I will perform cloud security assessment for AWS azure and gcp
Protecting you from criminals
About this Gig
Are your cloud workloads a ticking time bomb?
AWS, Azure, and GCP are only as secure as your configuration. A single misconfiguration, open storage bucket or overly permissive IAM role can lead to breaches costing millions. Cloud providers secure the infrastructure, but your data and access controls are entirely on you.
I am cyberhassaan, a certified ethical hacker specializing in cloud security. I help startups and SMBs identify and patch critical cloud vulnerabilities before threat actors exploit them.
What My Assessment Delivers:
- Configuration Review: Audit of security groups, ACLs, logs, and public storage.
- IAM Audit: Discovery of privilege escalation paths and missing MFA.
- Compliance Mapping: Alignment with CIS Benchmarks, NIST, PCI DSS, HIPAA, and SOC 2.
- Actionable Report: Step-by-step remediation guide with config snippets.
Tools I Use:
- Prowler, ScoutSuite, CloudSploit
- Custom Python scripts for manual logic flaw testing
Why Choose Me?
- Certified Expert with attack-minded manual verification (no automated-only spam).
- Jargon-free executive summaries for stakeholders.
Secure your infrastructure before it's too late. Order now and let's build a fortress around your cloud!
FAQ
Which cloud platforms do you support?
I support all three major public cloud platforms like AWS, Microsoft Azure, and Google Cloud Platform (GCP). You can choose one platform for the Basic/Standard packages, or utilize multiple platforms via the Premium tier and gig extras.
Do I need to give you access to my live cloud account?
Yes, I'll need read only access to your cloud environment. I'll provide a step by step guide on how to safely create a secure, limited-access IAM auditor role that keeps your infrastructure safe. All access can be revoked immediately after the engagement is completed.
Will the security assessment impact my production systems or cause downtime?
Not at all. My assessment methodologies are completely non-intrusive and read-only. I do not make any changes to your active environment, ensuring zero risk to your platform's operational uptime or performance.
Will this assessment satisfy our compliance audit requirements?
Yes. My assessment models map directly to industry standards like CIS Benchmarks, NIST, PCI DSS, HIPAA, and SOC 2 requirements. The resulting reports provide solid technical proof of due diligence for your external auditors.
What if I don't understand the technical configuration findings?
Every single report includes a high-level executive summary written in clear, plain language for management. Additionally, the standard and premium tiers include dedicated consultation calls where I walk your team through every single finding and answer your questions.
Can you help hands-on to patch the issues discovered?
My packages provide highly detailed remediation documentation, including specific commands and configuration snippets. If your engineering team requires hands-on assistance to apply the fixes directly to your console, we can easily set up a separate custom order.

