Connecting Kawach & Google Cloud Platform (GCP)

GCP Logo

Overview

This article explains how to integrate Google Cloud Platform (GCP) with Kawach to enable centralized compliance monitoring across your GCP environment. Once connected, Kawach can monitor GCP resources in read-only mode and surface relevant findings as part of your compliance and risk workflows.

This integration helps ensure that cloud resource configurations, access controls, and monitoring signals are consistently tracked and available for audits, reviews, and internal assessments.

Prerequisites

Before starting the integration, ensure the following:

What Kawach Accesses

Kawach connects to Google Cloud Platform in read-only mode. It does not modify any configuration or resources.

Once connected, Kawach can:

Steps to Integrate GCP with Kawach

Step 1: Navigate to Integrations in Kawach

  1. Log in to your Kawach account.
  2. Go to Settings.
  3. Select the Integrations tab.
  4. Click Create.
  5. Locate GCP from the list of available integrations.
  6. Click Connect.

Step 2: Authorize Kawach in GCP

  1. You will be redirected to the Google account selection page.
  2. Sign in using your work Google account.
  3. Select the GCP project you want to connect.
  4. Review the permissions requested by Kawach.
  5. Approve the connection.
Note: You must have sufficient IAM permissions, and a GCP project owner or admin must approve the authorization. Personal Google accounts are not supported.

Step 3: Grant Required Roles

After authorization:

  1. Review and confirm the required read-only roles.
  2. Assign Viewer, Security Reviewer, and Monitoring Viewer roles.
  3. Confirm the role assignment.

Kawach will begin syncing data from the selected GCP project.

After the Integration

Once the integration is complete:

This setup supports ongoing compliance by ensuring cloud infrastructure evidence and monitoring signals are consistently available.

Troubleshooting

Pin icon Authorization failed

Ensure you are logged into the correct Google work account and have permission to approve IAM role assignments.

Pin icon Resources not visible

Verify that the required read-only roles are correctly assigned to the Kawach service account.

Pin icon Data not syncing

Allow a few minutes after setup. If issues persist, try reconnecting the integration.