Design AWS workloads
Map requirements to suitable managed services, account and network boundaries, availability patterns, data flows, scaling behavior, and failure recovery.
AWS Codex Skills give Codex a disciplined workflow for designing, provisioning, securing, testing, and operating workloads on Amazon Web Services. Download the skills for infrastructure as code, serverless applications, containers, delivery pipelines, observability, cost reviews, and changes that need a safe rollback path.
task: complete aws cloud engineering task
inspect:
- requirements and context
- existing standards
- failure and edge cases
verify: outputs + checks + handoffAWS work crosses identity, networking, compute, data, observability, deployment, resilience, and cost. The right service depends on workload behavior and operational constraints, not novelty.
These skills make Codex inspect the account model, region, existing infrastructure, security boundaries, quotas, recovery objectives, and delivery process before proposing a change.
Map requirements to suitable managed services, account and network boundaries, availability patterns, data flows, scaling behavior, and failure recovery.
Create or improve AWS CDK, CloudFormation, Terraform, and supporting configuration with reviewable plans and controlled state.
Work on Lambda, API Gateway, ECS, EKS, S3, CloudFront, queues, event-driven systems, databases, and application integrations.
Apply least privilege, encryption, secrets handling, logs, metrics, alarms, backups, cost controls, deployment checks, and rollback procedures.
The steps keep context, implementation, and verification visible so the result can be reviewed and repeated.
Record accounts, regions, environments, identity boundaries, networks, services, data sensitivity, quotas, budgets, and ownership.
Compare service fit, operational load, availability, performance, security, portability, and total cost before committing.
Make focused application and infrastructure changes, review plans, protect state and credentials, and preserve environment separation.
Run tests and policy checks, inspect deployment health and spend signals, confirm backups, and document rollback.
The workflow adjusts to the project, audience, tools, and risk while preserving the same quality standard.
Build functions, APIs, queues, events, workflows, storage, permissions, retries, idempotency, and observability.
Develop ECS or EKS services, images, task definitions, networking, autoscaling, secrets, health checks, and deployment strategies.
Design ingestion, storage, processing, databases, analytics, access controls, retention, backups, and cost-aware queries.
Create accounts, networks, identity patterns, shared services, CI/CD, policy checks, monitoring, and reusable infrastructure modules.
Start with one defined outcome and provide the source material, constraints, and checks that matter.
These skills are designed for people who need dependable aws cloud engineering work with a visible process.
Build and operate AWS systems with explicit security, reliability, cost, and recovery decisions.
Connect applications to AWS compute, storage, databases, events, identity, and observability services.
Create reusable infrastructure, delivery pipelines, account standards, controls, and operational tooling.
Turn workload requirements into reviewable architectures and implementation plans.
The skills can prepare and validate AWS changes, but account access, credentials, production deployment, destructive operations, compliance decisions, and material spending require explicit authorization and qualified review.
Install the complete skill folder and add the project-specific context before beginning.
Keep SKILL.md with architecture, infrastructure, security, cost, deployment, and operational references.
Use project scope for one AWS workload, or personal scope for reusable cloud-engineering practices.
Provide accounts, regions, services, network boundaries, IaC tool, environments, deployment process, budgets, and recovery targets.
Use approved profiles or roles with least privilege, protect secrets, and require review for production or destructive actions.
Practical answers about capabilities, limits, setup, and review.
Yes. They can create, review, test, and explain infrastructure code while following the repository's chosen language and deployment process.
Yes. They can work with modules, plans, state boundaries, providers, imports, policy checks, and controlled applies.
Only when explicitly authorized and supplied with suitable access, an approved plan, validation checks, and a recovery path.
They can inspect identity, network exposure, encryption, secrets, logging, data handling, and common misconfigurations. Formal assurance still needs security review.
They can analyze architecture, utilization, storage, data transfer, scaling, commitments, and idle resources when trustworthy usage and billing data are available.
Clear context. Purposeful work. Relevant checks. A result others can understand.