Cloud architecture · DevOps · FinOps

Infrastructure that cannot be allowed to fail.

I am Igal Schneider, an AWS Certified Solutions Architect in Toronto. For 20+ years I have designed, built and operated production cloud and Kubernetes estates for teams where downtime and runaway cost are not options. I own the decisions, not just the advice.

AWS Certified Solutions Architect Toronto / GTA / remote
20+
years in production infra
273M
files migrated, zero disruption
$84K/yr
cloud cost leak, eliminated
13+
years owning one live platform
What I do

Three disciplines that rarely live in one person

Cloud architecture, DevOps automation and FinOps, under one owner who is accountable for cost, reliability and security from end to end.

AWS Cloud Architecture

Design and operate scalable, highly available estates on AWS. From greenfield to live migrations under traffic, with the boring parts done right.

EC2VPCS3RDSRoute 53

Kubernetes & Platform

Run production EKS the way it should be run: zero-downtime rolling upgrades, PodDisruptionBudgets, and control-plane and node migrations under live traffic.

EKSDockerPrometheusGrafana

DevOps & CI/CD

Centralized, automated delivery across Jenkins, Bitbucket Pipelines and Bamboo. Infrastructure as code, slimmer images, faster and safer deploys.

CI/CDIaCJenkinsWAF as code

FinOps & Cost Engineering

Find the leak before it becomes a budget. Forensic analysis of access logs and usage, then re-architecture that cuts spend without touching the product.

AthenaS3 tieringCost analysis

Streaming & CDN Delivery

Operate the full delivery stack for AVOD and connected-TV at consumer scale: S3 + CloudFront, multi-CDN strategy, and HLS playback that just works.

CloudFrontCloudflareAkamaiHLS

Security & Compliance

Own IAM, TLS and certificate lifecycles, WAF, and security-risk monitoring as code, so the safe path is also the default path.

IAMGuardDutyCloudTrailTLS/SSL
AI-built, shipped to production

Three systems I designed and shipped with AI-assisted engineering

Not demos. Real software running in production clusters and customer environments, built with LLM-driven workflows as a genuine force multiplier.

AI cloud / Kubernetes audit agent

CloudScope

An AI-driven audit agent that automates cluster hygiene and surfaces misconfigurations. Database-backed service with migrations and an automated audit pipeline that reduces operational toil.

AI agentKubernetesAWSAudit pipeline
Go in-cluster audit tool + web UI

ik8sa

A Go-based in-cluster Kubernetes audit tool with its own backend, web UI and deployment. Runs inside production clusters to surface posture and configuration issues in real time.

GoIn-clusterWeb UIPosture
Multi-tenant monitoring platform

Watchpost

A Zabbix and Datadog-synthetics replacement: 11+ check types including declarative browser-synthetic checks and HLS video-playback monitoring, customer-facing health dashboards, TOTP MFA and Fargate deployment.

Multi-tenantBrowser syntheticsHLS checksFargate

 LLM-driven workflows across architecture reasoning, code generation and incident diagnosis. Prompt engineering treated as seriously as any other engineering skill.

Track record

Hard problems, solved in production

A few signature results from operating real systems under real constraints, not the ideal ones.

273-million-file S3 migration, zero disruption

Executed with S3 Batch Operations alongside cross-account 12 to 22 TB video-asset transfers on high-bandwidth compute, with no service interruption.

Killed a $7K+/month storage cost blowout

Forensically analyzed S3 access logs in Athena and re-architected the tiering strategy. An $84K+/year FinOps win, delivered without touching the product.

kops to managed EKS, then every upgrade since

Migrated two production clusters off self-hosted kops onto EKS, then owned control-plane and node-OS upgrades under live traffic with zero-downtime rollouts.

Emergency proxy that rescued set-top-box delivery

When new TLS requirements broke a legacy embedded-device fleet, engineered a proxy service to restore consumer delivery in production while a long-term fix was built.

Redshift analytics pipelines for ad and viewing metrics

Built pre-aggregated daily tables with DISTKEY/SORTKEY and materialized views, and tracked down a runaway query holding a cluster at sustained 100% CPU.

Monolith to independently deployable services

Decomposed a monolithic application into config, programming and UI services, so teams could ship independently without stepping on each other.

How I work

Owned end to end, not handed off

A structured path from first look to long-term ownership, the way a technical co-founder would run it.

1
1

Discovery & assessment

Understand the real constraints, map the current estate, and find the costliest and riskiest gaps first.

2
2

Architecture & plan

Design against your actual environment with AWS best practices, then sequence the work to minimize blast radius.

3
3

Implementation under traffic

Execute with infrastructure as code and zero-downtime rollouts. Live systems stay live while they modernize underneath.

4
4

Automation & CI/CD

Wire up the pipelines, guardrails and observability so the safe path is the fast path.

5
5

FinOps & tuning

Right-size, re-tier and remove waste. Performance and cost get measured, not guessed.

6
6

Long-term ownership

Stay long enough to make sure it keeps working, modernizing it as the business grows.

Trusted by

Teams who keep me close to the infrastructure

Streaming, connected-TV and technology companies across North America.

Two decades in the field

Where I have delivered over the years

Before the consultancy, a career spent inside and alongside some of the largest technology and enterprise organizations in the world.

Worked at

Intel IBM Rogers

Delivered for global enterprises

BMW Boeing HSBC Kraft Foods Fuji Film EDS

Enterprise deployments, network-traffic analysis and on-site delivery across North America, Europe and Asia, under formal SLA and ISO process discipline.

Igal Schneider, AWS Certified Solutions Architect in Toronto
AWS Certified Solutions Architect

Igal Schneider

Cloud Architect, DevOps & FinOps Lead

I solve hard cloud problems, and I stick around long enough to make sure they stay solved. Over 20+ years I have built and run production systems for organizations where downtime and runaway cost are not options. My work sits at the intersection of cloud architecture, DevOps automation and FinOps, because building something that scales is only half the job. The other half is making sure it does not drain your budget while doing it.

My defining trait is tenure with depth. I have been embedded inside a single company since 2012, operating its live AVOD streaming platform (in production since 2016) and running its full AWS and Kubernetes estate through every major platform shift. That is the kind of long, single-environment ownership that teaches you exactly where the bodies are buried, and how to keep a system alive while modernizing it underneath live traffic.

20+
Years experience
13+
Years embedded
North America
Consumer scale

Through IT Delivered I work with technology companies and startups as their embedded cloud expert, the person who owns the infrastructure decisions, not just advises on them. I am in the weeds: tuning Kubernetes clusters, debugging Redshift queries, and finding the cost leak before it becomes a six-figure problem.

AI & modern development

I have moved decisively into AI-augmented engineering, shipping real production software through AI-assisted development rather than treating it as a novelty. CloudScope, ik8sa and Watchpost were all designed and built this way. I use LLM-driven workflows as a force multiplier across architecture reasoning, code generation and incident diagnosis.

Based in the Greater Toronto Area. Fluent in English, Russian and Hebrew, working French. Open to consulting and fractional cloud architecture engagements.

AWS Solutions Architect (SAA)
Kubernetes
Docker & Containers
FinOps practitioner

Free developer tools

Small, fast, no-signup utilities I built and keep online. Handy when you are knee-deep in a deploy.

Password generatorUUID / GUIDBase64Crontab builderDiff checker
Get in touch

Let's keep your infrastructure boring

In the best possible way. Reliable, cost-efficient, and quietly doing its job. Reach out and let's talk.

Location

Toronto, Canada