Skip to main content

Baseline Rollout

Use this playbook to roll out Compliance Engine in a controlled way and establish a baseline of continuous compliance.

Confirm Prerequisites

  1. CMDB is populated with in‑scope accounts and assets.
  2. Cloud integrations are healthy.
  3. Roles and responsibilities are defined (policy owners, operators, approvers).

See Requirements and RBAC.

Select Baseline Packs

  1. Start with CIS benchmark packs and a small set of high‑value Cloudaware policies (for example, encryption, public exposure, backup requirements).
  2. Map these to your frameworks and internal standards.

Define Scope

  1. Choose a pilot environment (for example, a subset of accounts or applications).
  2. Configure policy scope to target the pilot only.
  3. Run initial evaluations and review findings with owners.

Configure Routing and Ticketing

  1. Decide how findings will reach owners (email, collaboration, ITSM tickets).
  2. Implement ticketing patterns for high‑severity violations.
  3. Verify that ownership fields on findings are populated correctly.

Expand and Institutionalize

  1. Gradually expand scope to more environments as confidence grows.
  2. Establish evaluation cadences and report schedules.
  3. Document exception processes and incorporate them into governance routines.