Course overview
Lesson 2 of 9 · 3 promptsAI for Cloud Architects
LESSON 02 OF 9

Draft Infrastructure Designs

3 prompts for Cloud Architects

Prompts for Cloud Architects: copy one, fill it in, paste it into your AI.

Track progress as a member

In this lesson

  1. 01Draft A Reference ArchitectureUse this when you have workload requirements and need a first-pass reference architecture with components, tiers, and data flow.
  2. 02Draft A Cloud Network TopologyUse this when you need a clear VPC, subnet, and connectivity layout written out before you build it.
  3. 03Generate Starter IaC TemplatesUse this when you want a working first draft of Terraform or CloudFormation to adapt instead of starting from a blank file.
1Copy the promptClick Copy on the prompt you need.
2Paste it into your AIChatGPT, Claude, Gemini or Copilot.
3Fill in the {{brackets}}Your own details, or let the AI ask you.
4Follow up and checkUse the follow-ups, then check the facts.
01

Draft A Reference Architecture

Use this when you have workload requirements and need a first-pass reference architecture with components, tiers, and data flow.

Prompt

Role You are a cloud architect who turns workload requirements into a clear first-pass reference architecture. Optimise for a design a mixed team can review quickly, with explicit components, tiers, data flow and open questions.

Context you provide

  • {{workload_description}}: what the system does and who uses it
  • {{functional_requirements}}: main capabilities and user journeys
  • {{non_functional_requirements}}: availability, latency, throughput, recovery targets
  • {{expected_scale}}: users, request rate, data volume and growth
  • {{cloud_provider_and_services}}: preferred platform and any mandated services
  • {{constraints}}: budget, regions, data residency, existing systems, team skills
  • {{security_and_compliance_needs}}: identity, encryption, audit, regulatory context
  • {{current_state}}: what exists today, if anything

Instructions

  1. Ask for any missing inputs, then restate the workload in two or three sentences for me to confirm.
  2. List the architectural tiers and the components in each, with the job each component does.
  3. Describe the primary data flows end to end: synchronous calls, asynchronous events, and where data is stored or cached.
  4. Cover cross-cutting concerns: identity and access, network boundaries, secrets, logging and monitoring, backup and recovery.
  5. Explain the scaling approach per tier and where the design is likely to hit limits.
  6. Offer two or three alternatives for choices that are genuinely open, with trade-offs.
  7. List assumptions, open questions and the decisions needed before detailed design.

Output format Markdown with these headings: Scope, Tiers and Components, Data Flow, Cross-Cutting Concerns, Scaling, Options and Trade-offs, Assumptions and Open Questions. Use tables for components and options. About 800 to 1200 words, plain language. Leave out pricing, detailed configuration and code.

Guardrails

  • Do not invent service limits, certifications or region availability; mark anything uncertain as "verify with the provider".
  • Flag every assumption about scale, requirements or constraints.
  • Tell me when a data residency rule, contract term or provider manual must be checked before this design is finalised.

Example Workload: customer portal for 40k users; NFRs: 99.9% availability, 300ms p95; provider: AWS; constraint: EU data residency.

Open as its own page

02

Draft A Cloud Network Topology

Use this when you need a clear VPC, subnet, and connectivity layout written out before you build it.

Prompt

Role You are a cloud network architect who turns requirements into a precise, buildable topology. Optimise for clear security boundaries, workable addressing, and cost awareness.

Context you provide

  • {{cloud_provider}}: target platform
  • {{region_and_azs}}: region and availability zones
  • {{workload_summary}}: what runs and expected traffic
  • {{cidr_block}}: overall address range
  • {{environment}}: prod, staging, dev
  • {{connectivity}}: internet, on-prem, peering, private endpoints
  • {{security_constraints}}: isolation, inspection, compliance needs
  • {{expected_growth}}: scale over 12 to 24 months
  • {{budget_notes}}: cost limits or priorities

Instructions

  1. Ask for any missing inputs, then confirm the scope in one sentence.
  2. Define the VPC or equivalent with its CIDR and purpose.
  3. List subnets by tier (public, private app, private data, management) with CIDR, AZ placement, and route table behaviour.
  4. Describe gateways and connectivity: internet gateway, NAT, transit or peering, VPN or dedicated links, private endpoints.
  5. State security controls: security groups, network ACLs, flow logging, inspection points.
  6. Note DNS, load balancing, and shared services.
  7. Flag assumptions and anything needing provider documentation or a security review.

Output format Markdown with headings: Overview, VPC and CIDR, Subnets (table: name, CIDR, AZ, route table), Connectivity, Security controls, DNS and load balancing, Assumptions. Under 700 words. Plain professional tone. No code, CLI commands, or invented product names.

Guardrails

  • Do not invent CIDR ranges, service limits, or provider feature names; ask or leave a marked placeholder.
  • Flag every assumption and say when the user must check current provider documentation or a security specialist.
  • Do not claim regulatory compliance unless the user supplied the requirement.

Example cloud_provider: AWS; region_and_azs: eu-west-1, 2 AZs; workload_summary: 3-tier web app; cidr_block: 10.20.0.0/16; environment: prod; connectivity: internet plus on-prem VPN; security_constraints: no direct internet to data tier; expected_growth: 3x in 18 months; budget_notes: moderate.

Open as its own page

03

Generate Starter IaC Templates

Use this when you want a working first draft of Terraform or CloudFormation to adapt instead of starting from a blank file.

Prompt

Role You are a cloud infrastructure engineer who turns a short design brief into a working first draft of infrastructure as code that a cloud architect can review and adapt.

Context you provide

  • {{iac_tool}}: Terraform or CloudFormation
  • {{cloud_provider}}: target provider
  • {{environment}}: dev, staging or production
  • {{workload_description}}: what the system does
  • {{resource_list}}: compute, network, storage and data pieces
  • {{region}}: deployment region
  • {{naming_convention}}: prefix and tagging rules
  • {{networking_requirements}}: subnets, ingress, egress
  • {{security_requirements}}: encryption, identity, least privilege
  • {{existing_modules_or_templates}}: reuse or start fresh
  • {{constraints}}: budget, compliance, sizing limits
  • {{outputs_needed}}: values other stacks consume

Instructions

  1. Ask for any missing inputs, then restate the design in one short paragraph before writing code.
  2. Propose the file layout for {{iac_tool}} and list every file you will produce.
  3. Write the templates: provider and version pinning, typed variables with defaults, resources, outputs.
  4. Comment each block and mark the points where the architect must decide.
  5. Add an example variables file and a short deploy order note.
  6. List every assumption you made.

Output format Markdown. Short design summary, then a file tree, then each file in a fenced code block under its path as a heading. Plain factual comments. Leave out cost estimates, pricing and marketing language.

Guardrails

  • Do not invent resource types, module names or version numbers. Use a clear placeholder and say so when unsure.
  • Never include real credentials, account identifiers or secrets. Use variables and placeholders only.
  • Tell the user to check the provider's current documentation and their own security review before applying anything.

Example iac_tool: Terraform; cloud_provider: AWS; environment: staging; workload_description: containerised API with a managed database; resource_list: network, two subnets, load balancer, container service, database, object storage; region: eu-west-1.

Open as its own page

Skills for these tasks

Give your AI these skills and it does these tasks the expert way. Connect your AI once and it picks them up by itself.