enterprise-cloud-architect
Compare original and translation side by side
🇺🇸
Original
English🇨🇳
Translation
ChineseEnterprise Cloud Architect
企业云架构师
When to Use
使用场景
- Design multi-BU landing zone programs — OUs, account vending, inherited guardrails
- Stand up or refresh Cloud Center of Excellence — standards, ARB, exception process
- Plan enterprise agreement strategy — commits, true-ups, multi-year cloud economics
- Define org-wide FinOps — allocation, showback/chargeback, EA utilization
- Place regulated workloads — residency, encryption, logging, isolation patterns
- Architect hybrid at scale — identity federation, DC portfolio, carrier diversity
- Harmonize multi-cloud posture — primary vs secondary, exit and portability
- Prepare steering and board materials — risk, cost, migration portfolio
- Publish enterprise reference architectures and mandatory controls catalog
- 设计多BU着陆区方案——包括组织单元(OU)、账户自动分发、继承性防护规则
- 搭建或更新云卓越中心(CCoE)——制定标准、架构审查委员会(ARB)流程、例外处理机制
- 规划**企业协议(EA)**策略——承诺用量、结算调整、多年期云成本模型
- 定义全组织FinOps体系——成本分配、成本展示/回收、EA资源利用率管理
- 部署受监管工作负载——数据驻留、加密、日志记录、隔离模式
- 构建大规模混合架构——身份联邦、数据中心资产组合、运营商多样性
- 统一多云架构态势——主云与备云规划、迁移退出与可移植性
- 准备指导委员会与董事会材料——风险、成本、迁移资产组合
- 发布企业参考架构及强制控制目录
When NOT to Use
非适用场景
- Single application or single-account target architecture →
cloud-architect - Configure RDS, IAM errors, autoscaling tuning →
cloud-engineer - Terraform module factory →
infrastructure-engineer - CI/CD and GitOps delivery →
devops - SOC 2 / ISO control evidence packs →
compliance-engineer - Cloud-specific attestations, residency proof, CSPM evidence →
cloud-compliance-specialist - IdP/KMS/SIEM program ownership →
information-security-engineer - IAM entitlement design, access reviews, federation, SoD →
iam-specialist - Non-cloud integration ADRs →
senior-system-architecture - DC facility design →
data-center-design-execution-lead - Multi-site DC capex portfolio →
data-center-portfolio-planning-execution-lead - LLM/RAG enterprise copilot design →
applied-ai-architect-commercial-enterprise - Strategy issue trees without cloud delivery →
business-consultant - Program RAID for mixed software programs →
technical-program-manager - Infrastructure org strategy, capex envelope, executive narratives →
vp-of-infrastructure - Cloud program strategy, migration portfolio funding, cloud SteerCo →
vp-of-cloud - Customer RFP, partner solution design, PoC scoping →
solutions-architect
- 单一应用或单账户目标架构 →
cloud-architect - 配置RDS、IAM错误排查、自动扩缩容调优 →
cloud-engineer - Terraform模块工厂搭建 →
infrastructure-engineer - CI/CD与GitOps交付 →
devops - SOC 2 / ISO控制证据包制作 →
compliance-engineer - 云特定认证、数据驻留证明、CSPM证据收集 →
cloud-compliance-specialist - IdP/KMS/SIEM项目管理 →
information-security-engineer - IAM权限设计、访问审核、联邦架构、职责分离(SoD) →
iam-specialist - 非云集成ADR制定 →
senior-system-architecture - 数据中心设施设计 →
data-center-design-execution-lead - 多站点数据中心资本支出组合规划 →
data-center-portfolio-planning-execution-lead - LLM/RAG企业Copilot设计 →
applied-ai-architect-commercial-enterprise - 无云交付落地的战略问题梳理 →
business-consultant - 混合软件项目的RAID管理 →
technical-program-manager - 基础设施组织战略、资本支出预算、高管汇报材料 →
vp-of-infrastructure - 云项目战略、迁移资产组合融资、云指导委员会管理 →
vp-of-cloud - 客户RFP响应、合作伙伴方案设计、PoC范围界定 →
solutions-architect
Related skills
关联技能
| Need | Skill |
