# Centralize governance across runtime infrastructure for APIs, AI, event streaming, and microservices
Thread the API governance needle between platform governance and developer velocity.

Provide a one-stop shop for API runtime provisioning that best fits each team’s deployment preferences — hybrid, multi-cloud, or serverless.
Automate security guardrails for runtime deployment to ensure consistent API security best practices.
Federate access to API runtime infra so that distributed teams can use multiple different API gateways — while retaining central platform governance.
Use Konnect to provision and manage AI gateway, event gateway, and service mesh infrastructure.
## Why Kong Konnect for runtime management?
Multi-runtime, multi-protocol, multi-cloud.
## 01/ Self-serve model
## Empower developers with federated, self-serve API management
- -
Set up gateway-paved roads so developers can self-serve provision gateways and other runtime infrastructure that suits their use case.
- -
Deploy and host infra on your terms with support for hybrid and multi-cloud deployments.
- -
Provision API gateway, event gateway, and service mesh deployments to fully govern all enterprise connectivity.

## 02/ Control plane groups
## Drive governance with central visibility and guardrails
- -
Manage and observe all your control plane configurations in one place.
- -
Enforce global policies across control plane groups so that all gateway deployments leverage best practices.

## 03/ Security
## Bake security guardrails into your API platform
- -
Define gateway security standards through automated policy and plugin enforcement.
- -
Enforce security at the user management level in Konnect with role-based access control (RBAC) to specific control planes.
- -
Build your security posture with a wide array of security-focused Kong plugins, including JSON threat protection, OPA, injection protection, IP restriction, and more.

## 04/ Observability
## Set up API observability across all runtime infrastructure
- -
Leverage OpenTelemetry for real-time, contextual analytics.
- -
View analytics from everything to org-wide performance to API-specific latency.
- -
Debug API and upstream service communication through active tracing.
