// technical writing

DevOps Blog

Practical guides, war stories, and deep dives on Kubernetes, AWS, CI/CD, and cloud-native engineering.

// featured post
// all articles
πŸ—οΈ
Structuring Terraform for Large Teams: Modules, Workspaces & Remote State

How I organise Terraform codebases so 10+ engineers can work without stepping on each other's state files.

πŸ”’
AWS IAM: Least Privilege in Practice β€” Not Just in Theory

A real-world walkthrough of tightening IAM policies without breaking your pipelines. Includes SCPs, permission boundaries, and common gotchas.

πŸš€
GitHub Actions: Building a Production-Grade Docker + K8s Pipeline

Step-by-step guide to building a pipeline that lints, tests, builds, pushes to ECR, and rolls out to Kubernetes β€” with secrets management included.

βš™οΈ
Ansible Vault: Managing Secrets Without Losing Your Mind

Encrypting secrets in Ansible the right way β€” vault IDs, partial encryption, and integrating with CI/CD without exposing credentials.

πŸ’Έ
How I Cut AWS Bills by 40% Without Touching the Application

Reserved Instances, Savings Plans, right-sizing, S3 storage classes, and NAT Gateway optimisation. Lessons from real production environments.

Get notified when I publish

No spam. Just practical DevOps content when it's ready.