Wednesday 

Room 5 

16:20 - 17:20 

(UTC+01

Talk (60 min)

Compliance & Regulatory Standards Are NOT Incompatible With Modern Development Best Practices

Everybody knows that modern development practices include things like testing in production, continuous delivery, observability driven development, and separating deploys from releases using feature flags.

Security
Observability
CI/CD
Continuous Delivery

Yet far too many times I've heard engineers from highly regulated industries complain that they have to follow a bunch of security theater due to regulations and standards. This is categorically false: there is NOTHING in ANY regulation or standard to prevent you from using modern development best practices.

Let's take a stroll through the regulatory landscape and talk about how to make your case (and who to make your case to). A massive competitive advantage will accrue to those teams who can figure out how to make regulatory compliance compatible with fast feedback loops, which means that this is a fight very much worth fighting.

Charity Majors

Charity is an ops engineer and CTO at honeycomb.io. Before this, she worked at Parse, Facebook, and Linden Lab, on operations and developer tools and always seemed to wind up running the databases. Co-author of O’Reilly’s Database Reliability Engineering and newly-released Observability Engineering. Charity loves free speech, free software, and single malt scotch.