Hi, I'm Victor Grenu, an independent AWS Infrastructure & Security Consultant based in France and working worldwide. zoph.io is my consulting boutique: I help teams build secure, cost-efficient, and automated AWS environments.
This GitHub org is where I publish tools, scripts, and resources I use in real-world client projects to improve AWS security, visibility, and operations.
- AWS Architecture: design, review, and optimize AWS infrastructure for security, scalability, and cost.
- Security Audits & Hardening: identify vulnerabilities and implement defense-in-depth across AWS accounts and Organizations.
- Automation & DevSecOps: Infrastructure as Code, CI/CD, and automated security controls.
- Cloud Cost Optimization: actionable FinOps recommendations and automation.
- Secure AI & LLM Adoption: guardrails, data protection, and security reviews for Amazon Bedrock, agents, and AI-powered workflows.
If you're working with AWS and care about security, compliance, and efficiency, you're in the right place.
-
IAMTrail · iamtrail.com
Archive of every change to AWS Managed IAM Policies since 2019, with full version history and diffs, plus AWS endpoint and GuardDuty change feeds. -
aws-security-survival-kit
Bare minimum AWS security alerting and secure-by-default configuration, with CloudFormation and EventBridge. -
aws-trustline (formerly Know Your Enemies)
Check external access on your AWS account: risky trust policies and third-party exposure. -
clickops-sentinel
Get notified, with AI-powered context, when someone changes your AWS account through the console instead of IaC. -
subnet-watcher
Monitor VPC subnet usage and prevent IP exhaustion across your accounts. -
aws-dhmc-enabler
Enforce secure host management defaults (SSM) at scale.
🚀 Also Built: unusd.cloud
Read-only AWS scans across 30+ services and every region. Weekly digest by email. Full report in the app.
Thanks for checking out the projects. Contributions and feedback are always welcome!