Stay organized with collections
Save and categorize content based on your preferences.
Scope of Sovereign
Controls by Partners Solutions
Last modified: July 6, 2023
As further described in the Services Summary
,
Sovereign Controls by Partners (also known as “Sovereign
Controls by Sovereign Partners”) are solutions offered
by Google that are complemented by a set of services
offered by third party partners (“Sovereign Controls
Partners”); together these create additional controls
for certain Google Services and allow the partner to
provide additional security measures.
In-scope Google Cloud Controls
The Google controls included in Sovereign Controls
by Partners solutions are:
- Access Transparency
- Cloud External Key Manager (Cloud EKM)
- Key Access Justifications (KAJ)
Certain Organization policy constraints will also be
applied, as further detailed in the Documentation.
Supported Google Cloud Services
The controls above are currently compatible with the
following Google products and services:
- Artifact Registry
- BigQuery
- Cloud Composer
- Cloud DNS
- Cloud External Key Manager (Cloud EKM)
- Cloud Key Management Service
- Cloud HSM
- Cloud Interconnect
- Cloud Load Balancing
- Cloud Logging
- Cloud NAT (Network Address Translation)
- Cloud Router
- Cloud SQL
- Cloud Storage
- Cloud VPN
- Compute Engine
- Dataproc
- Google Cloud Identity-Aware Proxy
- Google Kubernetes Engine
- Identity & Access Management (IAM)
- Network Connectivity Center
- Persistent Disk
- Pub/Sub
- Service Directory
- Virtual Private Cloud
- VPC Service Controls
Services in Preview are subject to Section 5 (Pre-GA
Offerings Terms) of the General Service Terms of our
Service Specific Terms (and applicable rules in your
contract regarding Preview releases).
Sovereign Controls Partners
Sovereign Controls by Partners are complemented by a
set of services, offered by, and under separate terms of
service with, the following third party partners:
- T-Systems International GmbH (“T-Systems”), who offers
“Sovereign Controls by T-Systems”
- Thales Cloud Sécurisé (“S3NS”), who offers “Local
Controls by S3NS”
[[["Easy to understand","easyToUnderstand","thumb-up"],["Solved my problem","solvedMyProblem","thumb-up"],["Other","otherUp","thumb-up"]],[["Hard to understand","hardToUnderstand","thumb-down"],["Incorrect information or sample code","incorrectInformationOrSampleCode","thumb-down"],["Missing the information/samples I need","missingTheInformationSamplesINeed","thumb-down"],["Other","otherDown","thumb-down"]],[],[],[],null,["# Scope Of Sovereign Controls By Sovereign Partners Solutions\n\n- [Back to Google Cloud Terms Directory](https://cloud.google.com/product-terms)\n- \n- Current \n\nScope of Sovereign\nControls by Partners Solutions\n=================================================\n\nLast modified: July 6, 2023\nThis is not the current version of this document and is provided for archival purposes. [View the current version](/terms/in-scope-sovereign-cloud) \nAs further described in the\n[Services Summary](https://cloud.google.com/terms/services),\nSovereign Controls by Partners (also known as \"Sovereign\nControls by Sovereign Partners\") are solutions offered\nby Google that are complemented by a set of services\noffered by third party partners (\"Sovereign Controls\nPartners\"); together these create additional controls\nfor certain Google Services and allow the partner to\nprovide additional security measures. \n\n#### In-scope Google Cloud Controls\n\nThe Google controls included in Sovereign Controls\nby Partners solutions are:\n\n- Access Transparency\n- Cloud External Key Manager (Cloud EKM)\n- Key Access Justifications (KAJ)\n\nCertain Organization policy constraints will also be\napplied, as further detailed in the Documentation. \n\n#### Supported Google Cloud Services\n\nThe controls above are currently compatible with the\nfollowing Google products and services:\n\n- Artifact Registry\n- BigQuery\n- Cloud Composer\n- Cloud DNS\n- Cloud External Key Manager (Cloud EKM)\n- Cloud Key Management Service\n- Cloud HSM\n- Cloud Interconnect\n- Cloud Load Balancing\n- Cloud Logging\n- Cloud NAT (Network Address Translation)\n- Cloud Router\n- Cloud SQL\n- Cloud Storage\n- Cloud VPN\n- Compute Engine\n- Dataproc\n- Google Cloud Identity-Aware Proxy\n- Google Kubernetes Engine\n- Identity \\& Access Management (IAM)\n- Network Connectivity Center\n- Persistent Disk\n- Pub/Sub\n- Service Directory\n- Virtual Private Cloud\n- VPC Service Controls\n\nServices in Preview are subject to Section 5 (Pre-GA\nOfferings Terms) of the General Service Terms of our\nService Specific Terms (and applicable rules in your\ncontract regarding Preview releases). \n\n#### Sovereign Controls Partners\n\nSovereign Controls by Partners are complemented by a\nset of services, offered by, and under separate terms of\nservice with, the following third party partners:\n\n- T-Systems International GmbH (\"T-Systems\"), who offers \"Sovereign Controls by T-Systems\"\n- Thales Cloud Sécurisé (\"S3NS\"), who offers \"Local Controls by S3NS\""]]