Scale Forem

Scale YouTube
Scale YouTube

Posted on

InfoQ: Compliance is Broken: The DevOps Revolution for Audit & Controls (Stop Spreadsheets!)

Compliance is Broken: Tired of wrestling with manual spreadsheets, half-yearly audits and endless Confluence pages? Ian Miell tears down the old audit playbook and rolls out the Continuous Compliance Framework (CCF), an open-source, DevOps-style approach that gathers real-time evidence across AWS, Azure and on-prem. Say goodbye to point-in-time checks, embrace machine-readable regs like DORA, and finally get the single pane of glass you need to actually sleep at night.

In a live demo, CCF’s dashboards show findings by type, subject and catalog, while automatically mapping them to NIST SP 800-53 controls via the OSCAL standard. Along the way you’ll hear war stories about how CCF came to life, dig into lessons learned, and hit a rapid-fire Q&A on everything from subjective requirements and auto-remediation to data sovereignty and why this isn’t just another SaaS. Continuous Compliance is here to revolutionize how regulated industries handle audit and controls.

Watch on YouTube

Top comments (0)