diff --git a/modules/policy-security-regulation-compliance.adoc b/modules/policy-security-regulation-compliance.adoc index 19954c7fea..bd769ea282 100644 --- a/modules/policy-security-regulation-compliance.adoc +++ b/modules/policy-security-regulation-compliance.adoc @@ -67,6 +67,8 @@ Any issues that are discovered are prioritized based on severity. Any issues fou |=== +//This table exists in sdpolicy-security.adoc file also. + [role="_additional-resources"] .Additional resources diff --git a/modules/sdpolicy-security.adoc b/modules/sdpolicy-security.adoc index 65e94ae0f9..b10a83840f 100644 --- a/modules/sdpolicy-security.adoc +++ b/modules/sdpolicy-security.adoc @@ -54,7 +54,23 @@ $ oc adm policy add-cluster-role-to-group self-provisioner system:authenticated: [id="regulatory-compliance_{context}"] == Regulatory compliance -See link:https://www.openshift.com/products/dedicated/process-and-security#compliance[OpenShift Dedicated Process and Security Overview] for the latest compliance information. +{product-title} follows common industry best practices for security and controls. The certifications are outlined in the following table. + +.Security and control certifications for {product-title} +[cols= "3,3,3",options="header"] +|=== +| Certification | {product-title} on AWS | {product-title} on GCP + +| ISO 27001 | Yes | Yes + +| PCI DSS | Yes | Yes + +| SOC 2 Type 2 | Yes | Yes + +|=== + +//This table exists in policy-security-regulation-compliance.adoc file also. + [id="network-security_{context}"] == Network security