In the GCP console, navigate to the IAM & Admin menu.
Click into the Service Accounts tab.
Click Create service account at the top of the menu.
In the first step, name the service account that will be used to transfer data into Cloud Storage and click Create and Continue. You may continue through the following steps without assigning any roles, and in the final step, click Done.
After choosing your preferences for the remaining steps, click Create. (If presented with a warning, you may enforce public access prevention)
On the Bucket details page for the bucket you created, select the Permissions tab, and click Grant access.
Grant access to the principal (Service Account) you created in Step 1, and assign the Roles: Storage Object Creator and Storage Object Viewer. Click Save.
Use this configured GCS staging bucket during the connection of your preferred data source or destination.Note: depending on the connection method, you may need to refer to the following field name mappings: