Living documentation that stays in sync with engineering, cloud, AI, and compliance activity. Documents update themselves as the organization changes.
Governs how UBC builds, packages, signs, and promotes software through CI/CD.
Produce trustworthy build artefacts and promote them through environments in a controlled manner.
All application, service, and infrastructure builds.
| Activity | R | A | C | I | Cadence |
|---|---|---|---|---|---|
| Configure pipeline | Platform Eng | Release Manager | Team | Engineering | Per pipeline change |
| Cut release | Release Manager | Engineering Director | PMO | Stakeholders | Per release train |
| Sign & attest artefact | Pipeline (Sigstore) | Release Manager | Security | Team | Every build |
Inputs
Outputs
| Metric | Target |
|---|---|
| Signed artefacts in prod | 100% |
| Mean lead time (commit → prod) | ≤ 24h |
| Record | Retention |
|---|---|
| Build logs & artefacts | 3 years |
| Change records | 7 years |
See the Versions tab for the full change history maintained by the Auto-Doc Engine.
Document code: SOP-SDLC-04 · Aligned to CMMI-DEV PI / SLSA Level 3. Controlled document — reproduction outside the UBC QMS requires the Quality Manager's approval.