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 읽기 세션 사용자(roles/bigquery.readSessionUser)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

BigQuery Studio 사용자(roles/bigquery.studioUser)

BigQuery 사용자(roles/bigquery.user)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 읽기 세션 사용자(roles/bigquery.readSessionUser)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

BigQuery Studio 사용자(roles/bigquery.studioUser)

BigQuery 사용자(roles/bigquery.user)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 읽기 세션 사용자(roles/bigquery.readSessionUser)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

BigQuery Studio 사용자(roles/bigquery.studioUser)

BigQuery 사용자(roles/bigquery.user)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 리소스 관리자(roles/bigquery.resourceAdmin)

BigQuery 리소스 편집자(roles/bigquery.resourceEditor)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 리소스 관리자(roles/bigquery.resourceAdmin)

BigQuery 리소스 편집자(roles/bigquery.resourceEditor)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 리소스 관리자(roles/bigquery.resourceAdmin)

BigQuery 리소스 편집자(roles/bigquery.resourceEditor)

BigQuery 리소스 뷰어(roles/bigquery.resourceViewer)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

BigQuery 사용자(roles/bigquery.user)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

보안 관리자(roles/iam.securityAdmin)

보안 검토자(roles/iam.securityReviewer)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 리소스 관리자(roles/bigquery.resourceAdmin)

BigQuery 리소스 편집자(roles/bigquery.resourceEditor)

BigQuery 리소스 뷰어(roles/bigquery.resourceViewer)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

BigQuery 사용자(roles/bigquery.user)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 리소스 관리자(roles/bigquery.resourceAdmin)

BigQuery 리소스 편집자(roles/bigquery.resourceEditor)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 리소스 관리자(roles/bigquery.resourceAdmin)

BigQuery 리소스 편집자(roles/bigquery.resourceEditor)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 리소스 관리자(roles/bigquery.resourceAdmin)

BigQuery 리소스 편집자(roles/bigquery.resourceEditor)

BigQuery 리소스 뷰어(roles/bigquery.resourceViewer)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

BigQuery 사용자(roles/bigquery.user)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 리소스 관리자(roles/bigquery.resourceAdmin)

BigQuery 리소스 편집자(roles/bigquery.resourceEditor)

BigQuery 리소스 뷰어(roles/bigquery.resourceViewer)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

BigQuery 사용자(roles/bigquery.user)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

보안 관리자(roles/iam.securityAdmin)

보안 검토자(roles/iam.securityReviewer)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 리소스 관리자(roles/bigquery.resourceAdmin)

BigQuery 리소스 편집자(roles/bigquery.resourceEditor)

BigQuery 리소스 뷰어(roles/bigquery.resourceViewer)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

BigQuery 사용자(roles/bigquery.user)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 리소스 관리자(roles/bigquery.resourceAdmin)

BigQuery 리소스 편집자(roles/bigquery.resourceEditor)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 리소스 관리자(roles/bigquery.resourceAdmin)

BigQuery 리소스 편집자(roles/bigquery.resourceEditor)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

BigQuery 사용자(roles/bigquery.user)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 편집자(roles/bigquery.dataEditor)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

Dataplex 스토리지 데이터 소유자(roles/dataplex.storageDataOwner)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 편집자(roles/bigquery.dataEditor)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

Dataplex 스토리지 데이터 소유자(roles/dataplex.storageDataOwner)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 편집자(roles/bigquery.dataEditor)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery 데이터 뷰어(roles/bigquery.dataViewer)

BigQuery 메타데이터 뷰어(roles/bigquery.metadataViewer)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

Data Catalog 관리자(roles/datacatalog.admin)

Data Catalog 뷰어(roles/datacatalog.viewer)

Dataplex 스토리지 데이터 소유자(roles/dataplex.storageDataOwner)

Dataplex 스토리지 데이터 리더(roles/dataplex.storageDataReader)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 편집자(roles/bigquery.dataEditor)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery 데이터 뷰어(roles/bigquery.dataViewer)

BigQuery 메타데이터 뷰어(roles/bigquery.metadataViewer)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

BigQuery 사용자(roles/bigquery.user)

Dataplex 스토리지 데이터 소유자(roles/dataplex.storageDataOwner)

Dataplex 스토리지 데이터 리더(roles/dataplex.storageDataReader)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

