Skip to content

Introduce Govern Stage

Sam White requested to merge create-govern-stage into master

Why is this change being made?

For context on this MR, please reference https://gitlab.com/gitlab-com/Product/-/issues/4792+.

This MR makes the following changes:

  1. Removes the current Protect stage.
  2. Adds a new Govern stage.
  3. Adjusts the DevOps diagram to position Manage as a foundational stage, and Govern as an overarching stage across the DevOps lifecycle.
  4. Moves the Manage:Compliance group over to Govern:Compliance.
  5. Moves the former Protect:Container Security:Container Scanning category over to Secure:Composition Analysis:Container Scanning.
  6. Moves the former Protect:Container Security:Security Orchestration category over to Govern:Security Policies:Security Policy Management.
  7. Moves the Secure:Threat Insights group over to Govern:Threat Insights.
  8. Creates a new Dependency Management category under the Govern:Threat Insights group.

Author Checklist

  • Provided a concise title for this Merge Request (MR)
  • Added a description to this MR explaining the reasons for the proposed change, per say why, not just what
    • Copy/paste the Slack conversation to document it for later, or upload screenshots. Verify that no confidential data is added.
  • Assign reviewers for this MR to the correct Directly Responsible Individual/s (DRI)
    • If the DRI for the page/s being updated isn’t immediately clear, then assign it to one of the people listed in the Maintained by section on the page being edited
    • If your manager does not have merge rights, please ask someone to merge it AFTER it has been approved by your manager in #mr-buddies
  • If the changes affect team members, or warrant an announcement in another way, please consider posting an update in #whats-happening-at-gitlab linking to this MR
    • If this is a change that directly impacts the majority of global team members, it should be a candidate for #company-fyi. Please work with internal communications and check the handbook for examples.

Merge request reports