Compliance

Articles

Articles

SearchTopic
ARTIFICIAL INTELLIGENCE CI/CD CLOUD NATIVE DEVOPS HASHICORP INFRASTRUCTURE AS CODE PLATFORM ENGINEERING SECURITY
Author
Edmund Haselwanter Martin Buchleitner Matthias Theuermann Marina Brooks Juergen Brueder Paul Strebenitzer Infralovers Team Theresa Wallas Miriam Grainer Jan Klare

CINC Auditor

Summary CINC Auditor is an open-source, license-free rebuild of Chef InSpec that enables infrastructure compliance testing and auditing using the same profile

CVE (Common Vulnerabilities and Exposures)

Summary CVE (Common Vulnerabilities and Exposures) is a publicly maintained dictionary of known security vulnerabilities and exposures, each assigned a unique

DORA (Digital Operational Resilience Act)

Summary DORA (Digital Operational Resilience Act) is an EU regulation that entered into force in January 2025, requiring financial institutions and their

GDPR (General Data Protection Regulation)

Summary GDPR (General Data Protection Regulation) is the EU regulation that sets out rights for individuals over their personal data and obligations for

HIPAA

Summary HIPAA (Health Insurance Portability and Accountability Act) is a U.S. federal law that sets national standards for protecting sensitive patient health

ISO 27001

Summary ISO 27001 is the leading international standard for information security management systems (ISMS), providing a systematic approach to managing

Mondoo

Summary Mondoo is a security posture management platform that enables organizations to continuously assess and enforce security policies across cloud

NIS2 Directive

Summary The NIS2 Directive (Network and Information Security Directive 2) is an EU regulation that mandates minimum cybersecurity standards across critical and

Secrets Management Made Simple: Understanding HashiCorp Vault and Its Secret Engines

In today’s fast-paced digital world security isn’t optional, it’s a foundation. Whether you're running microservices in Kubernetes, managing cloud resources, or

Meet Mondoo: Unified Security for DevOps and Cloud

Mondoo bills itself as a comprehensive exposure management platform – think a single pane for all your security needs, on-prem and in the cloud. In practice,

Future-Proofing Your Compliance: Strategic Insights with Mondoo and Terraform

Introduction In today's fast-paced digital landscape, ensuring compliance with various frameworks is crucial for companies to maintain the security and

Leveraging Terraform for Enhanced Asset Security with Mondoo - Part 3: Imports

In the previous posts of this blog series, we introduced the Mondoo platform, its Terraform provider resources and data sources, exploring how they enhance

Leveraging Terraform for Enhanced Asset Security with Mondoo - Part 2: Data Sources

As organizations strive to safeguard their digital assets, innovative solutions like Mondoo have emerged to enhance security and compliance across various

Leveraging Terraform for Enhanced Asset Security with Mondoo - Part 1: Resources

In an era where information security management is more crucial than ever, organizations are seeking innovative solutions to safeguard their digital assets

Optimizing Cost Management: Leveraging Resource Tagging and Mondoo Policies

In today's dynamic and complex cloud environments, organisations face significant challenges in managing costs while ensuring compliance and operational

Infracoders Graz Meetup: Compliance Automation with InSpec and Chef Automate

The first Infracoders/DevOps/CloudNative Meetup after the summer break took place on the 11th of September, 2018 in Graz. About 15 Infracoders were excited

Previous page
Showing of
Next page