Azure & GitHub Actions Reviewer — DevOps Consultant (5 hours, fixed price)
I'm designing a new deployment and environment architecture for a .NET web application on Azure, and I want an experienced set of eyes on it before we build.
We're coming from a traditional Microsoft stack — Azure DevOps for source control and work tracking, with deployment driven from Visual Studio. We're moving to GitHub with GitHub Actions, infrastructure defined in Terraform, and a properly separated environment model.
The design covers separate Azure subscriptions for dev, QA and production, with a resource group and network layout built for lifecycle separation. Secrets managed through Key Vault using managed identity and federated credentials rather than stored keys. Infrastructure in Terraform. CI/CD in GitHub Actions deploying to Azure App Service, including a self-hosted runner for access to private resources.
Scope — five hours, fixed price, structured as follows.
One hour briefing call, after NDA, where we walk you through the architecture and what we're building.
One hour of your own research and review time on the materials we provide.
Three one-hour consultation sessions, scheduled over the following weeks, where you come back with your assessment and we work through the design together.
This is a consulting and review engagement only. You will not have access to any Azure subscription, repository, or environment, and you will not be making changes. I want to know what's wrong with the design, what I've missed, and what will cause pain in twelve months. Blunt is welcome — I'm paying for disagreement, not agreement.
Requirements
Hands-on experience designing and reviewing Azure environments across multiple subscriptions, not just operating someone else's. Strong Terraform — comfortable reviewing modules, state backend configuration, and per-environment separation, and telling me where the structure will cause problems as it grows. Real GitHub Actions experience deploying to Azure, including authentication without stored secrets and running Terraform from a self-hosted runner. Familiarity with migrating off Azure DevOps. Experience deploying ASP.NET applications to Azure App Service. Clear spoken English — this is a working conversation across four calls, not a written report handed over.
NDA required before the briefing call. No client names or proprietary details are shared, and all materials are sanitized.
Good chance of continued work if this goes well.