보안 관리자(roles/iam.securityAdmin)

보안 검토자(roles/iam.securityReviewer)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 편집자(roles/bigquery.dataEditor)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

Dataplex 스토리지 데이터 소유자(roles/dataplex.storageDataOwner)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 편집자(roles/bigquery.dataEditor)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

Data Catalog 관리자(roles/datacatalog.admin)

Data Catalog 태그 편집자(roles/datacatalog.tagEditor)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

서비스 에이전트 역할

BigQuery 필터링 데이터 뷰어(roles/bigquery.filteredDataViewer)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

보안 관리자(roles/iam.securityAdmin)

보안 검토자(roles/iam.securityReviewer)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

보안 관리자(roles/iam.securityAdmin)

보안 검토자(roles/iam.securityReviewer)

서비스 에이전트 역할

BigQuery 관리자(roles/bigquery.admin)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

서비스 에이전트 역할

소유자(roles/owner)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

보안 관리자(roles/iam.securityAdmin)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

BigQuery 사용자(roles/bigquery.user)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

BigQuery 사용자(roles/bigquery.user)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

보안 관리자(roles/iam.securityAdmin)

보안 검토자(roles/iam.securityReviewer)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

서비스 에이전트 역할

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 편집자(roles/bigquery.dataEditor)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

Dataplex 스토리지 데이터 소유자(roles/dataplex.storageDataOwner)

Datastream Bigquery Writer (roles/datastream.bigqueryWriter)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 편집자(roles/bigquery.dataEditor)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 편집자(roles/bigquery.dataEditor)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery 데이터 뷰어(roles/bigquery.dataViewer)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

Dataplex 스토리지 데이터 소유자(roles/dataplex.storageDataOwner)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

태그 사용자(roles/resourcemanager.tagUser)

서비스 에이전트 역할

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 편집자(roles/bigquery.dataEditor)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

Dataplex 스토리지 데이터 소유자(roles/dataplex.storageDataOwner)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 편집자(roles/bigquery.dataEditor)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

Dataplex 스토리지 데이터 소유자(roles/dataplex.storageDataOwner)

서비스 에이전트 역할

소유자(roles/owner)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

태그 사용자(roles/resourcemanager.tagUser)

서비스 에이전트 역할

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 편집자(roles/bigquery.dataEditor)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery 데이터 뷰어(roles/bigquery.dataViewer)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

Dataplex 스토리지 데이터 소유자(roles/dataplex.storageDataOwner)

Dataplex 스토리지 데이터 리더(roles/dataplex.storageDataReader)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 편집자(roles/bigquery.dataEditor)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery 데이터 뷰어(roles/bigquery.dataViewer)

BigQuery 메타데이터 뷰어(roles/bigquery.metadataViewer)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

Data Catalog 관리자(roles/datacatalog.admin)

Data Catalog 뷰어(roles/datacatalog.viewer)

Dataplex 스토리지 데이터 소유자(roles/dataplex.storageDataOwner)

Dataplex 스토리지 데이터 리더(roles/dataplex.storageDataReader)

Datastream Bigquery Writer (roles/datastream.bigqueryWriter)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 편집자(roles/bigquery.dataEditor)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery 데이터 뷰어(roles/bigquery.dataViewer)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

Dataplex 스토리지 데이터 소유자(roles/dataplex.storageDataOwner)

Dataplex 스토리지 데이터 리더(roles/dataplex.storageDataReader)

Datastream Bigquery Writer (roles/datastream.bigqueryWriter)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 편집자(roles/bigquery.dataEditor)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery 데이터 뷰어(roles/bigquery.dataViewer)

BigQuery 메타데이터 뷰어(roles/bigquery.metadataViewer)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

보안 관리자(roles/iam.securityAdmin)

보안 검토자(roles/iam.securityReviewer)

서비스 에이전트 역할

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 편집자(roles/bigquery.dataEditor)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery 데이터 뷰어(roles/bigquery.dataViewer)

BigQuery 메타데이터 뷰어(roles/bigquery.metadataViewer)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

BigQuery 사용자(roles/bigquery.user)

Dataplex 스토리지 데이터 소유자(roles/dataplex.storageDataOwner)

Dataplex 스토리지 데이터 리더(roles/dataplex.storageDataReader)

Datastream Bigquery Writer (roles/datastream.bigqueryWriter)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

