Google Workspace
Connect your Google Workspace to Verosint for real-time identity threat detection and response, enabling faster and more efficient remediation.
Requirements
Before getting started, please review the following requirements:
- You need administrative privileges to the Google Workspace to
- authorize new clients
- create a new user for the integration (optional)
- The Verosint integration requires enabling domain-wide delegation in the Google Workspace
- You need administrative privileges to the Verosint workspace to configure the integration
For security reasons, it is highly recommended to create a new user to integrate with Verosint.
Required Roles for Google Workspace User
A new user set up for this integration must have the following roles:
- Reports
- Users → Read
The follow scopes are required when adding the Verosint client to the Google Workspace:
https://www.googleapis.com/auth/admin.reports.audit.readonly
https://www.googleapis.com/auth/admin.directory.user.readonly
Enable Domain-Wide Delegation for Verosint
-
Log into the Google Workspace Admin console and navigate to the Security → Access and data control → API controls page.
-
Select Manage Domain Wide Delegation
-
Click Add new to add a new client ID:
115459943186423760974
-
Authorize the below scopes. Hover on the right side of the text to copy the scopes. Note that the entire list of scopes are visible when you scroll to the right.
https://www.googleapis.com/auth/admin.reports.audit.readonly,https://www.googleapis.com/auth/admin.directory.user.readonly
Configure the Identity Access Integration in Verosint
- As an administrator, log into the Verosint application
- Navigate to Account → Settings
- Under the Identity Access Integrations section, click Add next to the Google Workspace option
- Enter the email of the Google Workspace user that has the following roles: Reports, Users → Read
- Hit Save.

Updated 1 day ago