Author: Andreas Prins
Avoiding Vendor Lock-In Through an Open Source Approach: A Developer’s Perspective
Every infrastructure team makes decisions that are difficult to reverse. Most of the time, that works out. Sometimes it does not. Vendor lock-in usually begins as a reasonable choice, made under pressure, that solves a real problem at the time. A managed service ships faster or a deployment model fits better in that moment, but […]
Read More
Why Digital Sovereignty Comes Down to One Metric: Exit Velocity
“Exit Velocity is the key operational metric that measures how fast, reliably, and effortlessly an organization can migrate or redeploy an IT workload (applications, services, and data) away from a cloud provider, hypervisor, or proprietary ecosystem to another environment on its own terms.” When we discuss digital sovereignty, the conversation often centers on compliance frameworks, […]
Read More
Sovereign Workload Placement: How Regulated Enterprises Decide Where Things Run
For more than a decade, cloud-first was the default. If a workload could run in the public cloud, it went there, and the architecture question was mostly about cost and speed. That default is being replaced by a control-first one. Before a workload is placed, teams now ask who operates it, whose law reaches it, […]
Read More
Both Are Open Source, So Why Would a Bank Choose SUSE Linux Over Red Hat?
What actually separates SUSE® Linux Enterprise Server from Red Hat Enterprise Linux from a technical perspective when you are a CTO under DORA? I hear the same question across Europe, almost every week. “SUSE Linux and Red Hat Enterprise Linux are both open source. So what really makes them different?” Let’s look into that from […]
Read More
Europe’s Sovereignty Story Had a Missing Chapter, It Was Called Silicon.
Europe has made real progress on digital sovereignty in the past three years. Open-source software is gaining ground. Data residency rules are tightening. Cloud alternatives are emerging. But there is a gap in this story that almost nobody talks about: the chip itself. Every sovereign cloud, every sovereign AI model, every sovereign government system in […]
Read More
Workload Repatriation Is a Resilience Strategy, Not an IT Project
Your board asks a simple question, “What happens to our operations if our hypervisor vendor changes the licensing terms next quarter?” The room goes quiet. Nobody has a good answer. That silence is your answer. It’s a question more boards should be asking right now. Your hypervisor provider has a stronghold over the choices you […]
Read More
The EU Cloud and AI Development Act: What It Gets Right, and What It Still Needs
Today, the Commission published its proposals in the EU Tech Sovereignty Package, which includes, among other policies, the EU Open Source Strategy and the EU Cloud and AI Development Act (CADA). One of the most highly anticipated policy efforts in years, perhaps decades, when it comes to the European tech sector. We’ve been digesting it […]
Read More
Europe’s Sovereignty Story Had a Missing Chapter, It Was Called Silicon.
Europe has made real progress on digital sovereignty in the past three years. Open-source software is gaining ground. Data residency rules are tightening. Cloud alternatives are emerging. But there is a gap in this story that almost nobody talks about: the chip itself. Every sovereign cloud, every sovereign AI model, every sovereign government system in […]
Read More
The Open Source Procurement Agenda: A Guide for IT Leaders, Procurement Teams and Policymakers
This five-part series from SUSE’s Sovereign Solutions Team, published ahead of the upcoming EU Tech Sovereignty Package, equips IT leaders, procurement professionals, and policymakers with the practical blueprints and frameworks needed to turn digital sovereignty into actionable, long-term resilience. Part 1: An Operational Definition for Digital Sovereignty Part 2: How Europe’s Digital Sovereignty Frameworks Are […]
Read More
A Global Exchange: Applying the European Sovereignty Frameworks Everywhere
This five-part series from SUSE’s Sovereign Solutions Team, published ahead of the upcoming EU Tech Sovereignty Package, equips IT leaders, procurement professionals, and policymakers with the practical blueprints and frameworks needed to turn digital sovereignty into actionable, long-term resilience. Part 1: An Operational Definition for Digital Sovereignty Part 2: How Europe’s Digital Sovereignty Frameworks Are […]
Read More
Europe Already Has the Cards and Open Source Is the Ace
This five-part series from SUSE’s Sovereign Solutions Team, published ahead of the upcoming EU Tech Sovereignty Package, equips IT leaders, procurement professionals, and policymakers with the practical blueprints and frameworks needed to turn digital sovereignty into actionable, long-term resilience. Part 1: An Operational Definition for Digital Sovereignty Part 2: How Europe’s Digital Sovereignty Frameworks Are […]
Read More
How Europe’s Digital Sovereignty Frameworks Are Converging
This five-part series from SUSE’s Sovereign Solutions Team, published ahead of the upcoming EU Tech Sovereignty Package, equips IT leaders, procurement professionals, and policymakers with the practical blueprints and frameworks needed to turn digital sovereignty into actionable, long-term resilience. Part 1: An Operational Definition for Digital Sovereignty Part 2: How Europe’s Digital Sovereignty Frameworks Are […]
Read More
Why Most Sovereign Stacks Fail the Day-Zero Test
Sanctions, ownership change, an executive order, a contract dispute. Pick your scenario. What happens to your environment? If your answer involves negotiating with a vendor’s legal team, escalating to a country office, or waiting for a regulatory carve-out, you do not have sovereignty. You have a managed dependency with good packaging. You are vulnerable from […]
Read More
An Operational Definition for Digital Sovereignty
This five-part series from SUSE’s Sovereign Solutions Team, published ahead of the upcoming EU Tech Sovereignty Package, equips IT leaders, procurement professionals, and policymakers with the practical blueprints and frameworks needed to turn digital sovereignty into actionable, long-term resilience. Part 1: An Operational Definition for Digital Sovereignty Part 2: How Europe’s Digital Sovereignty Frameworks Are […]
