Home/Services/Audit AWS

AWS Serverless Audit

I go through your AWS infra top to bottom — security, costs, performance, compliance. You get a clear report and a concrete action plan.

36+

checkpoints

5-10

business days

4

deliverables

What I Audit

IAM & Network Security

IAM roles, MFA, policies, security groups, NACLs, public/private subnets, SSH, VPN.

FinOps

Lambda sizing, DynamoDB mode, S3 lifecycle, CloudWatch logs, Reserved Capacity.

Serverless Architecture

Lambda, API Gateway, DynamoDB, S3, CloudFront, SQS, EventBridge. Patterns and anti-patterns.

Observability

CloudTrail, GuardDuty, AWS Config, VPC Flow Logs, X-Ray, CloudWatch alarms.

Compliance

GDPR, ISO 27001, SOC2, AWS Well-Architected Framework. Scoring and gap analysis.

Secrets & IaC

Plaintext secrets, rotation, Secrets Manager, CloudFormation/Terraform review.

Deliverables

01

Complete Audit Report

Each finding categorized by severity (critical, high, medium, low) with framework references (ISO 27001, SOC2, GDPR, Well-Architected). Current architecture documented.

02

Technical Remediation Plan

Target architecture, CloudFormation/Terraform stacks, dependency graph and execution order. Not just recommendations — an executable plan.

03

Costed Estimation

Implementation cost per phase, impact on monthly AWS bill, and options (security only vs full modernization).

04

Leadership Briefing

Non-technical summary for CEO/CTO: risks in business language, legal/financial consequences, clear recommendation.

Process

01

Scoping

30 min — context, scope, access

02

Analysis

3-7 days — live audit + IaC review

03

Delivery

Report + plan + estimation

04

Presentation

Team call + leadership briefing

Pricing

Standard Audit

2 500 EUR

5 business days

  • IAM & network security
  • FinOps analysis
  • Serverless architecture review
  • Report + action plan
Recommended

Full Audit

5 000 EUR

10 business days

  • Everything in standard +
  • Compliance (GDPR, ISO 27001, SOC2)
  • Detailed technical remediation plan
  • Costed estimation of work
  • Non-technical leadership briefing
  • Target architecture documented

Real Case

Health startup: 36 vulnerabilities, 9 critical, score 2/10

Database in public subnet, plaintext Stripe secrets, zero MFA, zero monitoring. The full audit revealed vulnerabilities that could have cost millions in GDPR fines.

Frequently Asked Questions

How much does an AWS audit cost?+
A complete AWS serverless audit starts at €2,500 for a 5 business day analysis. Price varies based on your infrastructure complexity and desired scope (security, costs, performance, or full audit).
What does the AWS audit deliverable include?+
A full report: where you stand today (documented architecture), what's wrong (vulnerabilities, wasted spend), and what to fix first with a costed action plan.
How long does an AWS audit take?+
A standard audit takes 5 business days. The in-depth audit with load testing and code review takes 10 days. Results are presented in a meeting with your technical team.

Worried about your AWS infrastructure?

Free 30-minute call. Let's see together if an audit makes sense for you.

Schedule a call