보안 관리자(roles/iam.securityAdmin)

보안 검토자(roles/iam.securityReviewer)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

태그 사용자(roles/resourcemanager.tagUser)

태그 뷰어(roles/resourcemanager.tagViewer)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

태그 사용자(roles/resourcemanager.tagUser)

태그 뷰어(roles/resourcemanager.tagViewer)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 편집자(roles/bigquery.dataEditor)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery 데이터 뷰어(roles/bigquery.dataViewer)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 편집자(roles/bigquery.dataEditor)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

Dataplex 스토리지 데이터 소유자(roles/dataplex.storageDataOwner)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

서비스 에이전트 역할

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

서비스 에이전트 역할

소유자(roles/owner)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

보안 관리자(roles/iam.securityAdmin)

서비스 에이전트 역할

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 편집자(roles/bigquery.dataEditor)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

Dataplex 스토리지 데이터 소유자(roles/dataplex.storageDataOwner)

Datastream Bigquery Writer (roles/datastream.bigqueryWriter)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 편집자(roles/bigquery.dataEditor)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

Dataplex 스토리지 데이터 소유자(roles/dataplex.storageDataOwner)

Dataplex 스토리지 데이터 작성자(roles/dataplex.storageDataWriter)

Datastream Bigquery Writer (roles/datastream.bigqueryWriter)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 편집자(roles/bigquery.dataEditor)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

BigQuery 관리자(roles/bigquery.admin)

BigQuery 데이터 편집자(roles/bigquery.dataEditor)

BigQuery 데이터 소유자(roles/bigquery.dataOwner)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

Data Catalog 관리자(roles/datacatalog.admin)

Data Catalog 태그 편집자(roles/datacatalog.tagEditor)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

BigQuery 관리자(roles/bigquery.admin)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

BigQuery 사용자(roles/bigquery.user)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

서비스 에이전트 역할

BigQuery Connection API 권한

이 서비스에는 IAM 권한이 없습니다.

BigQuery 연속 쿼리 권한

이 서비스에는 IAM 권한이 없습니다.

BigQuery 데이터 정책 권한

이 서비스에는 IAM 권한이 없습니다.

BigQuery Data Transfer Service 권한

이 서비스에는 IAM 권한이 없습니다.

이 표에는 Apache Flink용 BigQuery 엔진의 IAM 권한과 이러한 권한을 포함하는 역할이 나와 있습니다. 모든 역할과 권한을 검색하려면 역할 및 권한 색인을 참고하세요.

권한 역할에 포함됨

소유자(roles/owner)

편집자(roles/editor)

관리형 Flink 관리자 (roles/managedflink.admin)

소유자(roles/owner)

편집자(roles/editor)

관리형 Flink 관리자 (roles/managedflink.admin)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

관리형 Flink 관리자 (roles/managedflink.admin)

관리형 Flink 개발자 (roles/managedflink.developer)

관리형 Flink 뷰어 (roles/managedflink.viewer)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

보안 관리자(roles/iam.securityAdmin)

보안 검토자(roles/iam.securityReviewer)

관리형 Flink 관리자 (roles/managedflink.admin)

관리형 Flink 개발자 (roles/managedflink.developer)

관리형 Flink 뷰어 (roles/managedflink.viewer)

소유자(roles/owner)

편집자(roles/editor)

관리형 Flink 관리자 (roles/managedflink.admin)

소유자(roles/owner)

편집자(roles/editor)

관리형 Flink 관리자 (roles/managedflink.admin)

관리형 Flink 개발자 (roles/managedflink.developer)

소유자(roles/owner)

편집자(roles/editor)

관리형 Flink 관리자 (roles/managedflink.admin)

관리형 Flink 개발자 (roles/managedflink.developer)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

관리형 Flink 관리자 (roles/managedflink.admin)

관리형 Flink 개발자 (roles/managedflink.developer)

관리형 Flink 뷰어 (roles/managedflink.viewer)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

보안 관리자(roles/iam.securityAdmin)

보안 검토자(roles/iam.securityReviewer)

관리형 Flink 관리자 (roles/managedflink.admin)

관리형 Flink 개발자 (roles/managedflink.developer)

관리형 Flink 뷰어 (roles/managedflink.viewer)

소유자(roles/owner)

편집자(roles/editor)

