Medium Redshift Regional

Redshift Serverless namespaces should be encrypted with customer managed AWS KMS keys

NIST 800-53

Description

Confirms that Redshift Serverless namespaces use customer managed KMS keys for encryption.


Remediation

To enable customer managed KMS key encryption for Redshift Serverless namespaces, follow these steps:

Steps

  1. Sign in to the AWS Management Console and open the Amazon Redshift console.
  2. In the navigation pane, choose 'Serverless dashboard'.
  3. Select the identified namespace that requires KMS key encryption.
  4. Choose 'Edit'.
  5. In the 'Security' section, select a customer managed KMS key from the 'Encryption key' dropdown.
  6. Choose 'Save changes'.

Compliance

NIST 800-53