Compliance is the last work you want product engineers thinking about and the first work you want them to do correctly. The historical answer was to hire a separate compliance engineering team. The honest answer is that you can't recruit one fast enough.
What Stradiva gave us is a property of the platform — every config change, every secret read, every deploy is signed and streamed to the same audit ledger. When the SOC 2 auditors ask "show me the access controls", we don't open a runbook. We open the platform.
Our last SOC 2 prep took two weeks. The first one had taken eleven months. The work didn't disappear — it moved into the substrate.
— Arjun Reddy, Head of Platform, Tessera
