Free, editable resources

Start from a credible diagram—not a blank canvas.

Every template has a defined use case, governed visual grammar and deterministic Draw.io source. No account is required.

Generic Cloud Infrastructure Operating Model previewqualifyrouterequirementsdirectionaccepttriggereconomicsexecuteperformanceProduct & application teams: Demand and business outcomesProduct & application teamsDemand and business outcomesCloud Governance / CCoE: Governance routingCloud Governance / CCoEGovernance routingCloud Service Management: Service lifecycleCloud Service ManagementService lifecycleCloud Architecture: Technical directionCloud ArchitectureTechnical directionPlatform Engineering: Reusable productsPlatform EngineeringReusable productsCloud Operations: Run and improveCloud OperationsRun and improveSecurity & Assurance: Risk and control authoritySecurity & AssuranceRisk and control authorityFinOps: Economics and actionFinOpsEconomics and actionMSP / technology providers: Delegated executionMSP / technology providersDelegated execution
T01 · Draw.io · 2026.1

Generic Cloud Infrastructure Operating Model

A vendor-neutral demand-to-operations view with governance, assurance, economics and provider boundaries.

Use as the opening architecture for a Cloud TOM workshop or executive design discussion.
Cloud CCoE Function Map previewrouteroutecoordinateenablemeasureCloud Governance / CCoE: Operating model and orchestrationCloud Governance / CCoEOperating model and orchestrationCloud Architecture: Architecture authorityCloud ArchitectureArchitecture authoritySecurity & Assurance: Risk authoritySecurity & AssuranceRisk authorityService Management: Service ownershipService ManagementService ownershipPlatform Engineering: Delivery executionPlatform EngineeringDelivery executionFinOps: EconomicsFinOpsEconomics
T02 · Draw.io · 2026.1

Cloud CCoE Function Map

A clear boundary between governance orchestration, specialist authority and delivery execution.

Use to challenge an over-centralized CCoE mandate.
Cloud Governance Interaction Model previewrequestrefershape serviceconditionsrequirementshandoverevidenceDemand intake: Qualified needDemand intakeQualified needGovernance: Route and coordinateGovernanceRoute and coordinateSpecialist authority: Decision and conditionsSpecialist authorityDecision and conditionsService ownership: Service lifecycleService ownershipService lifecyclePlatform delivery: Build and evidencePlatform deliveryBuild and evidenceOperations: Accept and operateOperationsAccept and operate
T03 · Draw.io · 2026.1

Cloud Governance Interaction Model

A bounded interaction flow from demand through specialist decisions into delivery and run.

Use to clarify who acts, decides, hands over and accepts.
Cloud Platform Operating Model previewneedsprioritiesdirectionroadmaphandoverservice levelscapabilityfeedbackProduct teams: Consume paved roadsProduct teamsConsume paved roadsPlatform product management: Outcomes and roadmapPlatform product managementOutcomes and roadmapCloud Architecture: Patterns and constraintsCloud ArchitecturePatterns and constraintsPlatform Engineering: Build reusable capabilitiesPlatform EngineeringBuild reusable capabilitiesService Ownership: Catalogue and lifecycleService OwnershipCatalogue and lifecycleCloud Operations: Run and improveCloud OperationsRun and improveTechnology providers: Products and supportTechnology providersProducts and support
T04 · Draw.io · 2026.1

Cloud Platform Operating Model

A platform-product lifecycle connecting consumers, architecture, engineering, service ownership and operations.

Use to move a platform team from ticket fulfillment toward product ownership.
Internal Team vs MSP Responsibility Model previewdelegatessets constraintssets conditionsreportsperformanceretained oversightInternal service owner: Outcome accountabilityInternal service ownerOutcome accountabilityInternal architecture authority: Technical decisionsInternal architecture authorityTechnical decisionsInternal risk authority: Risk acceptanceInternal risk authorityRisk acceptanceVendor management: Performance and escalationVendor managementPerformance and escalationManaged service provider: Delegated build / run executionManaged service providerDelegated build / run executionProvider evidence: Performance, controls, actionsProvider evidencePerformance, controls, actions
T05 · Draw.io · 2026.1

Internal Team vs MSP Responsibility Model

A retained-organization view that separates internal accountability from delegated provider execution.

Use before finalizing an MSP scope, RFP or operating responsibility matrix.
Federated Cloud Governance Model previewdelegates guardrailsdelegates standardssets economicssets sourcingconditionspatternsunit economicsevidenceevidenceevidenceEnterprise cloud governance: Guardrails and portfolioEnterprise cloud governanceGuardrails and portfolioSecurity authority: Control requirementsSecurity authorityControl requirementsArchitecture authority: Reference patternsArchitecture authorityReference patternsFinOps: Economics and allocationFinOpsEconomics and allocationVendor management: Commercial governanceVendor managementCommercial governanceDomain platform A: Domain-owned outcomesDomain platform ADomain-owned outcomesDomain platform B: Domain-owned outcomesDomain platform BDomain-owned outcomesDomain platform C: Domain-owned outcomesDomain platform CDomain-owned outcomes
T06 · Draw.io · 2026.1

Federated Cloud Governance Model

A hub-and-spoke pattern that separates enterprise guardrails from business-domain ownership and platform execution.

