When specifying a resource_group for an oktapam_security_policy, it's ignored and the policy is applied to all resource groups.
resource "oktapam_security_policy" "admin" {
name = "${var.group_name} - Admin"
active = true
description = "Server Admins for ${var.group_name} Environments"
principals {
groups = [
data.oktapam_group.admin.id
]
}
resource_group = oktapam_resource_group.this.id
# ...