AWS Athena
Amazon Athena is a serverless interactive query service based on Trino. You define tables over files in S3 (CSV, JSON, Parquet, ORC) in the Glue Data Catalog and query them with standard SQL, paying per terabyte scanned. Columnar formats such as Parquet and partitioning reduce cost a lot. It is commonly used to analyze CloudTrail, ALB and VPC flow logs.
With Terraform: aws_athena_workgroup, aws_athena_database and aws_glue_catalog_table.