Build software & cloud

Agents deliver. Gates check. People decide.

I introduce development with AI agents (agentic coding) in your team, review architecture, cloud and code at a fixed price, and deliver products and platforms on your behalf.

30 minutes · remote · Ludwig Oswald, Munich

Entry
assessments from €4,900
Duration
one to three weeks per assessment
For
CTOs, engineering leads, founders, investors
Implementation
framework contract, billed by effort
01 / Adoption
97%

of respondents in large organisations use AI coding tools.

02 / Control
30%

have full governance in place for them.

03 / Risk
64%

are concerned that AI tools introduce new security vulnerabilities.

Source: Black Duck, June 2026 · 831 respondents in organisations with 500+ employees

01 Sound familiar?

The tools are there. The effect is not.

Licences without impact

Everyone has access to AI assistants, yet delivery time is the same as before.

Everyone works differently

Without shared rules, quality varies and reviews take longer instead of shorter.

Open questions about control

Security, data protection or the works council want to know which rules govern AI-written code on its way to production.

02 Approach

Agents in fixed roles. Gates at every step. People accountable.

This is how I build software myself: every task passes through the same stations. Whatever fails a gate does not move on.

Principle 01

Roles instead of prompts

Agents work in fixed roles: requirements, planning, design, code and verification. Every task passes through the same stations.

Principle 02

Gates instead of hope

Tests, type checks and security scans run automatically. Whatever fails a gate does not move on.

Principle 03

Approval by people

No merge without review and approval. Accountability stays with your team.

Reference flow · from requirement to release

  1. 01RequirementRequirements · Product OwnerStory cut, with acceptance criteria, dependencies and priorityDefinition of Ready
  2. 02Pre-reviewQA · Architecture · Security · LegalTestability, architecture, risks, data protection and compliance, reviewed in parallelArchitecture, security and compliance rules met
  3. 03PlanPlanningTasks and their order, drawn from all reviewsNo open blocker
  4. 04Plan approvalHuman · optionalDecision whether and how to implementSwitched on depending on risk
  5. 05DesignArchitecture · UI/UXSolution and recorded decisionsArchitecture decision recorded
  6. 06ImplementationCoding · DevOpsTest design before code; code, infrastructure and tests on a separate branchLint, build and tests green
  7. 07VerificationQA · SecurityReview loop: findings are fixed at once≥ 80% test coverage · code review and security scan passed
  8. 08AcceptanceQAEvery acceptance criterion proven with evidenceDefinition of Done
  9. 09ApprovalHumanReview and decision on the mergeNo merge without approval
  10. 10ReleaseDevOps · DocsThe CI/CD pipeline builds, checks and deploys; release and documentation up to dateCI/CD pipeline green · rollback documented
  11. 11Smoke testDevOps · QA · optionalCore flows run in the target environment. On red: roll back, sharpen the story, release againSmoke tests green · otherwise rollback

The run is automated end to end and stops only when a gate is not passed. Approving the merge always stays with a person; plan approval and the smoke test are switched on depending on risk.

Reference flow from my own development. Stations, gates and thresholds follow your project; further steps are added where your project needs them.

Roles in the rule set

Product
Requirements · Product Owner
Requirements, stories, priority and order
Design
Architecture · UI/UX · Planning
Solution, usability, tasks
Build
Coding · DevOps
Code, infrastructure as code, CI/CD and release
Control
QA · Security · Legal
Tests, vulnerabilities, data protection and compliance
Operations
Operations · Documentation
Incidents in three levels, docs in step with the code

Every role has its own rules, checkpoints and clear handovers. Legal flags topics; the legal assessment stays with a person.

Workflows built from these roles

Cut the backlog
Requirements become stories: cut, prioritised, with dependencies and order, straight onto your board.
Implement a story
A Jira story runs on its own from requirement to deployment. The run stops only where a person decides or a gate is not passed.
Accept a story
Tests, reviews and acceptance criteria are evidenced before a person approves.
Handle an incident
Intake, analysis and fix in three levels. Before any change, a person decides how to proceed.

Four examples. Further workflows are built from the same roles, tailored to your project and the way you work.

03 Agentic engineering

Introduce development with agents.

You start with an assessment and decide afterwards whether and how to continue.

