Loading…
Thursday, October 12 • 2:15pm - 3:00pm
Automated System Compliance from the Inside Out – Trevor Vaughan, Onyx Point, Inc.

Sign up or log in to save this to your schedule, view media, leave feedback and see who's attending!

Feedback form is now closed.
Policy compliance for systems has been a hot topic for 2017. The Puppet ecosystem provides an excellent set of tools for both automating the initial security and compliance foundation of your systems and, more importantly, ensuring that they stay compliant over time. This talk will pull from the experience that we have gained while developing the SIMP Project and provide both guidelines, and examples, for keeping your systems in compliance with both public and internal policies. This presentation will cover: * Translating policy from source to intent * Mapping class and defined type parameters to policy * Detecting parameter deviation from policy * Enforcing framework-level compliance from Hiera * Compliance evaluation during test * Compliance evaluation after deployment * Correlation and reporting The audience should leave with an understanding of how they can both implement a compliant infrastructure as well as working with their internal security personnel to ensure that the compliance status of their infrastructure is well understood and enforced.

Speakers
avatar for Trevor Vaughan

Trevor Vaughan

VP, Onyx Point, Inc.
Trevor has been working with Puppet, and the Puppet Community, since 2007. His focus for Puppet was on ensuring that systems could meet regulatory compliance requirements while maintaining a flexible operational posture. In 2009, he helped found Onyx Point, Inc. with the goal of providing... Read More →


Thursday October 12, 2017 2:15pm - 3:00pm PDT
Track 3: Franciscan Ballroom