Read More
Data Sovereignty vs Digital Sovereignty: The Differences Every Enterprise Leader Must Understand
The distinction between data sovereignty and digital sovereignty matters more than it might seem. Data sovereignty addresses where information resides and which laws govern it. By contrast, digital sovereignty extends further. It covers who controls the systems, how decisions are made and whether the organization can prove and change its controls over time. As a […]
Read More
Digital Sovereignty: Understanding Its Importance and How SUSE Can Help
Digital sovereignty has evolved beyond theoretical debate. Increasingly, it manifests as part of everyday decision-making. In 2025, a major U.S.-headquartered cloud provider told European lawmakers that it could not guarantee complete sovereignty if a valid demand arrived under the CLOUD Act. Cross-border transfer rules continue to face legal scrutiny, including questions about who can compel […]
Read More
Your Linux Renewal Is the Start of Real Independence
The renewal invoice has arrived. It is sitting in the inbox of whoever owns your enterprise Linux contracts, and the conversation around it is always the same: accept the terms, push back on price, or ask whether there is another way. Most organizations choose one of the first two. This post is about the third, […]
Read More
A Sovereignty Transformation Has Five Dimensions. Open Source Covers One
Picture the start of a typical sovereignty program. There is a mandate from the board. A budget has been approved. A shortlist of open source platforms sits on the table. The team discusses architecture, explores data residency requirements, and leaves the kickoff feeling like the work has begun. Three years on, the platform is running. […]
Read More
One Release, Three Sovereignty Gaps Fortified by SUSE at KubeCon Amsterdam 2026
Digital sovereignty refers to an organisation’s ability to maintain control over how its data, infrastructure, and software are governed within regulatory and jurisdictional boundaries. Sovereign cloud strategies prioritise transparency, portability, and independence from single vendors. KubeCon Amsterdam has started, and this year will be interesting to assess if digital sovereignty is actually a topic at […]
Read More
SUSE response to EU consultation on Open Digital Ecosystems
The European Commission recently concluded its “Towards European Open Digital Ecosystems” consultation. With over 1,000 respondents, the high participation confirms a critical industry demand to break free from vendor lock-in and build a resilient, competitive digital future. For those of us who have spent decades driving open-source innovation, this call for input represents a long-awaited […]
Read More
Stop Guessing Your Compliance: Master the EU Cloud Sovereignty Framework in Minutes
For the last 2 years, Digital Sovereignty has been the “elephant in the room” for many. You know you need to comply with NIS2, DORA and the upcoming Cyber Resilience Act, but where do you actually start? What are the foreign influences on your stack and where do they influence your autonomy? The “old way” […]
Read More
Digital Sovereignty: 6 Practical Pathways to Increase Resilience
You’ve likely heard the term “Digital Sovereignty” many times in meetings. But as an engineering lead or executive, you might look at your current setup and ask: Where do I actually start? I hear this often from customers; they aren’t just looking for a buzzword; they are looking for long-term resilience, the freedom to innovate […]
Read More
Minimum Viable Sovereignty: Incremental Steps That Spur Secure Innovation
Enterprises worldwide are sharpening their focus on digital sovereignty. Leaders want even greater control over data, technology and operations. At the same time, to stay competitive, they must avoid sacrificing the agility that drives innovation. The competing needs of other organizational stakeholders can add additional tensions. Procurement wants zero exceptions, legal wants location guarantees and […]
Read More
Application Trust Hierarchy: A Practical Guide to Applying Sovereignty Where It Matters Most
Takeaways: applying digital sovereignty Sovereignty is a board-level concern, shifting IT strategy toward economic security and independence. The European Commission Cloud Sovereignty Framework defines levels of assurance, creating an Application Trust Hierarchy for your portfolio. Digital independence requires classifying systems from Crown Jewels (full sovereignty) down to Regular Applications (jurisdictional compliance). Open source enables sovereignty, […]
Read More
Building the European Sovereign Stack: SUSE and evroc Join Forces for a Truly European Cloud
What makes a stack truly sovereign European enterprises are rapidly recognizing that digital sovereignty is no longer a theoretical concept but a strategic requirement. The European Commission’s Cloud Sovereignty Framework clearly defines that sovereignty depends on three inseparable elements: jurisdictional control over infrastructure, autonomy in software choice, and independent operational support. Organizations across sectors are […]
Read More
Open Source: The Key to Achieving Digital Sovereignty
What digital sovereignty means for modern enterprises Digital sovereignty refers to the ability of a nation, organization or individual to control and govern their own digital assets, infrastructure and data independently, free from undue external influence or dependency. This concept has become a necessity as enterprises face increasing regulatory demands, geopolitical tensions and growing reliance […]
Read More
CRA and the Software Supply Chain: Adapting Without Lock-In
The Cyber Resilience Act has changed the equation for any company that develops and sells software in Europe. Unlike DORA or NIS2, which primarily address internal IT and critical services, the CRA directly applies to digital products placed on the EU market. And the consequences for noncompliance are severe: fines of up to €15 million […]
Read More
NIS2 without panic: concrete tips and actions on how to improve it.
