What are the core DevOps-related regulatory compliance domains of the incumbent’s focus?
In this section, we will get into the details of the core DevOps-related regulatory compliance domains that incumbents currently have a strong focus on. They are the DevOps controls and the SoD policy. In each of them, we will outline the background of their origin and the value proposition and present some practical suggestions derived from industry-proven practices.
Warning
The presented practices of the coming subsections have been agreed upon with the regulatory body of the respective incumbents. Do not take them for granted in your context without being aware of the contextual details of those representative incumbents and the relationship with their regulator. Nevertheless, you can perceive them as an indication of good quality and pragmatism.
The DevOps controls
You will find these controls named either SDLC or IT controls, but their scope is the same: design and implement...