Infrastructure as code you can trust to apply

Terraform or OpenTofu, with Terragrunt where it helps. Reviewed in pull requests, applied by CI, reproducible from scratch.

Sound familiar?

What you get

Everything in code

Existing resources imported, drift found and resolved.

A layout that scales

Small units with their own state, shared modules, and one way to add a project.

Keyless CI

A plan on every pull request and an apply on merge, authenticated with Workload Identity Federation instead of keys.

Security as code

Org policies and IAM reviewed like any other change.

Or just an audit

A written report on your existing code: what is risky and what to fix first.

How it runs

  1. Review

    You show me what runs and where it hurts. I look at the real setup, not a slide deck.

  2. Plan

    A short written plan: what changes, in what order, and how long it takes.

  3. Build

    Small steps you can review and roll back, dev before prod.

  4. Handover

    Docs and a runbook so your team can run it, with me on call if you want.

Where I've done this