Baseline Rollout
Use this playbook to roll out Compliance Engine in a controlled way and establish a baseline of continuous compliance.
Confirm Prerequisites
- CMDB is populated with in‑scope accounts and assets.
- Cloud integrations are healthy.
- Roles and responsibilities are defined (policy owners, operators, approvers).
See Requirements and RBAC.
Select Baseline Packs
- Start with CIS benchmark packs and a small set of high‑value Cloudaware policies (for example, encryption, public exposure, backup requirements).
- Map these to your frameworks and internal standards.
Define Scope
- Choose a pilot environment (for example, a subset of accounts or applications).
- Configure policy scope to target the pilot only.
- Run initial evaluations and review findings with owners.
Configure Routing and Ticketing
- Decide how findings will reach owners (email, collaboration, ITSM tickets).
- Implement ticketing patterns for high‑severity violations.
- Verify that ownership fields on findings are populated correctly.
Expand and Institutionalize
- Gradually expand scope to more environments as confidence grows.
- Establish evaluation cadences and report schedules.
- Document exception processes and incorporate them into governance routines.