werk 06 · cloud and platform engineering

Platform.

Cloud and platform engineering — the substrate an estate runs on, and the internal platform that lets product teams ship without asking permission.

FamilyBuildCarried byInterimProven lines3 / 7Detailed mandates4SectorsFinance & Insurance, Health & Life Sciences, Media & Entertainment

Werk 06 — who carries it

arms and mandates

The platform werk owns what everything else stands on. A migration that lands on an unpaved substrate produces the same delivery friction at a different address, with a cloud bill attached.

The offer

what is bought, and in what shape

A substrate product teams can ship on without asking permission: cloud landing zones, an internal platform, and the observability that makes production legible.

Cloud landing zone and migration

Account and network topology, security baseline, migration waves and the cost model that comes with them.

Internal developer platform

Golden paths, self-service environments, templates and the paved road that removes the ticket queue between a team and production.

Observability and SRE practice

Telemetry, SLOs, alerting that pages a human only when it should, and the on-call model behind it.

Infrastructure as code and GitOps

Everything declared, reviewed and reproducible, with drift detection and automated promotion between environments.

Platform review3 to 6 weeks

Platform assessment, target design, cost and reliability plan.

AdvisoryFractional platform authority

Standards, landing-zone design, vendor and cost arbitration.

Interim seat6 to 18 months, CTO

The platform built and the teams migrated onto it.

AWSKubernetesTerraformGitOpsPrometheus and GrafanaSovereign hosting

State of the proof

counted from the ledger below
7sub-capabilities
3proven · a published case carries a sourced figure
1held · carried by a named operator, no case published
3declared · in scope, no published proof today

Experiences that prove it

4 detailed mandates

Sub-capabilities and evidence

7 lines, each with its state
Cloud migration and cloud platformsprovenSociété GénéralePMUSatelia
Platform engineering and internal factoriesprovenAXA
Sovereign and regulated hostingprovenSatelia
Observability and SREheldFive-nines target held on the PMU platform; SRE practice not published as a case.
Infrastructure as codedeclared
Kubernetes and containersdeclared
Automation and GitOpsdeclared

Publishable figures

named, sourced, attributable
-37%TCO · datacenter exit to AWSErwan Deschamps · local-entity CTO, TCS for Societe Generale BU MassMarketing
15People reorganized into autonomous squadsErwan Deschamps · interim CPTO, Satelia (six-month mandate to July 2026)

Questions

answered, in the open
Which clouds has the collective delivered on?
AWS at PMU and at Societe Generale, where the BU MassMarketing estate left owned datacenters and total cost of ownership fell 37% on cloud-based and API-based application patterns. And a secure European cloud at Satelia, chosen because a cardiovascular telemonitoring platform entering the EU market carries data residency and medical-device constraints that decide the substrate for you.
Is platform engineering the same as cloud migration?
No. Migration moves an estate once. Platform engineering builds the paved road that keeps every team after you from rebuilding the same pipeline — which is what was industrialized at AXA as a group software and digital factory, and what made a 2.5-month time-to-market possible on the product that ran on it.
What is honestly not proven here?
Infrastructure as code, Kubernetes and GitOps are declared. They are standard components of the mandates above and no published case isolates them, so they are listed as declared rather than implied. A buyer who needs a Kubernetes platform built from zero should ask what has been run, and will get a straight answer.

Related werks

same family, shared proof
Discuss a platform mandateHow Interim runs itAll eleven werks