Skip to main content

Creating a Service Account for the Google Workspace Integration

S
Written by Shannon DeLange
Updated this week

1. Create a New Admin

  • Select Directory, followed by Users.

Screenshot 2025-03-17 at 4.58.37 PM.png
  • Select Add new user

  • Complete the required information. Select Add new user

Screenshot 2025-03-17 at 5.12.21 PM.png

2. Create a Custom Admin Role

  • From the Admin console, select Account followed by Admin roles.

Screenshot 2025-03-17 at 5.03.11 PM.png
  • Select Create new role.

Screenshot 2025-03-17 at 5.04.32 PM.png
  • Give the role a name (e.g., “Vanta API Integration”) and an optional description, then click Continue.

Screenshot 2025-03-17 at 5.05.36 PM.png

On the Select Privileges screen, add the following permissions:

    • Admin console privileges:

      • Users → Read privilege (this covers admin.directory.user.readonly)

      • Security → User Security Management (this covers admin.directory.user.security)

    • Admin API privileges:

      • Groups → Read privilege (this covers admin.directory.group.readonly)

    • Select Continue

    • Select Create role

3. Assign a User to the Custom Role

  • From the admin roles section, select the Vanta API integration role

  • Select Assign admin

Screenshot 2025-03-17 at 5.17.54 PM.png
  • Select Assign Members

  • Assign the previously created admin from step 1.

  • Select Assign role

Screenshot 2025-03-17 at 5.20.08 PM.png