Azure management groups via code (Bicep + JSON)
Deploy and maintain a management group hierarchy using tenant-scope Bicep plus one JSON parameters file.
Core is the foundation: the operating standards, guardrails, and repeatable patterns that keep cloud environments secure, reliable, and cost-aware.
These Operator Kits are “Core” because they define how you run the platform day to day-governance, storage patterns, FinOps, and observability. Browse the pillars below to see what is available at launch.
Each kit includes its access details and downloads on the kit page.
Pick a pillar to see the current kits. Each kit is designed to be copied, adapted, and used in day-to-day operations on Microsoft Azure.
Standards, roles, and guardrails you can roll out safely.
Deploy and maintain a management group hierarchy using tenant-scope Bicep plus one JSON parameters file.
A minimal baseline of policies + initiatives you can roll out without landing-zone overkill.
A repeatable RBAC structure with operator tiers, Entra groups-first assignments, and an audited break-glass path.
A practical tagging standard (owner/cost/env) with enforcement, reporting, and operator-friendly remediation.
A lightweight exception workflow so teams can move fast without breaking governance or losing traceability.
Design patterns and checklists for reliable storage foundations.
A canonical guide for designing a block-first storage offer with optional object storage.
Cost models and budgeting patterns that hold up in real ops.
A starter framework to model costs, spot hidden traps, and set budgets that work in practice.
A minimal structure to turn telemetry into operator decisions.
Turn logs/metrics/alerts into decisions with a minimal SLO-based structure operators can maintain.