Container Security roles and permissions

This page lists the IAM roles and permissions for Container Security. Tosearch through all roles and permissions, see therole andpermission index.

Container Security roles

RolePermissions

GKE Security Posture ViewerBeta

(roles/containersecurity.viewer)

Read-only access to GKE Security Posture resources.

container.clusters.list

containersecurity.*

  • containersecurity.clusterSummaries.list
  • containersecurity.findings.list
  • containersecurity.locations.get
  • containersecurity.locations.list

resourcemanager.projects.get

resourcemanager.projects.list

Container Security permissions

PermissionIncluded in roles

containersecurity.clusterSummaries.list

Owner (roles/owner)

Editor (roles/editor)

GKE Security Posture Viewer (roles/containersecurity.viewer)

Security Admin (roles/iam.securityAdmin)

Security Auditor (roles/iam.securityAuditor)

Security Reviewer (roles/iam.securityReviewer)

containersecurity.findings.list

Owner (roles/owner)

Editor (roles/editor)

GKE Security Posture Viewer (roles/containersecurity.viewer)

Security Admin (roles/iam.securityAdmin)

Security Auditor (roles/iam.securityAuditor)

Security Reviewer (roles/iam.securityReviewer)

containersecurity.locations.get

Owner (roles/owner)

Editor (roles/editor)

Viewer (roles/viewer)

GKE Security Posture Viewer (roles/containersecurity.viewer)

Support User (roles/iam.supportUser)

containersecurity.locations.list

Owner (roles/owner)

Editor (roles/editor)

Viewer (roles/viewer)

GKE Security Posture Viewer (roles/containersecurity.viewer)

Security Admin (roles/iam.securityAdmin)

Security Auditor (roles/iam.securityAuditor)

Security Reviewer (roles/iam.securityReviewer)

Support User (roles/iam.supportUser)

Except as otherwise noted, the content of this page is licensed under theCreative Commons Attribution 4.0 License, and code samples are licensed under theApache 2.0 License. For details, see theGoogle Developers Site Policies. Java is a registered trademark of Oracle and/or its affiliates.

Last updated 2025-12-15 UTC.