Gcp service account with role owner doesn't give permission to all resources. I created a ticket on googles issue tracker: https://issuetracker.google.com/issues/78143615
Note: In the ticket there are screen shots and a link to my github repo (very small amount of terraform code)