Manage Cloud Visibility and Governance with Infrastructure as Code
Blog post from Pulumi
Pulumi has introduced new resources in the Pulumi Service Provider to enhance cloud visibility and governance, addressing the common challenge organizations face in maintaining visibility across their cloud environments. These resources allow users to discover all cloud resources, enforce governance policies programmatically using infrastructure as code, and manage cloud infrastructure through automated governance workflows, enabling integration with GitOps and CI/CD. The new features include InsightsAccount for automated scanning and resource discovery across multiple cloud environments such as AWS, Azure, GCP, Kubernetes, and OCI, as well as PolicyGroup for organizing resources and applying compliance policies at scale. Users can configure policy groups in audit or preventative mode to either report or block policy violations, respectively. Additionally, the service includes data sources like getPolicyPacks and getPolicyPack to query available policy packs, supporting enhanced policy management and compliance across cloud accounts and Pulumi stacks.