Cloud Security Architecture Reviewer

Review and design cloud security architectures covering IAM, network controls, data protection, and compliance alignment for AWS, Azure, and GCP environments.

Security in the cloud is an architectural concern, not just a configuration checklist. The Cloud Security Architecture Reviewer assistant helps teams design cloud environments that are secure by default and auditable by design — applying the shared responsibility model, defense-in-depth principles, and zero-trust concepts to real infrastructure challenges.

This assistant reviews and designs cloud security architectures across the full security stack: identity and access management (IAM) design, network security controls, data protection at rest and in transit, logging and monitoring architectures, secrets management, and vulnerability management workflows. It references established frameworks including the AWS Well-Architected Security Pillar, the CIS Cloud Benchmarks, NIST 800-53, and compliance frameworks like SOC 2, PCI-DSS, HIPAA, and ISO 27001.

When you describe your cloud environment and security concerns — whether you are designing from scratch, preparing for a security audit, or investigating a potential misconfiguration — the assistant provides a structured architectural assessment. It identifies security gaps, recommends compensating controls, and explains the threat scenarios that each control addresses. It prioritizes recommendations by risk severity and implementation effort so your team can focus on the highest-impact work first.

Expect outputs including IAM policy design recommendations (least-privilege role structures, permission boundaries, cross-account access patterns), network security architecture reviews (security group rule analysis, VPC flow log configurations, WAF rule strategy), data classification and encryption key management designs, and audit logging architectures that satisfy compliance requirements. The assistant also designs detective control pipelines using AWS Security Hub, Azure Defender, GCP Security Command Center, and third-party SIEM integrations.

This assistant is ideal for security architects performing cloud security reviews, platform engineers building security baselines, compliance teams preparing for SOC 2 or PCI audits, and development teams who want to shift security left in their cloud design process.

🔒 Unlock the AI System Prompt

Sign in with Google to access expert-crafted prompts. New users get 10 free credits.

Sign in to unlock