02 — Capability · BC-730.20
Cloud Platform Operations
Run the enterprise's public cloud footprint inside clear guardrails — accounts, identities, networks and policies — so teams move fast without each inventing their own landing zone.
- Cloud Operations
- Landing Zone
- Cloud Governance
In scope
- Landing zone design and account structure
- Cloud policy guardrails and tagging
- Cloud service provisioning and self-service
- Resource right-sizing and hygiene
Out of scope
- Cloud spend budgeting and showback (see BC-710)
- Cloud security posture assessment (see BC-760)
Realized by · 0
- No product in the catalog yet.
Used in · 0
- Not yet placed on a value stream.
Build it · 4
- pattern Infrastructure as Code via BC-730.20.10
- stack Platform infrastructure baseline via BC-730.20.10
- book Kubernetes Patterns
- book Cloud Native Patterns
Decomposes into · 4
- BC-730.20.10Landing Zone DesignDefine the account, network, identity and logging foundation every cloud workload inherits, so the safe path is also the default path.
- BC-730.20.20Cloud Account GovernanceIssue and retire cloud accounts and subscriptions, enforce tagging and policy, and know who owns every one of them.
- BC-730.20.30Cloud Service ProvisioningOffer approved cloud services through templates and self-service, with the controls built in rather than bolted on afterward.
- BC-730.20.40Resource Hygiene & Right-SizingFind idle, oversized and orphaned resources continuously and resize or remove them before the invoice does the reminding.