Design Azure cloud architectures and enterprise landing zones using Microsoft best practices. Use when Codex needs to plan or review Azure platform foundations, subscription hierarchy, management groups, identity and access, governance, networking, security controls, workload placement, resilience, cost optimization, or environment rollout patterns.
Design production-ready Azure platforms and workload architectures with clear tradeoffs, guardrails, and rollout sequencing. Prioritize secure-by-default landing zones, operational simplicity, and scalable governance.
references/landing-zone-blueprint.md.references/architecture-review-checklist.md.references/governance-security-baseline.md.references/decision-patterns.md.references/official-docs.md.Collect before recommending architecture:
Apply these rules consistently:
Always include:
For every architecture answer:
When useful, structure output as:
Architecture Decision Record bullets for major choicesLanding Zone Backlog with prioritized work itemsControl Matrix mapping risks to Azure controls