관리형 Flink 관리자 (roles/managedflink.admin)

관리형 Flink 개발자 (roles/managedflink.developer)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

관리형 Flink 관리자 (roles/managedflink.admin)

관리형 Flink 개발자 (roles/managedflink.developer)

관리형 Flink 뷰어 (roles/managedflink.viewer)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

보안 관리자(roles/iam.securityAdmin)

보안 검토자(roles/iam.securityReviewer)

관리형 Flink 관리자 (roles/managedflink.admin)

관리형 Flink 개발자 (roles/managedflink.developer)

관리형 Flink 뷰어 (roles/managedflink.viewer)

소유자(roles/owner)

편집자(roles/editor)

관리형 Flink 관리자 (roles/managedflink.admin)

소유자(roles/owner)

편집자(roles/editor)

관리형 Flink 관리자 (roles/managedflink.admin)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

관리형 Flink 관리자 (roles/managedflink.admin)

관리형 Flink 개발자 (roles/managedflink.developer)

관리형 Flink 뷰어 (roles/managedflink.viewer)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

보안 관리자(roles/iam.securityAdmin)

보안 검토자(roles/iam.securityReviewer)

관리형 Flink 관리자 (roles/managedflink.admin)

관리형 Flink 개발자 (roles/managedflink.developer)

관리형 Flink 뷰어 (roles/managedflink.viewer)

소유자(roles/owner)

편집자(roles/editor)

관리형 Flink 관리자 (roles/managedflink.admin)

관리형 Flink 개발자 (roles/managedflink.developer)

소유자(roles/owner)

편집자(roles/editor)

관리형 Flink 관리자 (roles/managedflink.admin)

관리형 Flink 개발자 (roles/managedflink.developer)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

관리형 Flink 관리자 (roles/managedflink.admin)

관리형 Flink 개발자 (roles/managedflink.developer)

관리형 Flink 뷰어 (roles/managedflink.viewer)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

보안 관리자(roles/iam.securityAdmin)

보안 검토자(roles/iam.securityReviewer)

관리형 Flink 관리자 (roles/managedflink.admin)

관리형 Flink 개발자 (roles/managedflink.developer)

관리형 Flink 뷰어 (roles/managedflink.viewer)

소유자(roles/owner)

편집자(roles/editor)

관리형 Flink 관리자 (roles/managedflink.admin)

관리형 Flink 개발자 (roles/managedflink.developer)

BigQuery Migration Service 권한

이 표에는 BigQuery Migration Service의 IAM 권한과 이러한 권한을 포함하는 역할이 나와 있습니다. 모든 역할과 권한을 검색하려면 역할 및 권한 색인을 참고하세요.

권한 역할에 포함됨

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

MigrationWorkflow 편집자(roles/bigquerymigration.editor)

MigrationWorkflow 뷰어(roles/bigquerymigration.viewer)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

MigrationWorkflow 편집자(roles/bigquerymigration.editor)

MigrationWorkflow 뷰어(roles/bigquerymigration.viewer)

보안 관리자(roles/iam.securityAdmin)

보안 검토자(roles/iam.securityReviewer)

소유자(roles/owner)

편집자(roles/editor)

BigQuery 관리자(roles/bigquery.admin)

BigQuery Studio 관리자(roles/bigquery.studioAdmin)

BigQuery 사용자(roles/bigquery.user)

마이그레이션 변환 사용자(roles/bigquerymigration.translationUser)

DLP 조직 데이터 프로필 드라이버(roles/dlp.orgdriver)

DLP 프로젝트 데이터 프로필 드라이버(roles/dlp.projectdriver)

서비스 에이전트 역할

소유자(roles/owner)

편집자(roles/editor)

MigrationWorkflow 편집자(roles/bigquerymigration.editor)

소유자(roles/owner)

편집자(roles/editor)

MigrationWorkflow 편집자(roles/bigquerymigration.editor)

소유자(roles/owner)

편집자(roles/editor)

MigrationWorkflow 편집자(roles/bigquerymigration.editor)

소유자(roles/owner)

편집자(roles/editor)

MigrationWorkflow 편집자(roles/bigquerymigration.editor)

소유자(roles/owner)

편집자(roles/editor)

MigrationWorkflow 편집자(roles/bigquerymigration.editor)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

MigrationWorkflow 편집자(roles/bigquerymigration.editor)

MigrationWorkflow 뷰어(roles/bigquerymigration.viewer)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

MigrationWorkflow 편집자(roles/bigquerymigration.editor)

MigrationWorkflow 뷰어(roles/bigquerymigration.viewer)

보안 관리자(roles/iam.securityAdmin)

보안 검토자(roles/iam.securityReviewer)

소유자(roles/owner)

태스크 조정자(roles/bigquerymigration.orchestrator)

소유자(roles/owner)

편집자(roles/editor)

MigrationWorkflow 편집자(roles/bigquerymigration.editor)

BigQuery Omni 권한

이 서비스에는 IAM 권한이 없습니다.

