Governance and decision making
Establish decision rights, architecture and security review forums, exception handling, and an escalation model. See Governance and Decision Making.
The Target Operating Model translates your cloud strategy and STACKIT landing zone into an accountable, repeatable operating model.
The Target Operating Model (TOM) defines how an organization operates its cloud environment after migration. It turns the technical foundations provided by the STACKIT landing zone into clear ownership, repeatable processes, and measurable outcomes.
The model covers the responsibilities shared by platform teams, workload teams, security, service management, and business stakeholders. It should be designed before migration waves start and refined as workloads move into operation.
Governance and decision making
Establish decision rights, architecture and security review forums, exception handling, and an escalation model. See Governance and Decision Making.
Roles and responsibilities
Define accountable ownership across platform, application, security, FinOps, and service management teams. See Roles and Responsibilities.
Service management and operations
Make incident, change, problem, request, support, and handover processes operational. See Service Management and Operations.
Platform team and enablement
Operate the STACKIT platform foundation as an internal product with reusable guardrails and self-service paths. See Platform Team and Enablement.
Skills and change management
Build the capabilities, adoption practices, and communication routines needed for new cloud responsibilities. See Skills and Change Management.
Measurement and continuous improvement
Use reliability, delivery, security, and cost signals to improve platform and workload operations. See Measurement and Continuous Improvement.
The landing zone provides technical guardrails for identity, networking, security, cost control, and automation. The TOM assigns who owns those guardrails, who consumes them, and how changes, exceptions, and operational risks are managed. It does not replace the provider responsibilities defined for STACKIT services; it defines the customer-side operating model for the configured platform and migrated workloads.
Use the TOM to connect the following detailed guidance into one operational model:





