Compliance in DevOps and the public cloud

Tom Geraghty, ERT

This talk covers how to be compliant in the cloud, be secure, gain a competitive advantage, and avoid going to jail.

While there’s an almost infinite list of assurance schemes, regulations and frameworks that we need to comply with, such as PCI, HIPAA and GDPR, the controls are all largely the same. Maintain data and system security, know your environment, only allow people to do what they need to do, and be able to prove it. We’ll look at the technologies and strategies you might employ to introduce and maintain compliance in AWS.

Required audience experience

Basic experience of cloud technology, specifically AWS.

Objective of the talk

To understand the challenges around meeting compliance requirements in a cloud environment, and some practical methods of succeeding in those challenges.

Track 1
Location: Date: May 17, 2018 Time: 2:30 pm - 3:15 pm Tom Geraghty, ERT Tom Geraghty, Experian