Policy as Code

Kind: mechanism

Layer: Security Core

Record: architecture:policy-as-code

Severity: recommended

Scope: infrastructure, deployment, security

Canonical: Ontology

A mechanism that expresses policies as machine-readable rules which a pipeline or policy engine evaluates automatically.

Listed in Architecture principles, after Policy Enforcement and before Risk Management.

Requires

Reinforces

Enables

Conflicts with

In tension with

Tensions

Violated by

Refactored by

Severity

Category

Enforced by

Refactors

Linked from

in this codebase