I will set up and harden your AWS account with security best practices
Senior Cloud, DevOps and Network Automation Engineer
About this Gig
Get an AWS account that is secure from day one, set up by a senior cloud and network engineer with 11+ years running production infrastructure on AWS, Azure, GCP and on-prem datacenters.
What you get:
- Root account lockdown and MFA everywhere
- IAM users, roles and groups with least privilege
- CloudTrail and GuardDuty enabled, with alerting
- Baseline VPC with public and private subnets
- S3 bucket policies and billing alerts
- A clear runbook your team can follow
Standard adds AWS Organizations with SCP guardrails for a multi-account structure. Premium codifies everything in Terraform so your landing zone is repeatable and reviewable.
How I work: I align to your timezone, reply the same day, and deliver configs, code and documentation into your repo with no lock-in. Changes that could touch running workloads are planned with you first, with a rollback note.
Not sure which package fits, or need Azure or GCP instead? Send me a message before ordering and I will suggest the right scope.
Cloud provider:
Amazon Web Services
Expertise:
Installation
•
Configuration
Cloud computing resource:
VPC
•
Security Groups
My Portfolio
Other Cloud Computing Services I Offer
FAQ
What access do you need from me?
A dedicated IAM role or user with the permissions we agree on. I can send you a least-privilege policy, or we can work over a screen share if you prefer to keep control.
Will this affect my running workloads?
Changes are reviewed with you first. Anything that could affect production is scheduled in a window you approve, with a rollback note.
Do you also work with Azure or Google Cloud?
Yes. I work across AWS, Azure and GCP. Send me your scope and I will prepare a custom offer.
