AWS Security & Cloud Platform Consultant

Location
London
Workplace
On-site

About this role

Tasks


AWS Security & Cloud Platform consultant


Location: London,UK


3months + Contract with possible extension


Role Summary


We are seeking an experienced AWS Security & Cloud Platform Consultant to lead the technical execution of a large-scale Defensive AI and Bot Mitigation Proof of Value for a high-volume enterprise digital platform. The consultant will design, build, and deploy cloud-native security controls, observability solutions, traffic analytics, automation frameworks, and AI-assisted operational capabilities using AWS services and Infrastructure as Code.


The role requires deep expertise in AWS networking, CloudFront, WAF, security automation, observability, large-scale log analytics, and cloud-native delivery practices.


Key Responsibilities


Cloud Security & Edge Protection



  • Design and implement AWS WAF and CloudFront-based protection architectures.

  • Configure managed rule sets, rate-limiting controls, traffic classification, and bot mitigation capabilities.

  • Implement layered security controls to identify and mitigate malicious traffic.

  • Build and optimize edge caching strategies to reduce origin load and operational costs.


Infrastructure as Code & Platform Engineering



  • Develop Infrastructure as Code using AWS CDK, CloudFormation, or Terraform.

  • Contribute code through enterprise Git repositories and CI/CD pipelines.

  • Create reusable deployment templates, automation scripts, and operational runbooks.

  • Support deployment rehearsals and production release preparation.


Observability & Analytics



  • Implement logging pipelines using:



  • AWS WAF Logs



  • Kinesis Firehose



  • Amazon S3



  • Amazon Athena



  • CloudWatch



  • Develop scheduled analytics queries and reporting frameworks.



  • Establish operational dashboards, KPIs, alerting, and performance monitoring.



  • Analyse traffic patterns and produce security and cost optimisation insights.




Bot Detection & Threat Intelligence



  • Develop traffic profiling and behavioural analysis models.

  • Analyse API usage, fingerprinting signals, client patterns, token adoption, and anomaly indicators.

  • Produce evidence packs for security reviews and governance gates.

  • Measure detection effectiveness, precision, false-positive rates, and operational impact.


AI & Security Automation



  • Design and implement AI-assisted operational workflows.

  • Build automated analysis and recommendation loops using AWS native services.

  • Implement governance guardrails, kill-switch controls, and audit mechanisms.

  • Support autonomous or semi-autonomous security response workflows.


Stakeholder Engagement



  • Work closely with:



  • Security teams



  • Platform Engineering



  • SRE teams



  • Application Development teams



  • Architecture and Governance forums



  • Prepare executive-level reports and decision-gate documentation.



  • Facilitate technical workshops and design reviews.




Requirements


Required Skills


AWS Expertise



  • AWS WAF

  • Amazon CloudFront

  • AWS Shield Advanced

  • Amazon Athena

  • Amazon S3

  • Amazon CloudWatch

  • Amazon Kinesis Firehose

  • AWS Lambda

  • API Security

  • Cost Optimisation


Cloud Engineering



  • AWS CDK

  • CloudFormation

  • Terraform

  • CI/CD Pipelines

  • Git-based development workflows

  • Infrastructure Automation


Security & Networking



  • Web Application Security

  • Bot Management

  • API Security

  • DDoS Protection

  • Identity & Access Management

  • Network Security Architecture


Data & Analytics



  • SQL / Athena Query Development

  • Log Analytics

  • Threat Detection

  • Data Visualisation

  • KPI and Operational Reporting


Preferred Qualifications



  • AWS Certified Security Specialty

  • AWS Certified Solutions Architect Professional

  • AWS Advanced Networking Certification

  • Experience delivering security transformation initiatives on AWS.

  • Experience working in regulated, enterprise-scale environments.

  • Familiarity with AI-driven operations (AIOps), security analytics, and autonomous remediation frameworks.

Tired of cold applications?

Sign up with Clera and we'll reach out the moment a role actually fits you — no more spraying applications into the void.

Know someone who'd be great for this?