Securing Terraform with IaC with the Regula Policy Engine

Presented by

Josh Stella, Fugue Co-Founder and CEO and Curtis Myzie, Fugue VP of Engineering

About this talk

Join us as Josh Stella and Curtis Myzie dig into using Regula, an open source policy engine for checking infrastructure as code. For this session they’ll focus on checking Terraform in development (HCL checks) and in CI/CD (Terraform plan checks). You’ll learn how to: Get started with Regula and pre-built policies (including CIS Foundations Benchmarks policies) Integrate Regula IaC checks into your git workflows and CI/CD pipelines Write custom policies using the open source Rego language

Related topics:

More from this channel

Upcoming talks (4)
On-demand talks (22)
Subscribers (885)
Cloud computing has turned security on its head. The cloud attack surface is the configuration of thousands of interrelated resources — and it’s all changing constantly. Ensuring continuous cloud security and compliance requires a deep understanding how cloud works and the nature of misconfiguration. Why it happens, how hackers exploit it, and how to prevent it. At Fugue, we’re committed to helping cloud professionals master the concepts they need to ensure the security of their cloud infrastructure. Our Cloud Security Masterclass series is led by Fugue CTO and co-founder Josh Stella, who has extensive experience with cloud security and working with national security customers as a Principal Solutions Architect with AWS. He takes us on technical deep dives into critical cloud infrastructure security concepts. Fugue helps cloud teams transform how they do cloud security at every stage of the software development lifecycle — so they can move faster in the cloud without breaking the rules that put data at risk.