How Substrate helps with compliance

Whether you're doing SOC2, ISO 27001, PCI, or just want to follow best practices, Substrate makes it easy to build isolated environments with role based access control on AWS.

Substrate helps with compliance by:

Implementing logical access control through integration with OAuth OIDC identity providers for AWS access, supporting unique user accounts, two-factor authentication, and role-based access.

Facilitating user onboarding, offboarding, and role changes through your identity provider.

Enforcing logical access security measures to protect against external threats, with restricted SSH or API access and control via your identity provider.

Restricting information transmission and movement, and securing it through AWS IAM policies.

Supporting infrastructure changes with Terraform, ensuring environment separation and gradual implementation in production.

Aiding in multi-region architecture and disaster recovery readiness.

For a detailed understanding, please refer to the Substrate documentation.