Can Suricata read traffic from a log server & perform analysis without an network interface to monitor

What type of logs are you talking about? Are those network logs?

With 70TB of traffic you’re talking about a 10Gbit/s or higher link?

Suricata is inspecting network traffic and produces its own logs.