IAM cleanup
Remove stale users and keys, enforce MFA, move to roles and SSO, and tighten policies to least privilege.
Cloud accounts drift. A contractor’s access key from two years ago, an oversized database nobody sized down, snapshots with no retention policy. I keep the account clean month after month, so the bill is predictable and the audit isn’t scary.
Remove stale users and keys, enforce MFA, move to roles and SSO, and tighten policies to least privilege.
Find idle and oversized resources, set budgets and alerts, and right-size where it’s safe.
Snapshot and backup policies with retention, plus documented and tested recovery steps.
Baseline alerting, patch status, and a monthly posture report you can hand to a customer or auditor.
No. This is ops and hygiene — the account, not the app. I’ll work alongside your developers and give them a cleaner, safer place to ship.
I start with read-only access for the audit, then use scoped roles for changes. Every change is logged and explained in the monthly report.
Migrations are scoped separately as fixed-price projects. The monthly hygiene work keeps things tidy afterward.
Often, through cost cleanup alone — but that’s not a promise. You’ll see findings and estimated savings in the first month’s report.
A free 30-minute call to talk through your stack, your size, and the actual headache. You’ll leave with next steps, whether or not we work together.