Summary
In this chapter, we focused on maybe the toughest yet most important parts of the DevOps 360° operating model and evolution: regulatory compliance. We set the regulatory compliance scene for incumbents, also looking into the four main categories of regulatory requirements. In addition, we outlined the potential consequences an incumbent can be faced with when failing to address regulatory demand effectively. Afterward, we moved on to discussing the dedicated value proposition of regulatory compliance for DevOps, through the lenses of four real industry stories, which I had the pleasure to personally be a part of. In the second part of the chapter, we dived deep into the two main domains that have a direct influence on DevOps regulatory compliance, that of DevOps controls and the SoD. With the former, we explained its origin and outlined the core domains of regulatory focus, along with the proposed corresponding controls for addressing them. We furthermore looked into a...