IT-RAT is a boutique cloud consultancy for complex, high-stakes projects. We put AI to work across cloud platforms, FinOps practices and security: frontier AI and LLM workloads, identity and Zero Trust, cost governance. Then we keep that full-scale rollout secure, compliant and under control. Senior, hands-on architects taking on the hardest problems in modern cloud, security and AI.
Spend climbs faster than anyone forecast, AI workloads add a brand-new line item nobody owns, and every new service widens the attack surface. Most teams are firefighting both, without the architecture to fix the root cause.
01
The bill nobody can explain
Untagged resources, idle capacity, and AI/LLM usage with no cost ownership. Finance and engineering point at each other while the invoice grows.
02
Identity sprawl
Over-permissioned roles, standing access, and fragmented IAM across AWS, GCP, Okta and Auth0. One leaked key away from a very bad week.
03
Security bolted on too late
Audits become fire drills. Compliance (ISO 27001, SOC 2, NIST) is documented, not enforced. Pipelines ship faster than guardrails can keep up.
What we do
Cloud security and FinOps, with AI through all of it.
We pair deep cloud-security architecture with hands-on FinOps governance, and we weave AI into every layer, so adopting it makes you faster without making you less safe, compliant or cost-efficient.
Cloud Security & IAM
Identity-first security architecture that holds up to real audits and real attackers.
Zero Trust & least-privilege access models
IAM design across AWS, GCP, Okta & Auth0
DevSecOps & secure CI/CD pipelines
Securing AI: LLM access, data & model guardrails
Threat modelling & reference architectures
Compliance: ISO 27001, NIST, SOC 2, GDPR
FinOps & Cost Governance
Turn cloud spend into a managed, forecastable number that finance and engineering both trust.
Tagging, allocation & chargeback that actually works
Anomaly detection & automated budget guardrails
FinOps for AI: LLM & token cost visibility and guardrails
Forecasting, dashboards & financial observability
Multi-cloud governance & GreenOps
Cloud & Platform Architecture
The foundation underneath both: scalable, resilient infrastructure built secure-by-default.
End-to-end AWS & GCP solution architecture
Kubernetes, GitOps & container platforms
Infrastructure as code with Terraform / Terragrunt
AI & LLM workloads, RAG & ML data pipelines
Migration, replatforming & data pipelines
"Golden paths" for secure-by-default delivery
Advisory & Architecture Reviews
A senior, independent read on where your cloud stands, plus a roadmap to fix it.
Security & cost posture assessments
Multi-year cloud strategy & reference standards
Stakeholder alignment across eng, finance & security
Team enablement, mentoring & FinOps training
AI, under control
Full-scale AI adoption, kept under control.
We're putting AI to work across everything we do: cloud platforms, FinOps practices and security. The hard part isn't adopting AI, it's governing a full-scale rollout. We make AI secure, cost-controlled and compliant by design: from LLM APIs and token-based usage to cloud-native AI services and autonomous agents.
You work directly with the people who do this at enterprise scale every day, not a layer of account managers.
Co-founder · Cloud Security & IAM
Yurii Kostiuk
Lead Security Architect, PETRONAS · ex-Cloud Native Architect, Okta
IAM solutions architect and cloud security consultant. Yurii defines enterprise-wide security strategy and designs secure, scalable architectures across hybrid and cloud-native environments: Zero Trust, identity, DevSecOps and platform resilience on AWS and GCP.
Principal FinOps Architect, NatWest Group · AWS Community Builder
FinOps expert in cloud financial governance, cost optimization and multi-cloud strategy. Tania aligns engineering, finance and business across cloud, Kubernetes and AI workloads, applying FinOps best practices to LLM APIs and token-based usage while keeping things sustainable and scalable.
FinOpsFinOps for AICost GovernanceMulti-cloudGreenOpsAWS
A focused review of your cloud security posture and cost structure. You get a clear, prioritized picture of risk and waste, usually within weeks.
Architect
We design the target state: identity model, guardrails, FinOps operating model and reference architectures, mapped to your compliance obligations.
Embed
We implement alongside your team, automate the guardrails, and hand over with the standards and training that keep it secure and efficient long after.
Get started
Let's make your cloud safer and cheaper.
Tell us where it hurts: runaway spend, a looming audit, an identity mess, or an AI rollout nobody's governing. We'll come back with a concrete first step.