Logo
Log in
Subscribe
Logo
Matthew Koozer
Matthew Koozer

Infrastructure Architect + FinOps practitioner sharing practical playbooks for cloud, cost, and AI ops.

Use the LLM as a reviewer, not an approver

Sep 1, 2026

•

3 min read

Use the LLM as a reviewer, not an approver

A field note for pressure-testing runbooks, RFCs, and automation without handing the model the decision.

Matthew Koozer
Matthew Koozer
Design the Change for Rollback, Not Just the Rollback Plan

Aug 10, 2026

•

9 min read

Design the Change for Rollback, Not Just the Rollback Plan

Prechecks, bounded blast radius, explicit go/no-go decisions, and recovery proof turn rollback from a ticket field into an operating capability.

Matthew Koozer
Matthew Koozer
Azure Arc and Update Manager at Scale: Enterprise Rollback Runbooks

Aug 7, 2026

•

7 min read

Azure Arc and Update Manager at Scale: Enterprise Rollback Runbooks

A practical operating model for containing patch risk when the platform cannot simply press Undo

Matthew Koozer
Matthew Koozer

Hybrid Cloud

+14

Patch Evidence Packs: The Minimum Proof Leaders Actually Need

Jul 6, 2026

•

6 min read

Patch Evidence Packs: The Minimum Proof Leaders Actually Need

A practical framework for proving patch coverage without burying leaders in screenshots, exports, and 200-page compliance reports.

Matthew Koozer
Matthew Koozer

Azure Monitor

+12

Azure Arc Minimum Viable Baseline for Hybrid Servers

Jun 19, 2026

•

8 min read

Azure Arc Minimum Viable Baseline for Hybrid Servers

A practical operating model for bringing on-prem and multi-cloud servers into Azure management without creating a prettier mess.

Matthew Koozer
Matthew Koozer
Hybrid Is Manageable. Unowned Baselines Are Not.

Jun 18, 2026

•

6 min read

Hybrid Is Manageable. Unowned Baselines Are Not.

A CloudLoom Studio operator guide for using Azure Arc, update discipline, policy, and clear ownership to keep hybrid servers from drifting into risk.

Matthew Koozer
Matthew Koozer

DevOps

+11

Secret Rotation Ownership: Who Rotates, Who Approves, Who Validates?

Jun 9, 2026

•

5 min read

Secret Rotation Ownership: Who Rotates, Who Approves, Who Validates?

A RACI framework for keeping Azure secrets, app dependencies, approvals, and evidence from turning into a last-minute scramble.

Matthew Koozer
Matthew Koozer

Azure Landing Zones

+18

Key Vault Patterns That Scale

May 15, 2026

•

7 min read

Key Vault Patterns That Scale

A practical CloudLoom guide for designing Azure Key Vault across apps, teams, and network boundaries

Matthew Koozer
Matthew Koozer

Platform Engineering

+5

Secrets Sprawl Is a Platform Tax

May 14, 2026

•

4 min read

Secrets Sprawl Is a Platform Tax

3 warning signs your cloud estate is paying for unmanaged credentials

Matthew Koozer
Matthew Koozer

Azure Landing Zones

+13

From Deny to Deploy: Choosing the Right Azure Policy Effect

Apr 29, 2026

•

6 min read

From Deny to Deploy: Choosing the Right Azure Policy Effect

A CloudLoom decision framework for using Audit, Modify, and DeployIfNotExists without turning Azure governance into deployment friction.

Matthew Koozer
Matthew Koozer

DevOps

+11

Exception workflows that keep platform teams sane

Apr 28, 2026

•

5 min read

Exception workflows that keep platform teams sane

A practical Azure governance guide for using exclusions, exemptions, and review cadence without turning edge cases into permanent drift.

Matthew Koozer
Matthew Koozer

FinOps

+4

Renewal reviews finance will actually trust

Apr 11, 2026

•

7 min read

Renewal reviews finance will actually trust

A practical cadence and scorecard for cloud, platform, and tooling renewals before they quietly harden into waste

Matthew Koozer
Matthew Koozer
Commitment runway in Azure

Apr 9, 2026

•

6 min read

Commitment runway in Azure

A playbook for coverage, utilization, expiration, and renewal before savings quietly turn back into spend.

