We are thrilled to announce 📢 Kosli is now SOC 2 Type 2 compliant - Read more
New Feature: Kosli Trails is liveCreate comprehensive audit trails for any DevOps activity - Read more
Search by

Tags

Looking for your favourite topic? You're in the right place.

How are Docker digests calculated and are they mutable?

To ensure binary provenance in your software development process you must, among other things, have confidence that the artifact doesn’t change. If you use a code review and test result as an …

How Kosli automates Change Management for Kubernetes workloads

If you’re delivering software in a regulated space, and you’re using Kubernetes, you’ll know how problematic change management is. On one hand you have a highly dynamic container based system that’s …

My experience of working remotely with our customers

In my previous blog post I described the onboarding experience at Kosli and how I got started with my colleagues in a remote-first company. This time I’d like to take this topic further and talk about …

5 reasons why your CI system is a terrible Compliance System of Record

“Why can’t we use our CI system for our Compliance System of Record (CSoR)?” This is a question we get asked a lot when we’re talking about compliance with regulated DevOps teams. And it’s a perfectly …

How to design a DevOps Compliance System of Record

If you deliver software in a regulated industry you have to be able to show that you are following a defined process. And that means being able to produce a record of what’s going on in your DevOps …

How regulated teams can avoid the DevOps Lite trap with DevOps Change Management

DevOps is being adopted across regulated industries, but old ITIL approaches to change management still create unnecessary lead times and risks. Fortunately, you don’t have to fall into the DevOps …

How to secure your software supply chain with Artifact Binary Provenance

In Kosli, we use Artifact Binary Provenance as the foundation for our audit trails. Artifact Binary Provenance is a fancy term, but the idea behind it is really quite simple. All it means is that we …

Kosli 2021 - Making friends with change

A lot can happen in a year, and 2021 was no different. We want to help everyone make friends with change and in 2021 we made a few changes ourselves. Hit play on Eye of the Tiger 🐅 and roll the …

8 reasons why we do ensemble programming

At Kosli we do as much of our work as possible in a group setting, especially (but not limited to) programming. In our experience most tech teams don’t do this and we think they’re missing out on all …

Ready to ship with more confidence?

Get security and compliance you can trust without slowing down or changing your tools.
Request a demo Start for free
Auditor and Kosli user

Got a question about Kosli?

We’re here to help, our customers range from larges fintechs, medtechs and regulated business all looking to streamline their DevOps audit trails

Contact us