Using Vault on Compute Engine for Secret Management
Deploy Vault to Compute Engine using Terraform.
Initialize and unseal Vault from keys stored in Cloud Storage and configure the Vault Google Cloud Auth Plugin Backend.
Create a signed JSON web token (JWT) and retrieve the Vault authentication token and use the Vault authentication token to read and write secrets.