Start a conversation
Cloud and support

Getting it live is half the job. Keeping it live is the other half.

Deployment pipelines, IoT estates, security review, infrastructure migrations and the ongoing care that stops a system quietly rotting. This is where most of our long-term relationships actually sit.

0records lost in a full domain migration
6security practices on every build
30days' notice, either way
live
What we build

Six areas, and exactly what is included in each.

Every bullet below is work we have shipped. Where a line looks like filler on another company's site, it is here because a client needed it and we built it.

Cloud and DevOps

Deployment pipelines, environment management, monitoring and cost control on Azure and AWS, so releases stop being events that need a Friday evening.

What this includes
  • CI/CD pipelines with automated tests as a gate
  • Environment separation and secret management
  • Monitoring, alerting and log aggregation
  • Cost review, because cloud bills drift

IoT and embedded

Sensors, firmware, telemetry and the application on the other end.

What this includes
  • Sensor selection and rig design
  • Firmware on ESP8266 and comparable controllers
  • Telemetry ingestion and real-time streaming
  • On-device inference and remote actuation

QA, testing and security review

Functional and end-to-end testing, API security auditing and penetration-style review of every endpoint your application exposes, including the ones nobody documented.

What this includes
  • Automated end-to-end test suites
  • API authentication and authorisation review
  • Dependency and secret scanning
  • Written findings with severity and remediation

Infrastructure and migrations

Microsoft 365 tenancy work, domain and identity migrations, and virtual learning environment moves, planned so that no historic data is lost and teaching or trading continues throughout.

What this includes
  • Estate inventory before any change is planned
  • Batch migration with data continuity first
  • Rollback plan that has actually been tested
  • Cutover sequenced around your operating calendar

Managed support and care

Ongoing maintenance, monitoring, model retraining and enhancement under a plain agreement, rolling monthly, with thirty days' notice either way and no lock-in through opacity.

What this includes
  • Uptime and error monitoring with named response times
  • Security patching and dependency updates
  • Model drift checks and scheduled retraining
  • An agreed pool of enhancement hours each month

Training and capability building

Practical upskilling for your team on AI tooling, engineering practice and data literacy, delivered by people who teach at university level for a living.

What this includes
  • Workshops built around your systems, not generic slides
  • Curriculum design for internal programmes
  • Pairing and code review as a teaching method
  • Written material your team keeps
What you receive

The deliverables, listed before you ask.

The same artefacts every time, regardless of project size.

  • Deployment pipeline and environment configuration
  • Monitoring, alerting and a tested rollback path
  • Security review findings with severity ratings
  • Runbook and incident procedure
  • Named response times under a support agreement
  • Monthly capacity and cost review
Stack

What we build this with.

Deliberately narrow. A team our size claiming twenty frameworks is claiming one thing badly, twenty times over.

AzureAWSDockerGitHub ActionsMicrosoft 365Entra IDExchange OnlineSharePointMoodlePowerShellESP8266ArduinoMQTTFirebase
Proof

Three things we have already shipped in this practice.

Open the work page for the full case note on any of these, including what did not go to plan.

Delivered

Institution-wide domain migration

Every account moved from .co.uk to .ac.uk across Microsoft 365 and Moodle with no historic data lost.

Delivered

Smart agriculture monitoring

Sensor rig, on-device model and remote pump control, designed for a field with no reliable signal.

Delivered

Mobile app security testing

Functional, end-to-end and API endpoint auditing across a two-app estate.

0records lost in a full domain migration
6security practices on every build
30days' notice, either way
22systems shipped across the company
Questions

What clients ask about this practice.

Answered as we would answer them on a call, including the ones with awkward answers.

Often, yes. We start with a review of what is there and what it depends on, then tell you honestly whether supporting it is sensible or whether you are being asked to maintain something that should be replaced.

Agreed in the support contract and tied to severity. We do not publish a single number, because a cosmetic bug and a production outage should not have the same answer.

No. Support runs monthly with thirty days' notice. Handover documentation is written so another supplier could pick it up, which is the only honest test.

Other practices

Most projects use more than one.

The reason a product is not working is rarely where the client first thought it was, so these three sit alongside this one more often than not.

Tell us what you are trying to build.

Describe the problem rather than the specification. If a smaller piece of work would answer it, we will propose that instead.