Cloud Account Management
The Cloud Account Management serves as a cloud brokerage offering, providing a simplified, self-service way to request and provision governed access to Infrastructure-as-a-Service (IaaS) through simplified provisioning of Amazon Web Services (AWS), Microsoft Azure (AZR) and Google Cloud (GCP) accounts.
It pairs centralized account and billing oversight with enablement-focused education and guidance so faculty, staff, and students can adopt IaaS services quickly, securely, and cost-effectively.
Features
Each cloud provider offers different services as part of their infrastructure platform accounts. By using the Stanford-provided ordering process to create an account with Amazon or a project with Google, you will be included in Stanford's enterprise agreements with Amazon Web Services and with Google Platform Services, which provides the following benefits:
- Easy access: You can use your SUNet ID to access and log in to AWS, GCP, or AZR
- Security: Integrated with Wiz for real time vulnerability management and monitoring
- Cost: Significant savings due to Stanford’s negotiated discounts (AWS, GCP)
- Training: Access to AWS Training and Google Cloud Training, cloud onboarding, and office hours
- Support: Access to Technical Account Managers, Solutions Architects and enable faster issue resolution
- Enterprise Agreements: You will automatically be under Stanford AWS, Azure, and Google Cloud BAA agreements
Designed for
AWS accounts are available to faculty, staff and students with a valid PTA.
GCP projects are available to faculty, staff and students with a valid PTA.
Azure Cloud Services are available to faculty, staff and students with a valid PTA.
Data security
AWS, Azure, and GCP are suitable for Low, Moderate and High Risk Data and nearly all service offerings are available for use.
Stanford University has Business Associate Agreements (BAAs) in place for all three cloud providers: Amazon, Microsoft, and Google, enabling all Stanford users to use AWS, Azure, and GCP for Protected Health Information (PHI). The BAA specifies improved terms and also covers requirements related to the use and disclosure of PHI, appropriate safeguards to protect PHI, individual rights, and administrative responsibilities.
AWS, Azure, and GCP are authorized for use with High Risk Data and PHI ONLY when the AWS account, Azure subscription, or GCP project is in compliance with the Minimum Security Standards and any other regulatory requirements and a Data Risk Assessment is completed. By submitting a request for an AWS account, Azure subscription, or GCP project, you agree to adhere to the Minimum Security Standards for Infrastructure-as-a-Service (IaaS) and Containerized Solutions and the Administrative Guide Section 6.3.1: Information Security.
If PHI data is used, a few AWS services cannot be used, but most AWS service offerings are available for PHI and most GCP service offerings are available for PHI under the respective Stanford BAAs, and most Azure service offerings are available for PHI
Get started
To request an AWS, Azure, or GCP account, please submit the appropriate Help request.
Learn more about how AWS and GCP are set up when you complete a request.
Get help
To request help, submit the appropriate Help ticket.
Learn more
Amazon Web Services:
Google Cloud Platform:
To learn more about Stanford’s Cloud Services, visit the Cardinal Cloud website.
For resources, tools, and information on working with cloud vendors, visit the Cloud Vendor Management website.
