Identity & Access
IAM least-privilege, roles, keys and MFA.
Posture and configuration review across AWS and Azure, without ever touching your credentials.
Most cloud breaches are not clever, they are misconfigurations: an over-permissioned role, a public bucket, a missing log. I review your cloud against those failure modes and give you a prioritised path to a hardened posture.
Aligned to CIS Benchmarks and cloud posture (CSPM) best practice.
IAM least-privilege, roles, keys and MFA.
Public services, storage and internet-facing assets.
Centralised logging, monitoring and audit trails.
Key, secret and credential handling.
// providers covered
IAM, S3, EC2, VPC, CloudTrail, GuardDuty — configuration review against CIS Benchmarks.
Entra ID, Defender, Sentinel, Key Vault, network security groups and storage exposure.
IAM, Security Command Center, Cloud Armor, service accounts and bucket permissions.
Send a short request, and I will help shape the right scope on the first call.