I'd like to hear from people who worked in environments requiring "separation
of duty" (SOX, PCI) and how they have dealt with:

  - continuous delivery: how do you automate deploys if a "trusted human who
is not a dev" has to sign off each deploy?

  - mixed team and separation of duty: especially on smaller teams, the ops
people might be involved in some of the developments, in some areas, both dev
and ops will be involved (build and deploy code), which leads with people with
needing both repository access to code and ops access to infrastructure.



Thanks.

-- 
http://yves.zioup.com
gpg: 4096R/32B0F416

_______________________________________________
Tech mailing list
[email protected]
https://lists.lopsa.org/cgi-bin/mailman/listinfo/tech
This list provided by the League of Professional System Administrators
 http://lopsa.org/

Reply via email to