The Defend, Contain, Comply workshop is a hands-on Ansible Automation Platform experience focused on vulnerability management. In this workshop you will manage a complete vulnerability lifecycle on a RHEL system using AAP — from detecting and containing a critical CVE, through policy-gated patching, to compliance validation and hardened container delivery.
NOTE
Complete the modules in order — each builds on the previous one.
| Resource | Link |
|---|---|
| Workshop content and exercises | rhpds.github.io/zt-ans-defend-contain-comply |
| Follow-up assets | TO DO |
| Post-event survey | TO DO |
| Certain registration page & promotional email copy | TO DO |
| Presenter instructions and guide | TO DO |
| Certain event banners | TO DO |
This workshop is intended for security and operations teams who need to automate vulnerability response, policy-gated remediation, and compliance hardening with Ansible Automation Platform. Attendees will work with Event-Driven Ansible, Open Policy Agent (OPA), Splunk, and Ansible Automation Platform workflows in a realistic CVE management scenario.
This workshop is geared toward security engineers, platform engineers, DevSecOps practitioners, compliance teams, and anyone interested in automated vulnerability lifecycle management with Ansible Automation Platform.
There is no student prep work required prior to the workshop. It is recommended to complete the free Red Hat training course Ansible Basics: Automation Technical Overview.
Labs are available via the Red Hat Demo Platform under the Defend, Contain, Comply catalog item.
| Activity | Link | Estimated Time |
|---|---|---|
| Workshop Overview | 📖 View Overview | ⏱️ 10 minutes |
| Slides: Introduction + Workshop Brief | TO DO | ⏱️ 10 minutes |
| Module 1: DEFEND — Detect and Contain | 🚀 Launch Exercise | ⏱️ 40 minutes |
| Slides: Brief for Module 2 | TO DO | ⏱️ 5 minutes |
| Module 2: CONTAIN — Policy-Gated Remediation | 🚀 Launch Exercise | ⏱️ 40 minutes |
| Slides: Brief for Module 3 | TO DO | ⏱️ 5 minutes |
| Module 3: COMPLY — Audit, Harden, Deliver | 🚀 Launch Exercise | ⏱️ 40 minutes |
| Conclusion | 📖 View Conclusion | ⏱️ 10 minutes |
Individual modules from this workshop can be used as standalone demos for vulnerability detection and containment, policy-gated patching, or compliance hardening scenarios.
Additional collateral for security automation:
| Title | Link |
|---|---|
| Implementing Zero Trust with Ansible Automation Platform | Zero Trust workshop |
| Security automation collateral | TO DO |
This is an official Ansible Workshop
This workshop is maintained by the Red Hat Ansible Technical Marketing Team. Please open an issues on Github
