Hi,
One option I could see is delegating domain-wide authority to the service account. However, this would only work if all the profiles were linked to google accounts on an apps domain that you own. Please check
this link for more information.
Alternatively, you can select all the feasible options (to see all the data) in
this link for your user role permissions.