👉 Read the book here: https://github.com/ZachGoldberg/Startup-CTO-Handbook

Chapters

Introduction

People & Culture

Technical Team Management

Tech culture and general philosophy

TODO Tech debt

Technology Roadmap

Tech process

Developer Experience (DX)

Tech Architecture

Architecture

Tools

DevOps

Testing

Source Control

Production Escalations

IT

Security & Compliance

Conclusion: Measuring success

257

Whether it’s due to the industry you are in, the size of your business, or the nature of your customers, most startups need to comply with at least one formal compliance framework. If your users are in Europe, then you need to comply with GDPR. If you’re taking in user data, it’s wise to under-stand the CCPA. If you’re working with enterprise clients, you’ll be asked for your SOC 2 or ISO 27001 certification. In healthcare, you’ve got HIPAA, and if you’re in payments, you’ve likely heard of PCI DSS.