Four Layers of Preventive Security
Effective prevention requires controls at every layer. Guardrails orchestrates all four for Oracle Cloud:
Build
Block non-compliant infrastructure before deployment with Resource Manager validation. Validate templates and reject resources that donβt meet your standards.
Access
OCI IAM Policies control access at the tenancy and compartment level. Restrict regions, deny services, enforce boundaries across tenancies and compartments.
Config
Compartment and service-level settings that prevent misconfigurations by default. Object Storage retention rules, encryption settings, network security defaults.
Runtime
Continuously monitor and instantly fix misconfigurations that slip through. Auto-remediation runs 24/7 without manual intervention.
Preventive Security capabilities for Oracle Cloud:

Visualize Preventive Posture
See what your OCI IAM Policies and compartment-level controls actually do across your environment. Guardrails translates policy statements into plain language and shows inheritance, exceptions, and coverage gaps.
Search for any policy and see which tenancies and compartments it protects. View the organizational hierarchy with policy attachments at a glance.

Benchmark Your Preventive Posture
Understand where prevention gaps exist and which controls would have the biggest impact. Guardrails shows which security objectives lack coverage and recommends the best preventive controls to deploy.
Prioritize by risk reduction potential. See exactly which alerts each control would prevent.

Prevention for Runtime
Continuously monitor and instantly fix misconfigurations that slip through preventive controls. Automated remediation runs 24/7 across all compartments without manual intervention.
From unversioned Object Storage buckets to missing freeform tags, runtime prevention catches and fixes drift as it happens.

Simulate Before You Deploy
Test new preventive controls against your actual OCI environment before deployment. See exactly which resources would be affected and which operations would be impacted.
No surprises. No broken deployments. Validate controls in a safe simulation mode first.

Rollout & Expand
Deploy preventive controls progressively across your organization. Start with non-production tenancies and compartments, validate behavior, then expand to production with confidence.
Communicate changes to stakeholders, track rollout progress, and ensure consistent policy enforcement across all compartments.