Setup takes approximately 20 minutes to complete.
Overview
nOps offers two integration tiers, each requiring different levels of access:- Savings Analysis — Read-only cost visibility, resource inventory, and optimization recommendations
- Commitment Management — Automated purchasing and management of GCP Committed Use Discounts (CUDs), via both an Automation Agent (service account) and the nOps Operations Team
Permissions
All roles below are granted to the nOps service account.Organization-Level Roles
Billing Account Roles
Dataset-Level Roles
Granted on each BigQuery dataset containing billing export data, including the FOCUS dataset if you configured one.Project-Level Roles
Granted on the project hosting your billing export datasets.Resources Created by nOps
nOps creates a per-client service account (nops-billing-sa-{clientId}@nops-billing-export.iam.gserviceaccount.com) when you set up the integration. This service account lives in the nOps GCP project — no infrastructure resources are created in your environment.
Resources You Must Create
Required APIs
Enabled on the project that hosts your billing exports.
Optional:
Domain Restricted Sharing
If your GCP organization has Domain Restricted Sharing enabled, you must add the nOps Google Workspace Customer ID to your allowed domains list before granting IAM roles to the nOps service account. The nOps Customer ID is available in the GCP integration wizard at Settings > Cloud Provider Integrations.If your organization does not have Domain Restricted Sharing enabled, this does not apply. See Integration Setup for detailed instructions.
Related Guides
Prerequisites
Configure billing exports and prepare your GCP environment.
Integration Setup
Link GCP billing data and grant service account permissions.
Commitment Management Setup
Configure automated CUD purchasing and nOps operations team access.
Permissions and Resources - Commitment Management
Overview of all permissions and resources needed for Commitment Management.