_
Cloud Operating Model & CoE Setup
Deloitte
Last updated on
Clear ownership prevents delays between a STACKIT platform foundation and the teams operating migrated workloads. Document responsibilities with a RACI matrix and validate them against actual operational scenarios, not only organization charts.
| Area | Accountable role | Typical responsibilities |
|---|---|---|
| Platform foundation | Cloud Platform Owner | Landing-zone roadmap, shared guardrails, platform service quality, and provider coordination. |
| Workload operation | Application or Product Owner | Workload reliability, release readiness, data ownership, and business service outcomes. |
| Security and compliance | Security Owner | Control requirements, risk acceptance, assurance criteria, and security incident coordination. |
| Cloud costs | FinOps Lead | Cost allocation, budgets, optimization priorities, and financial reporting. |
| Service management | Service Owner | Support model, incident and change processes, service targets, and continual improvement. |
Platform teams typically own reusable STACKIT account structures, access patterns, network connectivity, and baseline automation. Workload teams own their application configuration, data, releases, monitoring signals, and recovery procedures. Security and FinOps teams define cross-cutting requirements and support their implementation; they should not become an unbounded approval queue.
For every managed service or workload, clarify the boundary between STACKIT provider operations, the customer platform team, and the application team. Support plans, service documentation, and runbooks should point to the same ownership model.





