OPA, Sentinel, Azure Policy — enforce compliance rules on infrastructure before and after deployment.
Five passes over the same idea, each from a different angle. Do them in order, or jump to whichever you need.
Policy as Code defines compliance rules in code that is versioned, tested, and enforced automatically. Tools: OPA/Rego (Terraform), Sentinel (Terraform Cloud), Azure Policy, and Checkov (static analysis). Enforce naming conventions, allowed regions, required tags, and security baselines.