resourecely logoresourcely logo
Product
Product
Guardrails

Infrastructure policies that keep your cloud resources safe

Campaigns

New!

Remediate infrastructure that doesn't meet your standards

Blueprints

Build paved roads for configuring infrastructure

Foundry

AI-powered IaC templating IDE for platform engineers

Solutions
Terraform Policies

Rules for infrastructure, embedded into CI

Fix CSPM Findings

Remediate misconfigurations in existing infrastructure

Compliance and Governance

Control your infrastructure and stay compliant with PCI, CIS, SOC 2, and more

Migrations and Upgrades

Change versions, update properties, and push migrations at scale

Featured from Blog

Announcing Resourcely Campaigns

Define, identify, and fix cloud misconfiguration in your existing resources

Read more
See all articles
Why Resourcely
Solutions
Security
DevOps
Developers
Platform Engineering
Resources
Resource(ly)s
Pricing
Docs
Case Studies
Interactive Demos
Integrations
Blog
Guardrail Library

Pre-built policies that you implement in minutes

Compliance Packs

Guardrail compilations for standards like CIS, PCI, and NIST

Blueprint Library

Handcrafted templates with built-in best practices

<- All Compliance Standards
SOC 2
Description
System and Organization Controls (SOC) 2 is an auditing procedure that ensures service providers securely manage customer data. The SOC 2 framework is based on five trust service criteria: security, availability, processing integrity, confidentiality, and privacy.
Number of Guardrails
0
Relevant Guardrails
Disallow inbound open access
-->
Disallow inbound open access on Azure NSG
-->
Disallow inbound open access on GCP firewall rules
-->
Disallow public access on Azure Storage accounts
-->
Disallow public ACLs on S3 buckets
-->
Disallow public GCS buckets
-->
Disallow publicly accessible Azure SQL
-->
Disallow publicly accessible Cloud SQL
-->
Disallow publicly accessible RDS
-->
Enforce strong IAM password policy
-->
Require AWS Config to record all resources
-->
Require EBS encryption
-->
Require encryption on Azure managed disks
-->
Require encryption on GCE disks
-->
Require HTTPS on Azure Storage Accounts
-->
Require SSE on S3 buckets
-->
Require SSE on GCS buckets
-->
Require SSE on Azure Storage accounts
-->
Send CloudTrail logs to CloudWatch
-->
Import 0 Guardrails
Made with 💙 and 🔒 around the world.

Copyright 2025, Resourcely, Inc.

Stay up-to-date on all things Resourcely
Thank you! Your submission has been received!
Thank you! Your submission has been received!
By subscribing you agree to our Terms and  Privacy Policy
Product
Guardrails
Campaigns

New!

Foundry IDEBlueprintsWhy ResourcelyHow It WorksPricing
Solutions
Terraform PoliciesRemediate VulnerabilitiesCompliance and GovernanceMigrations and UpgradesSelf-service Infrastructure
Tutorials
Cost OptimizationSimplify IAMAccelerate AIStreamline Account CreationEncryption by DefaultAutomate Data InfrastructureImplement Logging
Resourcely and...
CSPMsIaC ScannersSentinelOpen Policy Agent (OPA)Terraform ModulesTerraform RunnersInternal Developer Platforms (IDPs)BackstageCookiecutter
Company
Our TeamCareersSecurity
Resources
BlogCase StudiesDocumentationIntegrationsPodcastDemo LibraryROI CalculatorGuardrail LibraryGuardrail Compliance PacksBlueprint LibraryContact Us
Privacy PolicyTerms of Service

This paragraph element is used to remove UTMs from the URL. This should only be hidden.

This paragraph element is used to remove UTMs from the URL. This should only be hidden.

This paragraph element is used to remove UTMs from the URL. This should only be hidden.

This paragraph element is used to remove UTMs from the URL. This should only be hidden.

This paragraph element is used to remove UTMs from the URL. This should only be hidden.

This paragraph element is used to remove UTMs from the URL. This should only be hidden.