AWS & Azure Infrastructure

Production-ready AWS & Azure infrastructure.
Without the guesswork.

Templates built from production deployments. Consulting for teams tired of learning cloud infrastructure the expensive way.

guardduty-investigator — lambda

Services

Infrastructure that ships. Templates built from production deployments — not boilerplate — and consulting for the work that needs a human in the loop.

Templates

Ready-to-Deploy Infrastructure Templates

CloudFormation, Bicep, and Terraform templates for AWS and Azure — security, backup, networking, WorkSpaces, AVD, and more. Generalized for any environment, documented for real operations teams.

Consulting

Cloud Architecture & Implementation

Fixed-price engagements for AWS and Azure — landing zones, multi-account governance, security tooling, VDI deployments, and cross-account architectures. Scoped clearly, delivered completely.

Automation

AI-Powered Operations

Lambda and Bedrock-based automation for security triage, operational runbooks, and alert enrichment — reducing manual investigation time across AWS environments.

Ready-to-Deploy Templates

AWS templates include CloudFormation + Terraform. Azure templates include Bicep + Terraform. All include full test suite, README, and OPERATIONS.md.

AWS · Security

GuardDuty Triage Investigator

Automated GuardDuty finding investigation powered by Amazon Bedrock. Verdict, evidence, and recommended actions via email within seconds.

$349
CloudFormation
+ Terraform
AWS · Backup

AWS Backup Plan

Tag-driven backup strategy for DynamoDB, RDS, Aurora, EFS, and EC2. Cross-account copy, lifecycle rules, compliance reporting.

$79
CloudFormation
+ Terraform
AWS · Security

SecurityHub Core

CIS + AWS Foundational Security standards, multi-region aggregation, EventBridge routing for HIGH/CRITICAL findings, compliance dashboards.

$199
CloudFormation
+ Terraform
AWS · Cost Management

Cost Control & Monitoring

Budget alerts, anomaly detection, daily spend reports, service-level cost tracking, tagging enforcement, rightsizing recommendations.

$179
CloudFormation
+ Terraform

Full Catalog

Additional templates available on request — pay upfront, delivered in 2 weeks. Cloud-agnostic categories covering AWS and Azure.

AWS · Azure · Category

Security & Compliance

SecurityHub, Config, CloudTrail, Azure Security Center, Sentinel — multi-region aggregation, compliance frameworks, automated remediation.

$179–349
2 week
delivery
AWS · Azure · Category

Backup & Disaster Recovery

AWS Backup plans, Azure Backup vaults, cross-region replication, lifecycle policies, compliance reporting, recovery runbooks.

$79–199
2 week
delivery
AWS · Azure · Category

Virtual Desktop Infrastructure

AWS WorkSpaces, Azure Virtual Desktop — golden images, autoscaling, AD integration, multi-session hosts, monitoring dashboards.

$199–249
2 week
delivery
AWS · Azure · Category

Networking Foundation

VPC/VNet, subnets, NAT/Firewall, VPN, Transit Gateway, hub-spoke topologies, route tables, security groups, VPC endpoints.

$49–199
2 week
delivery
AWS · Azure · Category

Identity & Access Management

IAM Identity Center, Entra ID integration, SSO, SAML, SCIM provisioning, permission sets, cross-account roles, least privilege policies.

$129–199
2 week
delivery
AWS · Azure · Category

DevOps & CI/CD

CodePipeline, Azure DevOps, GitHub Actions integration, automated testing, blue/green deployments, rollback automation.

$179–249
2 week
delivery
AWS · Azure · Category

Data & Databases

RDS, Aurora, DynamoDB, Azure SQL, Cosmos DB — multi-AZ, automated backups, read replicas, parameter optimization, monitoring.

$99–179
2 week
delivery
AWS · Azure · Category

AI & Automation

Amazon Bedrock, Azure OpenAI, Lambda/Functions automation, operational runbooks, alert enrichment, security triage.

$229–349
2 week
delivery
AWS · Azure · Category

Cost Management

Budget alerts, Cost Explorer automation, rightsizing recommendations, Reserved Instance analysis, tag enforcement, spend dashboards.

$129–179
2 week
delivery
AWS · Azure · Category

Landing Zones & Governance

Control Tower, Azure Landing Zones, multi-account organization setup, SCPs, policy enforcement, centralized logging, audit trails.

$179–249
2 week
delivery
AWS · Azure · Category

Monitoring & Observability

CloudWatch dashboards, Log Analytics workspaces, custom metrics, alerting rules, log aggregation, distributed tracing setup.

$99–149
2 week
delivery

Need something else? Custom templates scoped and delivered in 3 weeks.

Request Custom Template →

Built by someone who's run production AWS.

Every template here came out of a real production incident, a 2am page, or a compliance audit that couldn't wait. 20 years running infrastructure — help desk to CTO — means I've seen what breaks and what doesn't.

Generalized, hardened, and packaged for teams that don't have time to build from scratch — or don't want to find out the hard way what the edge cases are.

Based in Brecksville, Ohio. Available for fixed-price project engagements.

20+
Years infrastructure experience
$7–22
Typical monthly AWS cost per template

Focus Areas

  • AWS Security — GuardDuty, SecurityHub, IAM, CloudTrail primary
  • AWS Infrastructure — Networking, compute, storage, multi-account
  • Amazon Bedrock & Lambda automation Python 3.12
  • Azure Infrastructure — Networking, compute, storage, AVD/VDI
  • Infrastructure as Code — Terraform, CloudFormation, Bicep HCL · YAML
  • Cross-cloud & multi-region architectures

Deployment question? Scope discussion? Hit reply fast.

For template purchases: instant download link. For consulting: 48hr scoping response.

✉ matt@mrusselltech.com 48hr response · Fixed-price engagements