THIS WORKSHOP IS FULL - please fill out the form below to join the waitlist
Standardizing Multi-Cloud Security & Compliance for Financial Services
Stop mapping security controls manually. Start automating your cloud compliance.
As Canadian financial institutions accelerate their move to the cloud, the "Compliance Tax" - the time spent mapping internal risk policies to AWS, Azure, and GCP configurations - has become a bottleneck to innovation.
Join the lead architects from RBC and Sonatype for a technical deep dive on automating this process using the open source Common Cloud Controls (CCC) standard.
Cloud adoption across financial services continues to accelerate, but inconsistent security controls, fragmented regulatory expectations, and cloud-vendor lock-in are major obstacles to secure, compliant, multi-cloud operations. FINOS Common Cloud Controls (CCC) is an open standard developed collaboratively with financial institutions, cloud providers, and vendors that defines a unified taxonomy, threat model, and machine-verifiable control catalog for cloud services.
Deep dive on the components of CCC plus understanding of the implementations of validators and conformant implementations. While CCC is featured as a talk by Maxime Coquerel (RBC) and Eddie Knight (Sonatype) during OSFF Toronto, this will be a deeper dive for people to learn how to use the software and contribute improvements.
This session is designed for practitioners who build or secure cloud platforms as a hands-on session learning how to secure cloud architectures.
Note: Due to the hands-on nature of this session, seating is strictly limited to 25 participants. Priority will be given to individuals from FINOS Member financial institutions and regulated industries.
THIS WORKSHOP IS FULL - please fill out the form below to join the waitlist