Skip to content

Packages

Out-of-the-box engagements with a fixed shape.

Repeatable, battle-tested engagements I have shipped enough times that you do not have to design the work with me. Each package has a clear scope, a typical timeline and a concrete deliverable. If your problem does not fit a package, you want a custom engagement instead.

Cloud cost audit

A focused look at where your cloud bill actually goes, and a prioritised plan to cut it without breaking anything.

For you if

  • Your AWS, GCP or OCI bill has grown faster than your usage.
  • You suspect waste but nobody has time to dig through cost explorer.
  • You want to know what to switch off before talking to your CFO.

What you get

  • Account-by-account spend breakdown with the top 10 cost drivers.
  • Idle resources, oversized instances and wrong storage tiers flagged.
  • Reserved/Savings Plans recommendations sized to your actual usage.
  • A two-page plan ranked by impact and effort.

Zero-to-CI/CD

A repeatable build, test and deploy pipeline wired up to a cloud account that did not have one before - or had something nobody trusts.

For you if

  • You ship from a developer's laptop or a hand-rolled shell script.
  • You have a stack (Node, Python, Java, Go, .NET, PHP...) but no pipeline you can rely on.
  • You want to onboard the next developer without a week of setup.

What you get

  • GitLab CI or GitHub Actions pipeline with templated build / test / deploy stages.
  • Terraform-managed cloud foundation (accounts, network, IAM baseline).
  • Container image build, vulnerability scan and registry push.
  • Promotion path from preview environments to production with manual gates.

Kubernetes starter platform

An opinionated, production-ready Kubernetes cluster that comes with the pieces real teams need on day one, not the bare minimum.

For you if

  • You decided you need Kubernetes but you do not want to assemble it from blog posts.
  • Your current cluster grew organically and you cannot tell what is running where.
  • You want one cluster you can hand to a small team without it eating their week.

What you get

  • EKS / GKE / OKE cluster managed by Terraform.
  • GitOps deployment (ArgoCD or Flux) with sane defaults.
  • Observability baseline: Prometheus, Grafana and centralised logs.
  • Secrets management, ingress, certificates and image pull policies.

Security baseline

The minimum compliance-friendly setup so your next security questionnaire, audit or enterprise prospect does not stall you.

For you if

  • A customer or auditor sent you a 200-line questionnaire.
  • You are chasing ISO 27001, SOC 2 or GDPR alignment.
  • You know your cloud has open SSH ports and admin keys nobody rotates.

What you get

  • Identity baseline: SSO, MFA enforcement, role hygiene, secret rotation.
  • Network baseline: private subnets, egress controls, no public buckets.
  • Logging baseline: CloudTrail / audit logs centralised and retained.
  • Backup and recovery policy with documented RPO / RTO.
  • Evidence pack you can paste into an audit response.

Observability for one workload

A focused observability rollout around one application, one piece of infrastructure or one CI/CD pipeline - metrics, logs, traces and alerts you can actually act on.

For you if

  • You find out about outages from customers instead of from your monitoring.
  • Your dashboards are full of green checkmarks while users complain about latency.
  • Your CI/CD passes but nobody can tell you which build broke production three days later.
  • You want a real observability story for one critical workload before rolling it out everywhere.

What you get

  • Golden-signal dashboard (latency, traffic, errors, saturation) tailored to the target workload.
  • Structured logs flowing into one searchable index with retention you control.
  • Distributed traces (or a meaningful equivalent) covering the critical path.
  • Actionable alerts wired to the right person and channel, with thresholds tuned to your real traffic.
  • Your choice of cloud-native stack (CloudWatch + X-Ray, Cloud Operations Suite, OCI Monitoring) or open source (Prometheus, Grafana, Loki, Tempo, OpenTelemetry).
  • Everything in Terraform / Helm so you can repeat the setup for the next workload without me.

Fractional DevOps architect

A few hours a week of senior DevOps thinking on retainer, instead of hiring an in-house lead you do not need yet.

For you if

  • Your team needs senior judgement, not a full-time hire.
  • You are about to make a stack or vendor decision you cannot easily reverse.
  • Your engineers want a sounding board for architecture and incidents.

What you get

  • Weekly architecture and roadmap reviews with your tech leads.
  • Code and Terraform reviews on PRs that touch infrastructure.
  • Incident post-mortems and on-call playbook coaching.
  • Hiring help: technical interviews and JD review for your first DevOps hire.

Not sure which package fits?

Tell me what you are trying to fix or ship and I will tell you which one (if any) is the right starting point. If none of them fit, we talk about a custom engagement instead.

Get in touch