The Cloud Governance, Risk and Compliance Explained course provides a structured introduction to the governance, risk and compliance considerations associated with cloud environments. It explores how organisations can establish accountability, define governance responsibilities, manage cloud risks and maintain evidence to support compliance and assurance activities.
The course begins with cloud accountability essentials, including responsibility and ownership, governance roles, risk decision structures and compliance evidence foundations. It then examines the UK legal and regulatory framework relevant to cloud environments, including UK GDPR, the Data Protection Act, cyber security resilience obligations, and FCA and PRA cloud oversight.
Further modules explore AI and data governance, covering AI cloud service governance, customer data training restrictions, data residency, transfer controls and sovereign cloud jurisdiction risk. Learners will also examine continuous cloud assurance through CSPM, CNAPP, policy-as-code, continuous evidence management and audit-ready reporting.
The course concludes with third-party and resilience governance, including cloud provider assurance reviews, vendor lock-in exit planning, incident reporting and recovery duties, and board-level cloud risk oversight.