Enable Compliance Manager

Complete the following steps to enable Compliance Manager at the organization level:

  1. To get the permissions that you need to enable Compliance Manager, ask your administrator to grant you the following IAM roles on your organization:

    For more information about granting roles, see Manage access to projects, folders, and organizations.

    You might also be able to get the required permissions through custom roles or other predefined roles.

  2. Enable Compliance Manager using one of the following methods:
  3. When you enable Compliance Manager, the following services are also enabled:

    The Cloud Security Compliance service agent (service-org-ORGANIZATION_ID@gcp-sa-csc-hpsa.iam.gserviceaccount.com) is created when you enable Compliance Manager. Compliance Manager uses this service agent to access resources in your organization.

    The following frameworks are applied to the organization automatically:

    • AI Protection
    • Data Security and Privacy Essentials

  4. To support Azure cloud controls and frameworks, Connect Security Command Center to Azure.

What's next