Use when several business units need autonomy without fragmenting policy, architecture and control evidence.
Cloud Governance Forum Map previewdecision enveloperisk appetiteportfolio prioritiesperformance mandatedesign proposalcontrol evidencerelease readinessimprovement actionsCloud portfolio council: Investment and directionCloud portfolio councilInvestment and directionArchitecture review: Patterns and exceptionsArchitecture reviewPatterns and exceptionsRisk & control forum: Risk acceptanceRisk & control forumRisk acceptanceService portfolio forum: Lifecycle decisionsService portfolio forumLifecycle decisionsOperational review: Performance and actionsOperational reviewPerformance and actionsPlatform delivery teams: Prepare proposals and evidencePlatform delivery teamsPrepare proposals and evidence
T07 · Draw.io · 2026.1

Cloud Governance Forum Map

A governance cadence showing how portfolio, architecture, risk, service and operational forums exchange decisions and evidence.

Use to reduce duplicate committees and clarify which forum owns each class of decision.
Cloud Decision Rights Overview previewaccountableaccountableaccountableaccountableprioritiesconstraintsconditionsacceptancePortfolio priorities: Investment decisionPortfolio prioritiesInvestment decisionTechnical standards: Architecture decisionTechnical standardsArchitecture decisionRisk acceptance: Control decisionRisk acceptanceControl decisionService release: Lifecycle decisionService releaseLifecycle decisionCloud Governance / CCoE: Portfolio authorityCloud Governance / CCoEPortfolio authorityCloud Architecture: Standards authorityCloud ArchitectureStandards authoritySecurity & Risk: Risk authoritySecurity & RiskRisk authorityService owner: Release authorityService ownerRelease authorityPlatform Engineering: Execution ownerPlatform EngineeringExecution ownerCloud Operations: Operational acceptanceCloud OperationsOperational acceptance
T08 · Draw.io · 2026.1

Cloud Decision Rights Overview

A decision-rights map connecting recurring decision classes to one final accountable authority and their execution owners.

Use to challenge unclear accountability before building a detailed decision register or RACI.
Cloud Demand-to-Service Enablement Flow previewneedrefershape serviceconditionsacceptance criteriahandoverservice evidenceBusiness demand: Outcome and constraintsBusiness demandOutcome and constraintsDemand qualification: Scope and routeDemand qualificationScope and routeArchitecture & security: Conditions and patternsArchitecture & securityConditions and patternsService ownership: Lifecycle and acceptanceService ownershipLifecycle and acceptancePlatform Engineering: Build and evidencePlatform EngineeringBuild and evidenceCloud Operations: Accept, run and improveCloud OperationsAccept, run and improve
T09 · Draw.io · 2026.1

Cloud Demand-to-Service Enablement Flow

A directional flow from business demand through qualification, authority review, engineering and service acceptance.

Use to design a traceable path for new cloud capabilities without turning governance into a ticket queue.
Cloud Build-to-Run Handover previewevidencecontrol evidenceacceptance packconditionsrelease decisionoperational findingsprioritized changePlatform Engineering: Build and testPlatform EngineeringBuild and testReadiness evidence: Runbook, SLOs, recoveryReadiness evidenceRunbook, SLOs, recoverySecurity assurance: Control validationSecurity assuranceControl validationService owner: Release accountabilityService ownerRelease accountabilityCloud Operations: Operational acceptanceCloud OperationsOperational acceptanceImprovement backlog: Learning and remediationImprovement backlogLearning and remediation
T10 · Draw.io · 2026.1

Cloud Build-to-Run Handover

A readiness and acceptance model connecting platform delivery, service ownership, assurance and operations.

Use to define evidence-based operational acceptance rather than a late-stage document handoff.
Cloud Infrastructure Capability Map previewdirectionguardrailsunit economicscontrolspatternsroadmapreleaseservice levelsfeedbackadoption insightStrategy & portfolio: Direction and investmentStrategy & portfolioDirection and investmentGovernance & policy: Guardrails and decisionsGovernance & policyGuardrails and decisionsFinOps & commercial: Economics and suppliersFinOps & commercialEconomics and suppliersSecurity & assurance: Risk and evidenceSecurity & assuranceRisk and evidenceArchitecture: Patterns and standardsArchitecturePatterns and standardsPlatform product: Roadmap and adoptionPlatform productRoadmap and adoptionPlatform engineering: Automation and productsPlatform engineeringAutomation and productsService management: Catalogue and lifecycleService managementCatalogue and lifecycleCloud operations: Reliability and supportCloud operationsReliability and supportDeveloper enablement: Paved-road adoptionDeveloper enablementPaved-road adoption
T11 · Draw.io · 2026.1

Cloud Infrastructure Capability Map

A capability-oriented view of governance, architecture, platform, service, operations and enabling disciplines.

Use to scope an assessment, structure interviews or connect operating-model functions to improvement initiatives.
Cloud TOM Maturity Assessment Model previewclarifygovernproductizeoptimize1 · Fragmented: Unclear ownership1 · FragmentedUnclear ownership2 · Defined: Named functions2 · DefinedNamed functions3 · Governed: Decision rights and controls3 · GovernedDecision rights and controls4 · Product-led: Reusable platforms and SLOs4 · Product-ledReusable platforms and SLOs5 · Adaptive: Measured outcomes and learning5 · AdaptiveMeasured outcomes and learning
T12 · Draw.io · 2026.1

Cloud TOM Maturity Assessment Model

A staged maturity model from fragmented responsibility to measurable, federated platform-product operation.

Use to structure an evidence-based maturity discussion and define a realistic next operating-model horizon.