Cloud Policy
Directs the use and ongoing management of ICT platforms and services across NSW Government, ensuring value for the people and businesses of NSW.
Purpose
The NSW Government Cloud Policy sets out the requirements that apply to cloud adoption and use in NSW Government. It sits within a broader suite of NSW digital governance, with the NSW Digital Strategy setting strategic direction, the NSW Procurement Policy Framework governing procurement, and the NSW Cyber Security Policy defining cyber security requirements.
The policy provides the operational direction that links these and other instruments for cloud related decisions, and provides mandatory requirements for NSW Government agencies. It aims to drive the effective adoption of cloud across NSW Government, enabling agencies to achieve cost sustainability, improve service quality, and optimise long term operations.
When appropriate, cloud adoption can reduce the need for agencies to manage and maintain infrastructure, allowing them to focus effort and investment on delivering better services to the community. It can provide scalability and resilience, support the modernisation of legacy systems, and enable the adoption of advanced capabilities such as artificial intelligence.
In doing so, the policy supports the NSW Digital Strategy by strengthening the foundations for modern, secure and reliable digital services.
Requirements
Agencies are subject to the following mandates in their selection and use of ICT and digital services, as elaborated in the NSW Government Cloud Policy.
This policy requires that agencies evaluate the adoption of cloud when initiating new digital initiatives, modernising existing systems, and for all procurement of digital/ICT goods and services. By adopting a 'cloud right' approach, recognising that different service and deployment models suit different use cases, the benefits of cloud are realised wherever appropriate.
Agencies are responsible for complying with the NSW Cyber Security Policy and privacy legislation when adopting and using cloud and non-cloud services. This requirement ensures that sensitive data, operational systems and critical infrastructure remain protected against compromise. Responsible cloud adoption also means ensuring alignment with broader NSW Government strategic priorities, including sustainability and long-term operational efficiency.
Agencies must implement an active approach to cloud cost management to ensure accountability and value for money as cloud adoption increases. Structured FinOps practices are used to manage and provide visibility over consumption, budgets, expenditure and inefficiencies, and provide the governance needed for continuous optimisation.
Agencies are required to procure cloud services through approved procurement pathways to ensure cloud purchasing aligns with legislative obligations, Procurement Board Directions, policy settings, probity standards and risk management expectations and to realise the savings and benefits delivered through all-of-government arrangements.
Access the policy
The NSW Government Cloud Policy is available for download. Digital NSW will consult on additional guidance and resources to assist agencies with implementation. For further advice, contact Digital NSW.