Install nomad behind nat gateway on aws with external client

I’d like to setup nomad servers in AWS while setting the clients on external cloud providers.
I wonder if I could somehow use nat gw and put the servers behind it. So I could whitelist one IP address across the nomad client hosts?