Twelve to sixteen hours per month. That’s how long it used to take operators to manually validate DISA STIG compliance across Kubernetes clusters.
Now, it takes seconds.
Compliance Operator, part of Rancher Government Carbide, automates DISA STIG validation for RKE2 clusters using a lightweight, integrated compliance operator. It fundamentally changes how federal teams validate cluster hardening against DISA-published STIGs. No third-party tools or extra configurations. Just faster, continuous compliance built directly into the platform.
Compliance Operator uses a Kubernetes-native operator that integrates directly into the Rancher UI. Once deployed through the Rancher application catalog, it opens a dedicated Rancher Compliance tab, where results are displayed in a structured, readable format.
Key benefits of the upgrade:
Admins can run scans on demand or set them to run continuously. Either way, Compliance Operator reduces compliance drift with minimal manual overhead.
Check out what an install, a run, and viewing results look like with Compliance Operator:
The install:
Running the scan:
Viewing the Results:
Compliance Operator directly impacts how security and platform teams work day to day. With automated, integrated validation:
Compliance Operator is delivered through Rancher Government Carbide, the government-hardened foundation for every Rancher Government solution. While the compliance operator itself is open source, the DISA STIG benchmark profiles it uses are created and maintained by RGS to meet U.S. federal security requirements.
This secures:
Earlier compliance tools were coupled to deprecated UI components and required custom integrations to maintain. Some relied on additional services or extensions that became unsustainable with Rancher’s move to newer frameworks. As a result, teams often postponed upgrades or manually rebuilt validation pipelines to maintain compliance checks.
Compliance Operator replaces that overhead with a simpler design, active support, and native platform integration. Teams can now validate more frequently, upgrade Rancher versions without hesitation, and focus on mission priorities instead of workaround maintenance.
This is about changing the compliance experience. We’ve taken a task that used to require hours of manual effort and made it effortless, reliable, and fully integrated. Compliance Operator is built for the way government teams operate: tight deadlines, hardened environments, and zero tolerance for drift.
Compliance Operator is available in the Rancher application catalog. Once enabled, the Rancher Compliance tab appears in the UI, with DISA STIG profiles ready to apply immediately, no extra configuration required.
From deployment to validation, the process takes minutes. There’s no need to delay upgrades or maintain compatibility with deprecated tooling.
With Compliance Operator, DISA STIG validation is a built-in capability that runs in seconds, transforming how Kubernetes compliance gets done.
Connect with William on LinkedIn here.
Rancher Government Solutions is specifically designed to address the unique security and operational needs of the U.S. Government and military as it relates to application modernization, containers, and Kubernetes.
Rancher is a complete open-source software stack for teams adopting containers. It addresses the operational and security challenges of managing multiple Kubernetes clusters at scale while providing DevOps teams with integrated tools for running containerized workloads.
RGS supports all Rancher products with U.S.-based American citizens with the highest security clearances who are currently supporting programs across the Department of Defense, Intelligence Community, and civilian agencies.