Matthew Koozer
Matthew Koozer

Savings Plans

+8

Savings Plans Do Not Fix Bad Ownership. They Amplify It.

Apr 3, 2026

•

4 min read

Savings Plans Do Not Fix Bad Ownership. They Amplify It.

Three rules for getting commitment discounts under control without turning shared cloud spend into a political mess.

Matthew Koozer
Matthew Koozer

FinOps

+3

Chargeback without a revolt

Mar 25, 2026

•

6 min read

Chargeback without a revolt

A practical framework for ownership tiers, exception paths, and finance alignment in Azure and shared cloud platforms

Matthew Koozer
Matthew Koozer

FinOps

+8

Shared cost allocation in Azure

Mar 20, 2026

•

10 min read

Shared cost allocation in Azure

Split platform, app, and overhead without chaos

Matthew Koozer
Matthew Koozer

Log Analytics

+11

Log Analytics cost controls:retention, tables, DCR basics

Mar 11, 2026

•

10 min read

Log Analytics cost controls:retention, tables, DCR basics

A CloudLoom Studio operator guide for beginners who want lower Azure Monitor costs without flying blind

Matthew Koozer
Matthew Koozer

FinOps

+5

Cost-efficient observability: what to collect, where, and why - Playbook for beginners

Mar 5, 2026

•

7 min read

Cost-efficient observability: what to collect, where, and why - Playbook for beginners

A practical operator guide to keeping telemetry useful without letting logging bills drift into the red.

Matthew Koozer
Matthew Koozer

FinOps

+9

Logging costs are architecture costs

Mar 3, 2026

•

7 min read

Logging costs are architecture costs

Operator notes on Azure observability + FinOps (so your observability stays useful and your bill stays explainable)

Matthew Koozer
Matthew Koozer

Azure Landing Zones

+14

Prevent 80% of Private Endpoint Outages

Feb 27, 2026

•

5 min read

Prevent 80% of Private Endpoint Outages

Simplify DNS for Reliable Private Endpoints

Matthew Koozer
Matthew Koozer

Platform Engineering

+8

Standardizing network patterns across many VNets (without replatforming everything)Pattern Pack

Feb 27, 2026

•

10 min read

Standardizing network patterns across many VNets (without replatforming everything)Pattern Pack

Private endpoints fail for one reason. DNS ownership is unclear.

Matthew Koozer
Matthew Koozer

Incident Response

+9

If your automation can’t be rolled back, it’s a risk

Feb 20, 2026

•

7 min read

If your automation can’t be rolled back, it’s a risk

No matter how smart it looks in a PR, a notebook, or a chat window.

Matthew Koozer
Matthew Koozer

DevOps

+14

Automation Maturity Ladder: From Scripts to Agentic Operations

Feb 20, 2026

•

8 min read

Automation Maturity Ladder: From Scripts to Agentic Operations

Scripts → Workflows → Agentic Operations

Matthew Koozer
Matthew Koozer

DevOps

+10

AI-assisted ops: where LLMs actually reduce toil (and where they don't)

Feb 19, 2026

•

11 min read

AI-assisted ops: where LLMs actually reduce toil (and where they don't)

A field guide for platform, SRE, and cloud ops teams who want fewer tickets, fewer surprises, and safer automation.

Matthew Koozer
Matthew Koozer
AI Ops isn’t a bot. It’s better questions + safer automation.

Feb 19, 2026

•

6 min read

AI Ops isn’t a bot. It’s better questions + safer automation.

A practical operator’s view of what “AI for operations” should actually do, and how to roll it out without creating new failure modes.

Matthew Koozer
Matthew Koozer
Load more

CloudLoom Studio

A solo Azure, FinOps, and AI ops studio helping teams turn cloud experiments into stable, cost-aware platforms that ship.

© 2026 CloudLoom Studio.
beehiivPowered by beehiiv