2 min read

Cloud without an operating model becomes expensive

Cloud without an operating model becomes expensive

The most common mistakes and solutions for Swiss companies

 

The Swiss Federal Council adopted a report on digital sovereignty at the end of 2025, focusing on operational autonomy, control, and managing critical dependencies. For Swiss companies, the question is therefore less whether to use the cloud, but how to operate it in a way that ensures responsibility, security, and costs remain sustainably manageable.   

Many Swiss companies confuse going live with their cloud platform with the actual goal. Once the migration is complete and all workloads are running, the expected benefits often fail to materialize: IT is not relieved, operations become increasingly complex, costs rise gradually, and security and compliance tasks are handled reactively. At the latest during an audit or an incident, it becomes clear what has been missing: clear responsibilities, robust processes, and governance that holds up in day-to-day operations.

These typical mistakes keep recurring – regardless of platform or provider:

Responsibility remains unclear 

 

No one feels responsible, and incidents are passed along

Costs are not managed as an operational process 

 

Usage grows organically, budgets are missing, and optimization happens too late or not at all  

 

Security is added as an afterthought 

 

Logging, IAM, policies, and audit evidence are not properly defined and implemented from the outset

Monitoring without an actionable framework 

 

There is data, but no clear thresholds, playbooks, or escalation paths

 

Recovery is theoretical 

 

Backup/restore, RPO/RTO, and testing are not formally defined — until a real incident occurs

Hybrid environments emerge as a byproduct 

 

Workloads are distributed across multiple environments without clear placement logic or standards

 

Lift-and-shift as a shortcut 

 

Applications are moved, but operational effort and dependencies remain - just in a different place.

cloud-01-EN

 How to build your cloud infrastructure in a sovereign, secure, and controllable way – the ‘Sovereign Cloud’ practical guide from Axians provides concrete guiding principles, decision-making questions, and a proven approach model. Download the guide for free now.

Operational model as a key success factor – enabling cloud to deliver impact

Most problems arise because it is not clearly defined how a cloud platform is operated. An operating model establishes exactly this clarity and accountability in the following areas: 

Governance & responsibilities (service boundaries, RACI, escalation paths) 

  • Who is responsible for operations, change management, security controls, and incident response?
  • Which responsibilities lie with the provider, which with the partner, and which remain in-house?
  • How are decisions and escalations handled in a crisis, with clearly defined roles and points of contact?

FinOps: treating cost control as an operational discipline 

  • Transparency (tagging/allocation, cost centers, showback/chargeback)”

  •  Rules for usage and scaling (budgets, guardrails, approvals) 

  • Continuous optimization (rightsizing, storage and lifecycle policies, reservations, licensing logic) 

Security & Compliance: by design, verifiable in operations 

  • IAM & access control (MFA, roles, least privilege, access recertifications)
  • Logging/monitoring and auditable controls 
  • Configuration and patch standards, vulnerability management 
  • Evidence: documented processes, clear responsibilities, and auditable execution.

Monitoring, incident processes, and resilience (when it matters most) 

  • SLIs/SLOs and clear thresholds instead of alert overload
  • Runbooks/playbooks, defined incident roles, and communication channels
  • Backup and recovery with clear targets (RPO/RTO) and regular restore tests

From roadmap to implementation with Axians  

Anyone looking to implement this operating model in their own cloud environment does not need another ‘cloud plan’, but a clear framework for action: first, a baseline assessment focusing on data, dependencies, and risks; then deriving a target operating model (governance, FinOps, security, monitoring/resilience); followed by iterative implementation and continuous operational optimization.

This is exactly where Axians positions itself: as a partner that supports cloud and hybrid environments in a structured way - from assessment to implementation through to reliable operations - drawing on experience and expertise in the Swiss market, including Swiss cloud and managed IT components, managed operations and support, as well as integrated security and cost management