Designing and Operating Cloud Platforms for Digital Sovereignty
Building a Sovereign Cloud with Red Hat OpenShift (DO505) provides the skills required to design, build, and operate secure multitenant cloud platforms that meet digital sovereignty requirements by using Red Hat OpenShift.
Designed for enterprise architects, IT security professionals, and operations teams, the course is based on Red Hat OpenShift Container Platform 4.20.
Throughout the course, participants explore sovereign cloud design through the principles of the European Union Cloud Sovereignty Framework. Key areas include deploying multitenant clusters-as-a-service with hosted control planes, enforcing jurisdiction-aware access controls, applying zero-trust isolation, and implementing advanced cryptographic protections.
Participants also gain hands-on experience with external key management, network-bound disk encryption, confidential computing, and post-quantum cryptography as part of a broader sovereign cloud security strategy.
Organizational Impact
DO505 helps organizations develop the technical expertise required to operate multitenant cloud platforms while meeting digital sovereignty requirements such as those defined by the EU Cloud Sovereignty Framework.
Knowledge of hosted control plane isolation, jurisdiction-aware identity and access controls, external key management, and cryptographic protection across different data states can help organizations satisfy regulatory expectations related to data residency, personnel sovereignty, and cryptographic control.
This expertise also supports the delivery of sovereign clusters-as-a-service with verifiable jurisdictional guarantees while helping reduce the risk of regulatory noncompliance.
Individual Impact
DO505 provides participants with an advanced, hands-on understanding of how to design and operate sovereign cloud infrastructure on Red Hat OpenShift.
Participants gain practical experience deploying multitenant hosted control planes, implementing zero-trust workload identity with SPIFFE and SPIRE, integrating external key management systems, configuring network-bound disk encryption, and applying jurisdiction-aware access controls.
These skills enable enterprise architects, IT security practitioners, and operations engineers to design and operate cloud platforms that meet demanding digital sovereignty requirements with greater confidence.
























