---
sourceDocument: Yokohama IT Operations Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/yokohama/it-operations-management

 Release :

    - yokohama

ft:locale :

    - en-US

ft:publication_title :

    - Yokohama IT Operations Management

ft:clusterId :

    - itom

bundleId :

    - itom

workflow :

    - Technology


---

# Exploring Cloud Configuration Governance

# Exploring Cloud Configuration Governance {#ariaid-title1}

* Release version: Yokohama
* 
* Updated January 30, 2025
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 minute to read

Understand the typical Cloud Configuration Governance workflow and high-level
tasks.
To use Cloud Configuration Governance for managing the configuration of the cloud
resources, perform the following tasks:

1. Install Cloud Configuration Governance. For more information, see [Install Cloud Configuration
   Governance](https://servicenow-prod.fluidtopics.net/njnD5PVwYb5BTaQAkaz00Q "You can install the Cloud Configuration Governance application (com.sn.itom.ccg) if you have the admin role. The application installs related ServiceNow Store applications and plugins if they are not already installed.").
2. Install the CCG Content Pack to access the base system Cloud Configuration Governance contents. For more information, see [Install the CCG Content Pack](https://servicenow-prod.fluidtopics.net/S6SvzGOC6DKPVzgNEBE1Fg "You can install the CCG Content Pack application (sn_itom_ccg_cp) if you have the admin role.").
3. Assign Cloud Configuration Governance roles to users. For more information on the Cloud Configuration Governance roles, see [Cloud Configuration Governance roles and system properties](https://servicenow-prod.fluidtopics.net/hDEe13vEcgqxsKCFVsDv~g "Cloud Configuration Governance users require the appropriate roles and system properties to perform various activities. These roles and system properties are installed with the activation of the application.").
4. To manage the configuration of the Amazon Web Services (AWS) resources through Cloud Configuration Governance, see [Set up Cloud Configuration Governance for AWS](https://servicenow-prod.fluidtopics.net/0MuegBgIIJhpoK1l5PAhwQ "Set up access to the Amazon Web Services (AWS) cloud accounts in Cloud Configuration Governance to enable interaction between the application and the cloud. The application requires access to the cloud accounts to scan the cloud resources for non-compliant configurations and remediate them.").
5. To manage the configuration of the Microsoft Azure resources through Cloud Configuration Governance, see [Set up
   Cloud Configuration Governance for Microsoft Azure](https://servicenow-prod.fluidtopics.net/AJhghyo_V9HOg7iGzAu_vQ "Set up access to the Microsoft Azure cloud accounts in Cloud Configuration Governance to enable interaction between the application and the cloud. The application requires access to the cloud accounts of your organization to scan the cloud resources for non-compliant configurations and remediate them.").
6. Create a scan configuration to scan the cloud resources against one or more policy sets and identify the policy violations. For more information, see [Create a scan
   configuration](https://servicenow-prod.fluidtopics.net/q5pQSm1j79D39tjI~hcIlg "Create a scan configuration in Cloud Configuration Governance to scan the cloud resources against one or more policy sets and identify the policy violations.").
7. Run the appropriate remediation action to fix the non-compliant cloud configuration identified during the scan run. For more information, see [Run remediation](https://servicenow-prod.fluidtopics.net/6_AVkZSvCnh5V1GR8DSPuA "Run the appropriate remediation action to fix the non-compliant cloud configuration identified during the Cloud Configuration Governance scan run.").
{#exploring-cloud-configuration-governance__ol_f3z_tl5_gsb}

## What to do next {#exploring-cloud-configuration-governance__section_twb_ghj_bcc}

See [Plugins or applications installed with ITOM Cloud Accelerate](https://servicenow-prod.fluidtopics.net/rxly11_LUtHpZRWhXlY50g "Tables that list the plugins or applications that are installed with ITOM Cloud Accelerate applications. When you update your application, any newly required application dependencies are installed.") to find the list of plugins you activate with Cloud Configuration Governance.
* **[Install Cloud Configuration Governance](https://servicenow-prod.fluidtopics.net/njnD5PVwYb5BTaQAkaz00Q)**   
  You can install the Cloud Configuration Governance application (com.sn.itom.ccg) if you have the admin role. The application installs related ServiceNow® Store applications and plugins if they are not already installed.
* **[Install the CCG Content Pack](https://servicenow-prod.fluidtopics.net/S6SvzGOC6DKPVzgNEBE1Fg)**   
  You can install the CCG Content Pack application (sn_itom_ccg_cp) if you have the admin role.
* **[Set up Cloud Configuration Governance for AWS](https://servicenow-prod.fluidtopics.net/0MuegBgIIJhpoK1l5PAhwQ)**   
  Set up access to the Amazon Web Services (AWS) cloud accounts in Cloud Configuration Governance to enable interaction between the application and the cloud. The application requires access to the cloud accounts to scan the cloud resources for non-compliant configurations and remediate them.
* **[Set up Cloud Configuration Governance for Microsoft Azure](https://servicenow-prod.fluidtopics.net/AJhghyo_V9HOg7iGzAu_vQ)**   
  Set up access to the Microsoft Azure cloud accounts in Cloud Configuration Governance to enable interaction between the application and the cloud. The application requires access to the cloud accounts of your organization to scan the cloud resources for non-compliant configurations and remediate them.
* **[Domain separation and Cloud Configuration Governance](https://servicenow-prod.fluidtopics.net/pAufnlw75m2Rp2mvLvYWgg)**   
  Domain separation is not supported in Cloud Configuration Governance . Domain separation enables you to separate data, processes, and administrative tasks into logical groupings called domains. You can control several aspects of this separation, including which users can see and access data.

