manage cloud commitment and reservation strategy covering coverage and utilization measured against the eligible base, effective savings rate with its baseline, expiry cliffs and laddering across renewal dates, stranded and underutilized commitment with its…
Skills in this repository
MadewellRD/skills-lab - Page 14
SkillsMP has collected 1,540 skills from MadewellRD/skills-lab. Open a skill to review its source and details.
MadewellRD/skills-labShowing 40 of 1,540 collected skills.
build the cloud cost allocation hierarchy and measure tag coverage so spend resolves to named owners. covers tag and label key requirements with measured coverage per key and per account, tag value hygiene and case and spelling drift, account subscription and…
analyze cloud cost drivers as design decisions covering data transfer egress cross-zone and cross-region traffic, nat and endpoint routing, cdn offload and cache hit ratio, storage class and lifecycle against measured access patterns, managed service against…
establish the cost basis and reconcile the analysis dataset to the provider invoice across billing and usage exports, focus-conformed schemas, cost platform views, and vendor statements. covers amortized versus billed versus effective cost views, commitment…
run team-facing cloud cost reviews presenting spend in the vocabulary of the services a team actually owns, decomposing movement into consumption rate and allocation change, converting findings into an action set with named owners and dates, placing cost…
orchestrate cloud financial management work across cost visibility and allocation, tagging and showback, shared and container cost splits, unit economics, software cost of goods sold and gross margin, budgets, forecasting and variance analysis, cost anomaly…
assess a finops practice against a capability rubric using measured evidence rather than self-report, covering allocation coverage forecast accuracy realization rate and anomaly response time as scored evidence, gap analysis per capability with what is…
forecast cloud and vendor spend with a stated method and measured prior accuracy, and attribute budget variance to its real cause. covers run-rate driver-based seasonal and bottom-up methods with the reason each suits the spend profile, step changes for…
analyze saas and software licence spend covering entitlement against measured use, shelfware quantified to its renewal date, seat concurrent consumption and core based licence models, bring your own licence against included licensing, edition and tier…
consolidate cloud cost optimization opportunities into one deduplicated register netted for overlap, prioritized on savings against engineering effort risk reversibility and blast radius rather than on savings alone, assigned to the team that must act with…
identify cloud rightsizing candidates from utilization measured over a full business cycle including peaks, with a target configuration and stated headroom. covers instance storage and database sizing, cpu memory iops and throughput percentiles against the…
split shared and container cloud cost across the teams that consume it with methods the receiving teams can argue with. covers shared pool inventory for network, observability, data platform, support, and licensing spend, proportional even fixed and…
build audience-specific cloud cost showback reports that tie to the invoice and tell each audience what to do next. covers the report set per audience with the decision each view supports, trend presentation with a named baseline and partial-period flags, top…
classify infrastructure and vendor spend into cost of revenue against research and internal cost, and compute software gross margin that ties to the ledger. covers the cost of revenue classification policy applied line by line, capitalized internal-use…
compute cloud unit cost metrics such as cost per tenant, per customer, per transaction, per active user, per inference, and per gigabyte served, with a sourced denominator definition. covers numerator scope and cost basis, denominator system of record with…
inventory and eliminate cloud waste covering idle and stopped resources still billing, unattached volumes and unassociated addresses, orphaned snapshots and machine images, abandoned non-production environments, over-retained logs and backups, duplicate data…
manage the attestation and certificate lifecycle across the report inventory with scope validity and distribution constraint, bridge and gap letters covering the interval since the last period, the surveillance and recertification calendar, the customer trust…
coordinate an external audit or certification engagement across request list tracking with submitted accepted and rejected states, walkthrough preparation and the record of what was demonstrated, evidence-grounded responses to assessor questions, exception…
run gap assessments against every in-scope criterion, separate design readiness from operating readiness, build the remediation roadmap with owners and dates, determine the earliest defensible observation window from the operating history each control…
