A free, read-only assessment of your AWS estate. Deploy one CloudFormation template and Firemind returns a discovery report covering compute, storage, databases, identity, security posture and cost. Metadata only: the role cannot read your data.
Overview: The IT Operations Engine Free Assessment gives you a read-only picture of your AWS estate: what you are running, how it is configured, and where the operational, security and cost risks sit. It is the discovery phase of Firemind's IT Operations Engine, offered free and with no commitment.
What you receive
A discovery report across compute, storage, databases, networking, identity and cost
Security posture findings, mapped to the controls auditors actually ask about
An operational baseline: what breaks, how often, and what the estate costs to run
A readout with a Firemind cloud architect, and a written summary you can circulate internally
Metadata only: your data is explicitly out of reach
The CloudFormation template creates a single cross-account IAM role, built on the AWS managed SecurityAudit and ViewOnlyAccess policies with explicit Deny policies layered over the top. The role can list a bucket and count its objects, but cannot read an object. It can describe a database, its engine and its encryption configuration, but cannot read a row. It cannot decrypt anything, read a secret or parameter value, download log contents, or open an interactive session to a host. An explicit Deny always wins in IAM evaluation, so this holds regardless of what the baseline policies would otherwise permit.
No write access
The role is assessment-only. Remediation is disabled, so the role holds no write permissions of any kind.
How it works
Subscribe here. It is free, no card, no commitment.
Deploy the CloudFormation template using Quick Launch. It creates one IAM role and registers it with Firemind automatically, so there is nothing to copy and paste.
Firemind runs discovery and returns your assessment.
Delete the stack whenever you choose. Access ends with it.
AWS services assessed: Amazon EC2, Amazon EBS, Amazon S3, Amazon RDS, Amazon VPC, AWS IAM, Amazon CloudWatch, AWS CloudTrail, AWS Config, AWS Security Hub, AWS Systems Manager, AWS Cost Explorer and AWS Trusted Advisor, among others.
About Firemind: AWS Premier Tier Services Partner. 200+ clients since 2018, ISO 27001 certified, in partnership with AWS, NVIDIA and Anthropic. Core markets: UK and Ireland, Finland, Germany and the Netherlands.
Highlights
Free and read-only: a metadata-only assessment of your AWS estate. Subscribe, deploy a single CloudFormation template, and receive a discovery report covering compute, storage, databases, identity, security posture and cost. No cost, no card, no commitment.
Your data is explicitly out of reach: the role is built on SecurityAudit and ViewOnlyAccess with explicit Deny policies layered over the top. It can list a bucket and count its objects but cannot read one, and describe a database and its encryption but cannot read a row.
Assessment only, with no write access: remediation is disabled for this assessment. The template creates one IAM role and nothing else, reports it back automatically, and access ends the moment you delete the stack.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
This listing offers a single free assessment dimension with no charge. You pay nothing through AWS Marketplace for this option. The assessment runs read-only inside your own cloud account, so it takes no action on your systems. It delivers a baseline discovery report covering estate topology, incident volume, current resolution benchmarks, security findings, and cost optimization opportunities. Because there is only one dimension, pricing does not scale, tier, or vary by usage. Any expansion beyond the assessment into ongoing operations is scoped and agreed separately with the vendor and is not billed through this free listing.
Top-of-mind questions for buyers
What does the free assessment measure, and what does it map to in my environment?
The assessment maps your estate topology and reads live operational signal across your accounts. It counts incident and alert volume by category, records current resolution time benchmarks, surfaces security findings and drift, and identifies cost optimization opportunities. It runs read-only and takes one to two weeks from connection.
Does the free assessment change or take action on my systems?
No. The assessment runs read-only inside your own cloud account using an access role scoped to what you define. It reads signal and diagnoses only. It never requires credentials that exceed the boundary you set, and it takes no operational action during this phase.
Will the free listing charge me if I expand into ongoing operations?
No. This listing covers only the free read-only assessment. Any move into ongoing operations, such as incident resolution or cost management, is scoped and agreed separately with the vendor. That work is not billed through this free listing, and pricing there depends on service scope and workload complexity.
www.firemind.com+1
Helpful?
Vendor refund policy
This product is free. AWS Marketplace collects no fees from you and Firemind does not invoice for it, so there is nothing to refund. You can cancel your subscription at any time in the AWS Marketplace console, and you can revoke Firemind's access immediately by deleting the CloudFormation stack in your account. If you believe you have been charged for this product in error, contact Firemind at hello@firemind.com and we will respond within one business day.
Request a private offer to receive a custom quote.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
Support
Vendor support
For support, or questions about your assessment, contact Firemind at hello@firemind.com. We respond within one business day (UK business hours, Monday to Friday).
This assessment includes:
Help deploying the CloudFormation template, including reviewing the IAM policy with your security team before you run it
A discovery report and a readout with a Firemind cloud architect
Help removing Firemind's access when you are finished
There is no charge for this product and no paid support tier attached to it.
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
AI-driven autonomous operations that detect, diagnose, and remediate incidents across AWS, Azure/Entra and GitHub — policy-governed, human-approved for high-risk actions, and fully auditable.
Autonomous operations for your AWS databases. AI agents monitor performance, patch, back up, tune and remediate incidents per database instance — policy-governed, human-approved for high-risk actions, and fully auditable.
The IT Operations Engine replaces reactive managed services with autonomous operations on AWS. AI agents detect, diagnose, and remediate incidents, fulfil service requests, and continuously manage security posture — with risk-based execution and human approval for high-impact actions. Audited outcomes from live production: 93% first-line automation, P2 resolution in 9 minutes, 50%+ run-cost reduction.
Autonomous operations for your container platforms on AWS. AI agents keep EKS and ECS clusters healthy, scale, patch and remediate incidents per cluster — policy-governed, human-approved for high-risk actions, and fully auditable.
Be the first to review this product. We've partnered with PeerSpot to gather customer feedback. You can share your experience by writing or recording a review, or scheduling a call with a PeerSpot analyst.