Each Conduit CRD results in the creation of a pod. For use cases such as IRSA (EKS IAM Roles for Service Accounts) or custom RBAC, it's a standard Kubernetes pattern to allow specifying a custom service account on a workload.
I propose adding an (optional) serviceAccountName field to the Conduit CRD spec, which will be passed down to the created Conduit pod.