Entry

Agentic engineering assessment

€7,900
Fixed priceFixed price, two weeks
  • Review of tools, process and pipeline
  • Risks in quality, security and data protection
  • Target picture and 90-day plan
  • Results meeting with management
Enquire
Enablement

Team training

from €7,900
Fixed price fromSmallest size: one team, three days
  • Working with agents in your own repository
  • Rules, gates, approvals
  • Ends with an action plan
Enquire
Implementation

Pilot with one team

from €28,000
Fixed price fromSmallest size: one team, one codebase, eight weeks
  • Rule set and roles for the agents
  • Quality gates and security scans in the pipeline
  • Approval process with people
  • Training on your own code
Enquire

From the first call to roll-out.

  1. Intro call

    30 minutes

    We look at your situation: team size, tools, and what has changed since AI tools were introduced.

  2. Assessment

    Two weeks

    I review tools, process and pipeline and name the risks. You receive a target picture and a 90-day plan.

  3. Pilot

    Eight weeks

    One team works with rule set, roles and gates on its own code. The approval process is proven in daily work.

  4. Ongoing support

    Ongoing

    The way of working moves on to further teams. The rules are maintained and the impact is measured.

04 Assessments

Architecture, cloud and code reviewed at a fixed price.

An independent view with report, risks and roadmap. I do not sell cloud contracts or licences.

Cloud

Cloud architecture assessment

from €5,900
Fixed price fromOne cloud, one workload, up to three accounts, two weeks
  • Review against the Well-Architected Framework
  • Cost, security, operations and reliability
  • Target picture and roadmap with effort estimate
  • Results meeting
Enquire
Security

Cloud security and compliance check

from €4,900
Fixed price fromOne environment, one framework, two weeks
  • Access model, controls and evidence
  • Mapped to BSI C5, ISO 27001 or NIS 2
  • Gap list by risk and effort
  • Normal case with two frameworks: €7,900
Enquire
Code

Architecture and code review

€6,900
Fixed priceOne product, team of up to ten, one to two weeks
  • Architecture, code quality, tests, security
  • Delivery process and operations
  • Risks by urgency
  • Action plan
Enquire
Investors

Technical due diligence

from €12,000
Fixed price fromTwo to three weeks
  • Report with risk matrix for the investment decision
  • Estimated cost of remediation
  • Scalability and dependencies
  • Conversations with the team
  • Report for the client; passing it on to third parties by agreement
Enquire

Cloud architecture assessment: each additional workload €2,400. All prices exclude VAT. The offer is aimed exclusively at businesses.

05 Development

Building and modernising, by effort.

For projects with an open scope I work under a framework contract with agreed goals: billed by the hour, monthly statement, with a cap on request.

01

Product development with agents

Starting point
A product is to be built, and the team is small.
Result
App, backend and cloud from one source, developed with agents in fixed roles and with the same gates as above.
02

Cloud architecture and platform

Starting point
Environments were built by hand, and every change is a risk.
Result
Your cloud platform entirely as code: separate environments, zero trust, EU data residency, CI/CD with security scans.
03

Modernisation and migration

Starting point
Legacy systems slow down every initiative, and replacing them is considered too expensive.
Result
Agents map the existing system, secure it with tests and migrate step by step. Every change passes the same gates.
04

MCP and agent integration

Starting point
Agents do not know your systems and work past tickets, documentation and code.
Result
Connecting Jira, Confluence, GitHub and your own systems via MCP, plus your own workflows as commands and skills.

By effortBilled by the hour under a framework contract, with a cap on request. The rate is stated in the offer.

06 Self-check

Where does your team stand? Ten questions, two minutes.

Tick what already applies today.

Your score
0/10

Tick what applies. Your result appears here.

Discuss the result

The evaluation stays in your browser; nothing is transmitted.

07 FAQ

What usually needs clarifying before the start.

May our data be sent to AI providers?

That depends on your data and contracts. In the assessment we record which data may go where and configure the tools accordingly.

What do data protection and the works council say?

Both need clear rules and traceability. That is exactly what the rule set provides: who approves, what is logged, and what is not evaluated.

Which tools do you require?

None in particular. I work with Claude Code and Cursor myself. The approach also works with the tools you have already licensed.

Who owns the code?

You do, along with everything created for you in the project. The rule set I bring stays mine; you may use it in your company permanently.

What are the running costs?

In addition to licences there are usage-based costs for the models. In the assessment we estimate them for your team.

08 Contact

30 minutes after which you know whether it fits.

In the intro call we look at your situation: team size, tools, architecture and what prompted the question. Afterwards you receive an offer within one working day, or a clear recommendation to leave it.

I use your details only to answer your enquiry. More in the privacy policy.