Baldvin Gislason Bern: Expert Engineer at Axis Communications

Baldvin

Traditional compliance audits are often document heavy with slow cycles that fit badly to modern software development. One way to address this is to automatically validate compliance proof points in the development pipeline, similar to how other quality controls are done in CI/CD environments. This talk is an experience report from Axis Communications that has implemented continuous compliance through automated proof point controls in an organization of more than 1.000 developers that develops hundreds of products.

Focus on the Cyber Resilience Act


Open Source Security Foundation
OWASP Foundation
Open regulatory compliance working group (ORCWG.ORG)