360° Regulatory Compliance as Code
This chapter constitutes the third and last piece of the DevOps capabilities enablement and engineering part of the book and is dedicated to regulatory compliance. It starts with setting the regulatory compliance scene in the Financial Services Industry (FSI), as well as discussing the four main categories of regulatory requirements that an incumbent bank can be subject to. The chapter continues with one of its core themes, which is the regulatory compliance value proposition for DevOps 360° evolution. That is presented through four real stories from my DevOps career in the FSI. Continuing, we enter the second main part of the chapter, which is focused on two core domains directly related to DevOps regulatory compliance, one of IT (or DevOps) controls and one of Segregation/Separation of Duties (SoD). Starting with the DevOps controls, we examine their regulatory origin, along with their nature and relation to the DevOps SDLC capabilities...