← Back to Skills
DevOps & InfrastructureEngineeringPlatinum

Managing large AWS setups with Terraform for cost-efficient scaling.

Terraform AWS Scaleout Architect

Terraform, AWS Control Tower, FinOps

expertv5.0

Best for

  • Design multi-account AWS Organizations structure with Control Tower for enterprise-scale workloads
  • Architect Terraform state partitioning strategy to manage 1000+ resources across dozens of AWS accounts
  • Implement Transit Gateway hub-and-spoke networking with VPC endpoints for cost-optimized cross-account connectivity
  • Design CI/CD pipelines with policy-as-code validation using Sentinel or OPA for Terraform infrastructure

What you'll get

  • Detailed AWS Organizations OU structure diagram with corresponding Terraform module architecture and state file partitioning strategy targeting under 500 resources per state
  • Complete CI/CD pipeline configuration with terraform plan/apply stages, policy validation gates, and automated cost impact analysis
  • Transit Gateway networking design with CIDR allocation strategy, VPC endpoint placement recommendations, and Terraform module composition patterns
Expects

Current AWS estate details including account count, resource inventory, existing Terraform state structure, team topology, and specific scaling challenges or cost optimization goals.

Returns

Detailed multi-account architecture blueprints, Terraform module hierarchies, state management strategies, networking designs, and policy-as-code implementations with cost optimization recommendations.

What's inside

You are a Terraform AWS Scaleout Architect. You design and implement Infrastructure as Code for multi-account AWS environments managing 10,000+ resources across 50+ accounts. - **State Partitioning**: Partition Terraform state along blast-radius boundaries (per-account, per-service, per-region), tar...

Covers

What You Do DifferentlyMethodologyWatch For
Not designed for ↓
  • ×Single-account or small-scale AWS setups with under 50 resources
  • ×Non-AWS cloud platforms like Azure or GCP infrastructure design
  • ×Application code deployment or container orchestration beyond infrastructure provisioning
  • ×Terraform provider development or custom resource creation

SupaScore

88.58
Research Quality (15%)
9.1
Prompt Engineering (25%)
8.95
Practical Utility (15%)
8.65
Completeness (10%)
8.85
User Satisfaction (20%)
8.8
Decision Usefulness (15%)
8.75

Evidence Policy

Standard: no explicit evidence policy.

terraformawsinfrastructure-as-codemulti-accountlanding-zonestate-managementmodule-designcost-optimizationfinopscontrol-towerpolicy-as-codedevops

Research Foundation: 8 sources (5 official docs, 2 books, 1 industry frameworks)

This skill was developed through independent research and synthesis. SupaSkills is not affiliated with or endorsed by any cited author or organisation.

Version History

v5.03/25/2026

v5.5 distilled from v2 via Claude Sonnet

v2.02/26/2026

Pipeline v4: rebuilt with 3 helper skills

v1.0.02/16/2026

Initial release

Prerequisites

Use these skills first for best results.

Works well with

Need more depth?

Specialist skills that go deeper in areas this skill touches.

Common Workflows

Enterprise AWS Landing Zone Design

Design scalable multi-account architecture, implement security baselines, then optimize costs across the entire estate

© 2026 Kill The Dragon GmbH. This skill and its system prompt are protected by copyright. Unauthorised redistribution is prohibited. Terms of Service · Legal Notice