build and evidence business continuity and disaster recovery across business impact analysis with criticality tiers, committed rto and rpo kept separate from demonstrated recovery, dependency mapping including third parties, plan currency and approval state,…
build governance forum reporting for a risk committee audit committee or board across metrics carrying value computed basis and as-of date, risk and control health presented against appetite and tolerance rather than in isolation, escalations with what is…
build and maintain the compliance obligation register covering laws, statutes, regulations, contractual security schedules, master service agreement addenda, customer commitments, and framework requirements, each with its citation, applicability…
define the audit boundary and system description for soc 2, iso 27001, hitrust, pci, or an internal assessment, including criteria or annex selection with framework version, in-scope systems, entities, locations and people, subservice organizations with…
design and assess continuous control monitoring across the monitoring coverage map, automated check definitions with signal source and evaluation frequency, configuration drift and check failure routed to a named owner, control health metrics computed from…
write control narratives an outsider could re-perform, with named control owners, operating frequency, preventive detective or corrective classification, automated manual or hybrid designation, key control determination, the evidence source and the artifact…
build the unified control library and cross-framework crosswalk mapping controls to trust services criteria, iso 27001 annex a, nist csf and 800-53, cis, pci dss, and customer security schedules, with coverage marked full, partial, or none, every mapping…
build test plans and execute design and operating effectiveness testing using inquiry, observation, inspection, and reperformance, with sampling method and size recorded against the methodology that set them, attribute testing per sampled item, deviations…
run the evidence and pbc request list against an observation period, extract populations with the query or export that produced them, establish the completeness and accuracy basis for every population, collect evidence carrying its collection date and the…
classify deficiencies and drive them to validated closure across severity rating against the org rubric, corrective action plans naming the evidence that will close each one, compensating controls carrying exposure meanwhile, exceptions with a named approver…
orchestrate governance, risk, and compliance work across obligation registers, audit scoping, control frameworks and crosswalk mapping, risk registers and risk acceptance, policy lifecycle, control design, soc 2 and iso 27001 readiness, evidence collection,…
plan and execute internal audit engagements across the audit universe and risk-based annual plan, engagement scoping and objectives, walkthroughs and risk and control matrices, fieldwork with workpapers that support every assertion, findings written as…
manage the policy hierarchy and lifecycle across policies, standards, procedures, and guidelines, including drafting and revision against the obligations a policy carries, mapping policy clauses to controls, approval authority and the approval record, review…
track and operationalize regulatory and framework change across horizon scanning of official sources, applicability determination for a published change, impact analysis onto named controls policies contracts and vendor terms, an implementation plan sequenced…
build and maintain the enterprise and information security risk register with risks stated as consequences, inherent and residual likelihood and impact scored on the named organizational scale, risk appetite and tolerance thresholds, treatment decisions to…
run third-party and supplier risk across vendor tiering against a criticality rubric, tier-matched due diligence, attestation and certificate review recording scope period exceptions and bridge letter coverage, complementary user entity controls assigned back…
prepare iOS native app implementation plans for Swift, Objective-C, SwiftUI, View systems, modularization, storage, networking, background work, sensors, permissions, and platform APIs.
design iOS app and game architecture, module boundaries, data flow, offline behavior, engine integration, services, APIs, migrations, and ADR-ready decisions.
define iOS service and API integration, auth, sync, payments, push notifications, analytics, remote config, multiplayer, leaderboards, cloud saves, retries, offline behavior, and failure modes.
orchestrate complete iOS app and game development workflows across discovery, product, architecture, implementation, testing, release, App Store operations, live ops, and maintenance. use when the user wants to plan, build, validate, launch, operate, improve,…
prepare iOS game implementation plans for Metal tooling, native runtime, C/C++, SpriteKit, SceneKit, Metal, Unity, Unreal, Godot, custom engines, rendering, input, assets, frame pacing, Metal, and thermal behavior, and gameplay/runtime constraints.