About the Role
We are seeking an experienced AWS Security & Cloud Platform Consultant to lead the technical execution of a large-scale Defensive AI and Bot Mitigation Proof of Value for a high-volume enterprise digital platform. The consultant will design, build, and deploy cloud-native security controls, observability solutions, traffic analytics, automation frameworks, and AI-assisted operational capabilities using AWS services and Infrastructure as Code.
Responsibilities
- Design and implement AWS WAF and CloudFront-based protection architectures.
- Configure managed rule sets, rate-limiting controls, traffic classification, and bot mitigation capabilities.
- Implement layered security controls to identify and mitigate malicious traffic.
- Build and optimize edge caching strategies to reduce origin load and operational costs.
- Develop Infrastructure as Code using AWS CDK, CloudFormation, or Terraform.
- Contribute code through enterprise Git repositories and CI/CD pipelines.
- Create reusable deployment templates, automation scripts, and operational runbooks.
- Support deployment rehearsals and production release preparation.
- Implement logging pipelines using AWS WAF Logs, Kinesis Firehose, Amazon S3, Amazon Athena, and CloudWatch.
- Develop scheduled analytics queries and reporting frameworks.
- Establish operational dashboards, KPIs, alerting, and performance monitoring.
- Analyse traffic patterns and produce security and cost optimisation insights.
- Develop traffic profiling and behavioural analysis models.
- Analyse API usage, fingerprinting signals, client patterns, token adoption, and anomaly indicators.
- Produce evidence packs for security reviews and governance gates.
- Measure detection effectiveness, precision, false-positive rates, and operational impact.
- Design and implement AI-assisted operational workflows.
- Build automated analysis and recommendation loops using AWS native services.
- Implement governance guardrails, kill-switch controls, and audit mechanisms.
- Support autonomous or semi-autonomous security response workflows.
- Work closely with Security teams, Platform Engineering, SRE teams, Application Development teams, and Architecture and Governance forums.
- Prepare executive-level reports and decision-gate documentation.
- Facilitate technical workshops and design reviews.
Requirements
- AWS WAF
- Amazon CloudFront
- AWS Shield Advanced
- Amazon Athena
- Amazon S3
- Amazon CloudWatch
- Amazon Kinesis Firehose
- AWS Lambda
- API Security
- Cost Optimisation
- AWS CDK
- CloudFormation
- Terraform
- CI/CD Pipelines
- Git-based development workflows
- Infrastructure Automation
- Web Application Security
- Bot Management
- API Security
- DDoS Protection
- Identity & Access Management
- Network Security Architecture
- SQL / Athena Query Development
- Log Analytics
- Threat Detection
- Data Visualisation
- KPI and Operational Reporting
- AWS Certified Security Specialty
- AWS Certified Solutions Architect Professional
- AWS Advanced Networking Certification
- Experience delivering security transformation initiatives on AWS.
- Experience working in regulated, enterprise-scale environments.
- Familiarity with AI-driven operations (AIOps), security analytics, and autonomous remediation frameworks.
Skills
- AWS WAF
- Amazon CloudFront
- AWS Shield Advanced
- Amazon Athena
- Amazon S3
- Amazon CloudWatch
- Amazon Kinesis Firehose
- AWS Lambda
- API Security
- Cost Optimisation
- AWS CDK
- CloudFormation
- Terraform
- CI/CD Pipelines
- Git
- Infrastructure Automation
- Web Application Security
- Bot Management
- API Security
- DDoS Protection
- Identity & Access Management
- Network Security Architecture
- SQL
- Athena Query Development
- Log Analytics
- Threat Detection
- Data Visualisation
- KPI and Operational Reporting
- AI-driven operations (AIOps)
- Security Analytics
- Autonomous Remediation Frameworks
Location
- London, UK
Work Type
- Contract
- Onsite
Experience Level
- Experienced
