Session

Engineering the Other Side - Engineering the Bridge Between Dev, Ops, Audit, and Compliance

Engineering teams rarely lose time to compliance. They lose time to unclear expectations, late-breaking requirements, and evidence hunts. Those same governance bottlenecks become the limiting factor on speed and confidence as AI accelerates software delivery.

In this two-day, hands-on workshop, you will learn how audit, risk, and compliance teams think, then translate their expectations into clear, testable claims that engineers can automate. Using [Combined Assurance Blueprinting](https://napecentral.com/resources/), you will build a policy-to-action thread for a real system and design verification procedures with explicit pass, fail, and inconclusive outcomes. You will then implement a working slice of autonomous assurance using [NAPE (Apache 2.0)](https://github.com/nape-not-another-policy-engine) and Ansible, collecting evidence and producing defensible results. At the end, you will understand how to turn governance into a continuous background process in delivery.

Additionally, you will learn to teach this approach within your org, including how to use LLM-driven development to safely scale assurance automation. You leave with reusable patterns, working examples, and the practical ability to start automating assurance work.

The workshop is not a compliance lecture or a GRC tooling demo. It is an engineering-first, hands-on working session for people who are tired of audit and compliance surprises and want to turn governance into a continuous process.

Please note that Sessionize is not responsible for the accuracy or validity of the data provided by speakers. If you suspect this profile to be fake or spam, please let us know.

Jump to top