I will perform an enterprise cloud security risk assessment
Cloud Security Architect for Hybrid Cloud, IAM and Zero Trust
Vetted by Fiverr Pro
Marlon Costa was selected by the Fiverr Pro team for their expertise.
Vetted for
Cybersecurity
About this Gig
Vetted Pro
Are you confident your hybrid cloud environment is secure against modern threats?
I provide an enterprise-grade Hybrid Cloud Security Risk Assessment designed for organizations that need a clear, unvarnished view of their vulnerabilities across on-prem and cloud boundaries.
This is not a basic automated scan. As a Principal Cloud Security Architect, I deliver an architecture-led analysis focused on real-world business risks.
What this assessment covers:
- Cloud Network & Security segmentation
- IAM and Privileged Access exposure
- Configuration baseline drifts
- Storage and Data Protection posture
- Governance and logging consistency
What you will receive (depending on package):
- Executive Summary for leadership
- Prioritized Findings Report
- Risk Matrix
- Practical Remediation Roadmap
Stop guessing where your cloud security gaps are. You will receive practical, decision-ready outputs that both technical engineering teams and C-level stakeholders can use to protect the business.
Please send me a message or book a 30-min Consultation Call through my profile before ordering so we can align on your exact environment footprint.
Expertise:
Audit
•
Gap analysis
•
Risk assessment
Technology:
Cloud - IaaS
•
Data centers
•
Firewalls
•
Networking
•
Saas
Regulation:
ISO
My Portfolio
Other Cybersecurity Services I Offer
FAQ
Is this a penetration test?
No. This project is a security risk assessment and architecture review, not an active penetration test. The focus is on identifying risks, control gaps, and improvement opportunities across the scoped hybrid environment.
Which environments can you assess?
I can assess AWS, Azure, GCP, private cloud, on-premises environments, or mixed hybrid scenarios. The project can also include supporting areas such as IAM, privileged access, network exposure, logging, and governance.
Do I need to provide an architecture diagram?
A diagram is strongly recommended because it improves the quality and speed of the assessment. If you do not have one, a written environment summary is acceptable for smaller or well-defined scopes.
What will I receive at the end of the project?
Depending on the package, you may receive an executive summary, findings report, risk matrix, remediation roadmap, and architecture recommendations. The deliverables are designed to be practical and decision-ready.
Is this useful for audit or compliance preparation?
Yes. While this is not a formal certification audit, it is very useful for identifying control gaps, improving readiness, and supporting initiatives related to frameworks such as NIST, ISO, SOC 2, PCI DSS, and similar requirements.

