Defend, Contain, Comply — Vulnerability Lifecycle Automation with Ansible Automation Platform

The Defend, Contain, Comply workshop is a hands-on Ansible Automation Platform experience focused on vulnerability management. In this workshop you will manage a complete vulnerability lifecycle on a RHEL system using AAP — from detecting and containing a critical CVE, through policy-gated patching, to compliance validation and hardened container delivery.

NOTE

Complete the modules in order — each builds on the previous one.

Workshop Resources

Resource Link
Workshop content and exercises rhpds.github.io/zt-ans-defend-contain-comply
Follow-up assets TO DO
Post-event survey TO DO
Certain registration page & promotional email copy TO DO
Presenter instructions and guide TO DO
Certain event banners TO DO

Who is this workshop best for?

This workshop is intended for security and operations teams who need to automate vulnerability response, policy-gated remediation, and compliance hardening with Ansible Automation Platform. Attendees will work with Event-Driven Ansible, Open Policy Agent (OPA), Splunk, and Ansible Automation Platform workflows in a realistic CVE management scenario.

Target audience

This workshop is geared toward security engineers, platform engineers, DevSecOps practitioners, compliance teams, and anyone interested in automated vulnerability lifecycle management with Ansible Automation Platform.

Attendee Prerequisites

There is no student prep work required prior to the workshop. It is recommended to complete the free Red Hat training course Ansible Basics: Automation Technical Overview.

Presentation Deck

Lab provisioner

Labs are available via the Red Hat Demo Platform under the Defend, Contain, Comply catalog item.

Lab Index (Estimate total time ⏱️ 120-150 minutes)

Activity Link Estimated Time
Workshop Overview 📖 View Overview ⏱️ 10 minutes
Slides: Introduction + Workshop Brief TO DO ⏱️ 10 minutes
Module 1: DEFEND — Detect and Contain 🚀 Launch Exercise ⏱️ 40 minutes
Slides: Brief for Module 2 TO DO ⏱️ 5 minutes
Module 2: CONTAIN — Policy-Gated Remediation 🚀 Launch Exercise ⏱️ 40 minutes
Slides: Brief for Module 3 TO DO ⏱️ 5 minutes
Module 3: COMPLY — Audit, Harden, Deliver 🚀 Launch Exercise ⏱️ 40 minutes
Conclusion 📖 View Conclusion ⏱️ 10 minutes

Demos

Individual modules from this workshop can be used as standalone demos for vulnerability detection and containment, policy-gated patching, or compliance hardening scenarios.

Learning Resources

Documentation

Going Further

Additional collateral for security automation:

Title Link
Implementing Zero Trust with Ansible Automation Platform Zero Trust workshop
Security automation collateral TO DO


Ansible Workshop

This is an official Ansible Workshop

This workshop is maintained by the Red Hat Ansible Technical Marketing Team. Please open an issues on Github

ansible workshop logo