The noise is getting louder If you’ve been scanning security and compliance topics on Reddit lately, you’ve probably noticed a shift. On Reddit this week, threads about NIS2 were filled with comments like: “We still don’t know who’s going to audit us.” “If my SaaS provider asks me for NIS2 proof, what do I even […]
Read More
Why Digital Sovereignty Starts with Your Application Stack
When organizations discuss digital sovereignty, the focus often stays at the infrastructure or cloud level. But to truly regain control, the stack must extend all the way to the applications. That includes the design tools your teams use every day. Let’s unpack how this works in practice, using Penpot, an open source design tool as […]
Read More
IT Monitoring: An Introductory Guide With 5 Monitoring Strategies
Monitoring is an integral part of most organizations. The monitoring process usually consists of several tools that, combined, show you information about whatever you’re monitoring: applications, infrastructure, networks and so forth. While monitoring may seem like an obvious practice to some, it can be challenging to establish the best monitoring strategy for your organization. This […]
Read More
Build Trust Into the Platform: How SUSE Rancher Prime, Private Registry, and Security Approach Enterprise Integration
In cloud native environments software security is no longer a feature. It is a requirement. JPMorgan Chase made that clear in their open letter to software suppliers. The message was simple: security must be part of the design, not something that comes later. In our previous article, we put it like this: “The assumption […]
Read More
JPMorgan Chase Sounds the Alarm: Enterprise Software Supply Chains Are Under Attack –Here’s a Smarter Way Forward
Software supply chain security has shifted from a backend problem to a boardroom priority. Security breaches. Compliance mandates. Shadow dependencies. Today’s enterprise software supply chains are under more scrutiny than ever. In a watershed moment, JPMorgan Chase issued a recent open letter to suppliers: the way software vendors approach security needs to change. Not later. […]
Read More
What Is an Anomaly? And How To Detect Them
What is an anomaly? a·nom·a·ly/əˈnäməlē/ noun something that deviates from what is standard, normal or expected. “There are a number of anomalies in the present system.” This is the same in IT. An anomaly in your IT environment means that something is not running or performing as expected. Some anomalies are transient and have little […]
Read More
How to detect and overcome Kubernetes CPU throttling
Not long ago, I set myself a challenge: Could I create a CPU throttling monitor without using SUSE Cloud Observability’s docs page? I’ll go a bit deeper into CPU throttling later, but first: Why this mission? I believe that every software developer should be able to observe the health and reliability of their own application […]
Read More
What is the impact of the Digital Operational Resilience Act (DORA) on my IT?
If you’re in banking, you know the drill. Adhering to stringent EU regulations is standard practice. This involves undergoing extensive audits, closely managing IT assets, maintaining your CIA (Confidentiality, Integrity, Availability) rating, conducting and responding to fire drills and establishing continuity plans. So far, nothing new, and if you’re in other highly regulated environments, you […]
Read More
Temenos Core banking is now Certified on SUSE Rancher Prime. A Certified Core Banking Solution Delivering Superior Scalability, Security, and Cost Savings.
Temenos Core banking is now certified on SUSE Rancher Prime A Certified Core Banking Solution Delivering Superior Scalability, Security and Cost Savings SUSE, a global leader in innovative, reliable and secure open source solutions, is thrilled to announce a collaboration with Temenos, a global leader in banking technology, certifying Temenos’ core banking solution to run […]
Read More
SUSE Rancher Prime the Cloud Native Platform of Choice – SUSECON 2025 Cloud Native
Today at SUSECON 2025 after months of relentless innovation, SUSE Rancher Prime sets to be THE platform upon which every enterprise builds their cloud native strategy. “With expanded workload support, an improved developer experience, advancements in VM modernization, and new SaaS offerings, we’re further strengthening SUSE Rancher Prime’s position as the cloud-native platform of choice,” […]
Read More