role-devops:aws-expert

Design, secure, and optimize AWS production cloud workloads.

14|3|Updated Feb 22, 2026
One-click install
npx skills add https://github.com/rnavarych/alpha-engineer --skill role-devops-aws-expert
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: role-devops:aws-expert
Source: https://github.com/rnavarych/alpha-engineer/tree/main/plugins/roles/role-devops/skills/aws-expert
Command: npx skills add https://github.com/rnavarych/alpha-engineer --skill role-devops-aws-expert

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes references (resource) components.

What problem does it solve?

This Skill provides deep expertise in AWS services, enabling users to design, secure, and optimize their cloud infrastructure for production workloads.

Core Features & Use Cases

  • Infrastructure Design: Architecting VPCs, EKS clusters, serverless applications (Lambda), and container orchestration (ECS).
  • Security & Compliance: Implementing least-privilege IAM, KMS encryption, Secrets Manager, CloudTrail, GuardDuty, and multi-account strategies.
  • Cost Optimization: Leveraging Savings Plans, Cost Explorer, and best practices for efficient resource utilization.
  • Use Case: A team needs to design a secure and scalable multi-account AWS environment. They can use this Skill to get guidance on setting up Organizations, SCPs, IAM roles, VPC networking, and centralized logging with CloudTrail and Security Hub.

Quick Start

Use the aws-expert skill to generate a secure VPC design for a multi-tier application.

Frequently Asked Questions about role-devops:aws-expert

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I design a secure multi-account AWS environment with Organizations and SCPs?

To design a secure multi-account AWS environment, use AWS Organizations to manage accounts and Service Control Policies to enforce security boundaries. You can implement least-privilege IAM roles, VPC networking, and centralized logging with CloudTrail and Security Hub.

What is the best way to secure my EKS cluster and VPC networking in AWS?

The best way to secure EKS clusters and VPC networking is by implementing least-privilege IAM, KMS encryption, and Secrets Manager. You should also enable GuardDuty for threat detection and follow VPC best practices for isolating workloads.

How can I optimize AWS infrastructure costs for production workloads?

You can optimize AWS infrastructure costs by leveraging Savings Plans and Cost Explorer to analyze usage patterns. Implementing best practices for efficient resource utilization across EC2, RDS, and S3 helps reduce production workload expenses.

Can I use this to architect serverless applications and container orchestration together?

Yes, you can architect both serverless applications using Lambda and container orchestration using ECS within the same AWS infrastructure. This approach provides comprehensive guidance on designing scalable workloads alongside your EKS clusters.

When do I need centralized logging and compliance hardening for AWS cloud workloads?

You need centralized logging and compliance hardening for AWS cloud workloads when operating production environments. Implementing CloudTrail for auditing and Security Hub for compliance posture ensures security hardening across multi-tier architectures.

Does this AWS expertise cover setting up DynamoDB and S3 for production?

Yes, this AWS expertise covers setting up DynamoDB and S3 for production environments. It provides comprehensive guidance on configuring managed databases and object storage alongside EC2 and RDS for optimized cloud workloads.