Cloud Infrastructure

A cloud bill you can predict, and an account you don’t worry about

Nobody set out to make the cloud account messy. A contractor’s access key from two years ago, a database nobody sized down, snapshots piling up. Every month I clean it up and keep it clean, so the bill is predictable, access makes sense, and nobody’s afraid to touch the console.

Sound familiar?

If you’ve thought this lately

  • “The cloud bill went up again, and nobody knows why.”
  • “There are access keys in here from people who left years ago.”
  • “We find out something’s down when a customer tells us.”
  • “Backups are ‘on,’ but we’ve never tried restoring one.”
  • “I’m nervous about changing anything in the console.”
Deliverables

What you get

01

No more mystery access

Stale users and keys removed, MFA enforced, humans moved to SSO and roles, and permissions tightened to what people actually need.

02

A bill you can predict

Idle and oversized resources found and right-sized, with budgets and alerts so surprises show up before the invoice does.

03

Recovery you’ve tested

Backup and snapshot policies with sensible retention, plus recovery steps that have actually been run.

04

A report you can hand to anyone

Monitoring, patch status, and a monthly posture report you can share with a customer, investor, or auditor.

In scope

  • AWS, Azure, or GCP account hygiene
  • IAM / Entra / Cloud IAM least-privilege cleanup
  • Cost Explorer reviews, budgets, and anomaly alerts
  • Backup policies and restore drills
  • CloudWatch / Azure Monitor / Cloud Monitoring baselines
  • Patch posture and security findings triage

Not included

  • Application development or feature work
  • Large migrations (quoted separately as a project)
  • 24/7 on-call or incident response
Common tools
AWSAzureGCPTerraformCloudWatchSecurity HubDefender for CloudIAM Identity Center
FAQ

Common questions

Do you write application code?

No. This is ops and hygiene — the account, not the app. I’ll work alongside your developers and give them a cleaner, safer place to ship.

Do you need admin access?

I start with read-only access for the audit, then use scoped roles for changes. Every change is logged and explained in the monthly report.

Can you do a migration?

Migrations are scoped separately as fixed-price projects. The monthly hygiene work keeps things tidy afterward.

Will this pay for itself?

Often, through cost cleanup alone — but that’s not a promise. You’ll see findings and estimated savings in the first month’s report.

Tell me what’s broken. I’ll map the way up.

A free 30-minute call. Tell me what’s keeping you up at night, and you’ll leave with a clear next step, whether or not we work together.