BigQuery 공유 권한

이 표에는 BigQuery 공유의 IAM 권한과 이러한 권한이 포함된 역할이 나와 있습니다. 모든 역할과 권한을 검색하려면 역할 및 권한 색인을 참고하세요.

권한 역할에 포함됨

소유자(roles/owner)

편집자(roles/editor)

Analytics Hub 관리자 (roles/analyticshub.admin)

소유자(roles/owner)

편집자(roles/editor)

Analytics Hub 관리자 (roles/analyticshub.admin)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

Analytics Hub 관리자 (roles/analyticshub.admin)

Analytics Hub 목록 관리자 (roles/analyticshub.listingAdmin)

Analytics Hub 게시자 (roles/analyticshub.publisher)

Analytics Hub 구독자 (roles/analyticshub.subscriber)

Analytics Hub 구독 소유자 (roles/analyticshub.subscriptionOwner)

Analytics Hub 뷰어 (roles/analyticshub.viewer)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

Analytics Hub 관리자 (roles/analyticshub.admin)

Analytics Hub 목록 관리자 (roles/analyticshub.listingAdmin)

Analytics Hub 게시자 (roles/analyticshub.publisher)

Analytics Hub 구독자 (roles/analyticshub.subscriber)

Analytics Hub 구독 소유자 (roles/analyticshub.subscriptionOwner)

Analytics Hub 뷰어 (roles/analyticshub.viewer)

보안 관리자(roles/iam.securityAdmin)

보안 검토자(roles/iam.securityReviewer)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

Analytics Hub 관리자 (roles/analyticshub.admin)

Analytics Hub 목록 관리자 (roles/analyticshub.listingAdmin)

Analytics Hub 게시자 (roles/analyticshub.publisher)

Analytics Hub 구독자 (roles/analyticshub.subscriber)

Analytics Hub 구독 소유자 (roles/analyticshub.subscriptionOwner)

Analytics Hub 뷰어 (roles/analyticshub.viewer)

보안 관리자(roles/iam.securityAdmin)

보안 검토자(roles/iam.securityReviewer)

소유자(roles/owner)

Analytics Hub 관리자 (roles/analyticshub.admin)

보안 관리자(roles/iam.securityAdmin)

소유자(roles/owner)

Analytics Hub 구독자 (roles/analyticshub.subscriber)

소유자(roles/owner)

편집자(roles/editor)

Analytics Hub 관리자 (roles/analyticshub.admin)

소유자(roles/owner)

Analytics Hub 관리자 (roles/analyticshub.admin)

소유자(roles/owner)

편집자(roles/editor)

Analytics Hub 관리자 (roles/analyticshub.admin)

Analytics Hub 게시자 (roles/analyticshub.publisher)

소유자(roles/owner)

편집자(roles/editor)

Analytics Hub 관리자 (roles/analyticshub.admin)

Analytics Hub 목록 관리자 (roles/analyticshub.listingAdmin)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

Analytics Hub 관리자 (roles/analyticshub.admin)

Analytics Hub 목록 관리자 (roles/analyticshub.listingAdmin)

Analytics Hub 게시자 (roles/analyticshub.publisher)

Analytics Hub 구독자 (roles/analyticshub.subscriber)

Analytics Hub 구독 소유자 (roles/analyticshub.subscriptionOwner)

Analytics Hub 뷰어 (roles/analyticshub.viewer)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

Analytics Hub 관리자 (roles/analyticshub.admin)

Analytics Hub 목록 관리자 (roles/analyticshub.listingAdmin)

Analytics Hub 게시자 (roles/analyticshub.publisher)

Analytics Hub 구독자 (roles/analyticshub.subscriber)