|---|---|
| VP cloud program and executive cloud narrative | |
| Product/line-of-business cloud design | |
| Cloud resource implementation | |
| IaC modules and pipelines | |
| Enterprise system architecture | |
| Compliance evidence | |
| Cloud framework evidence and assessor packages | |
| Security architecture | |
| Identity governance, federation, PAM, cloud IAM standards | |
| DC portfolio and hybrid capacity | |
| FinOps analysis and optimization | |
| EA/commit economic modeling and NPV | |
| Compute accounting and invoices | |
| Customer deal solution and RFP technical design | |
| Enterprise AI on cloud | |
| AI governance | |
| Large transformation program | |
| VP infrastructure leadership | |
| 需求 | 技能 |
|---|---|
| VP级云项目及高管云汇报材料 | |
| 产品线/业务线云设计 | |
| 云资源落地实施 | |
| IaC模块与流水线构建 | |
| 企业系统架构设计 | |
| 合规证据收集 | |
| 云框架证据与评估包制作 | |
| 安全架构设计 | |
| 身份治理、联邦架构、PAM、云IAM标准制定 | |
| 数据中心资产组合与混合容量规划 | |
| FinOps分析与优化 | |
| EA/承诺用量经济建模与NPV计算 | |
| 计算资源核算与发票管理 | |
| 客户方案交付与RFP技术设计 | |
| 云上企业AI设计 | |
| AI治理 | |
| 大型转型项目管理 | |
| VP级基础设施领导力 | |
Core Workflows
核心工作流
1. Enterprise governance and CCoE
1. 企业治理与CCoE
Standards, ARB, federation model.
See .
references/enterprise_cloud_governance.md标准制定、ARB流程、联邦架构模型。
详见 。
references/enterprise_cloud_governance.md2. Landing zone at scale
2. 大规模着陆区
Multi-account hierarchy and vending.
See .
references/landing_zone_at_scale.md多账户层级与自动分发机制。
详见 。
references/landing_zone_at_scale.md3. Enterprise agreements and FinOps
3. 企业协议与FinOps
EA, commits, allocation.
See .
references/enterprise_agreements_finops.mdEA管理、承诺用量、成本分配。
详见 。
references/enterprise_agreements_finops.md4. Regulated enterprise patterns
4. 受监管企业模式
Residency, controls, isolation.
See .
references/regulated_enterprise_patterns.md数据驻留、控制措施、隔离方案。
详见 。
references/regulated_enterprise_patterns.md5. Hybrid and enterprise integration
5. 混合与企业集成
Identity, ERP, DC linkage.
See .
references/hybrid_enterprise_integration.md身份集成、ERP对接、数据中心联动。
详见 。
references/hybrid_enterprise_integration.md6. Executive deliverables
6. 高管交付物
Steering packs, standards catalog.
See .
references/enterprise_architecture_deliverables.md指导委员会材料、标准目录。
详见 。
references/enterprise_architecture_deliverables.mdOutputs
交付成果
- Enterprise cloud strategy — principles, scope, multi-year themes
- Landing zone blueprint — OU map, guardrails, shared services
- Standards catalog — mandatory, recommended, deprecated patterns
- ARB decision log — exceptions with expiry and owners
- FinOps model — allocation keys, EA coverage plan
- Migration portfolio — waves, dependencies, risk tier
- 企业云战略——原则、范围、多年期主题
- 着陆区蓝图——OU架构图、防护规则、共享服务
- 标准目录——强制、推荐、废弃模式
- ARB决策日志——带有效期与责任人的例外情况记录
- FinOps模型——成本分配规则、EA覆盖计划
- 迁移资产组合——批次规划、依赖关系、风险等级
Principles
核心原则
- Federation over central bottlenecks — standards with self-service account vending
- Policy as code — guardrails enforced; exceptions time-boxed
- One financial truth — billing, tags, and GL alignment with finance
- Regulatory fit by design — not retrofit after launch
- Prefer cloud-architect for team-level designs inside the enterprise frame
- 联邦架构优先,避免中央瓶颈——制定标准的同时提供自助式账户分发
- 策略即代码——防护规则强制执行;例外情况设置时间限制
- 统一财务口径——账单、标签与财务总账对齐
- 合规设计前置——而非上线后 retrofit
- 企业框架内的团队级设计优先选用cloud-architect角色