Analytics Hub 구독 소유자 (roles/analyticshub.subscriptionOwner)

Analytics Hub 뷰어 (roles/analyticshub.viewer)

보안 관리자(roles/iam.securityAdmin)

보안 검토자(roles/iam.securityReviewer)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

Analytics Hub 관리자 (roles/analyticshub.admin)

Analytics Hub 목록 관리자 (roles/analyticshub.listingAdmin)

Analytics Hub 게시자 (roles/analyticshub.publisher)

Analytics Hub 구독자 (roles/analyticshub.subscriber)

Analytics Hub 구독 소유자 (roles/analyticshub.subscriptionOwner)

Analytics Hub 뷰어 (roles/analyticshub.viewer)

보안 관리자(roles/iam.securityAdmin)

보안 검토자(roles/iam.securityReviewer)

소유자(roles/owner)

Analytics Hub 관리자 (roles/analyticshub.admin)

Analytics Hub 목록 관리자 (roles/analyticshub.listingAdmin)

보안 관리자(roles/iam.securityAdmin)

소유자(roles/owner)

Analytics Hub 구독자 (roles/analyticshub.subscriber)

소유자(roles/owner)

편집자(roles/editor)

Analytics Hub 관리자 (roles/analyticshub.admin)

Analytics Hub 목록 관리자 (roles/analyticshub.listingAdmin)

소유자(roles/owner)

Analytics Hub 관리자 (roles/analyticshub.admin)

Analytics Hub 목록 관리자 (roles/analyticshub.listingAdmin)

소유자(roles/owner)

편집자(roles/editor)

Analytics Hub 관리자 (roles/analyticshub.admin)

Analytics Hub 구독 소유자 (roles/analyticshub.subscriptionOwner)

소유자(roles/owner)

편집자(roles/editor)

Analytics Hub 관리자 (roles/analyticshub.admin)

Analytics Hub 구독 소유자 (roles/analyticshub.subscriptionOwner)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

Analytics Hub 관리자 (roles/analyticshub.admin)

Analytics Hub 구독 소유자 (roles/analyticshub.subscriptionOwner)

소유자(roles/owner)

편집자(roles/editor)

뷰어 (roles/viewer)

Analytics Hub 관리자 (roles/analyticshub.admin)

Analytics Hub 구독 소유자 (roles/analyticshub.subscriptionOwner)

보안 관리자(roles/iam.securityAdmin)

보안 검토자(roles/iam.securityReviewer)

소유자(roles/owner)

편집자(roles/editor)

Analytics Hub 관리자 (roles/analyticshub.admin)

Analytics Hub 구독 소유자 (roles/analyticshub.subscriptionOwner)

BigQuery ML 태스크 권한

다음 표에서는 일반적인 BigQuery ML 태스크에 필요한 권한을 설명합니다.

권한 설명
bigquery.jobs.create
bigquery.models.create
bigquery.models.getData
bigquery.models.updateData
CREATE MODEL 문을 사용하여 새 모델을 만듭니다.
bigquery.jobs.create
bigquery.models.create
bigquery.models.getData
bigquery.models.updateData
bigquery.models.updateMetadata
CREATE OR REPLACE MODEL 문을 사용하여 기존 모델을 교체합니다.
bigquery.models.delete models.delete API를 사용하여 모델을 삭제합니다.
bigquery.jobs.create
bigquery.models.delete
DROP MODEL 문을 사용하여 모델을 삭제합니다.
bigquery.models.getMetadata models.get API를 사용하여 모델 메타데이터를 가져옵니다.
bigquery.models.list models.list API를 사용하여 모델과 모델의 메타데이터를 나열합니다.
bigquery.models.updateMetadata models.delete API를 사용하여 모델 메타데이터를 업데이트합니다. 모델의 만료 시간을 0이 아닌 값을 설정하거나 업데이트하는 경우 bigquery.models.delete 권한도 필요합니다.
bigquery.jobs.create
bigquery.models.getData
ML.EVALUATE, ML.PREDICT, ML.TRAINING_INFO, ML.WEIGHTS와 같은 함수를 사용하여 평가, 예측, 모델 및 특성 검사를 수행합니다.
bigquery.jobs.create
bigquery.models.export
모델을 내보냅니다.
bigquery.models.updateTag 모델의 Data Catalog 태그를 업데이트합니다.

다음 단계