HIGH
Source
CloudSploit
ID
dms-encryption-enabled

DMS Encryption Enabled

Ensures DMS encryption is enabled using a CMK

Data sent through the data migration service is encrypted using KMS. Encryption is enabled by default, but it is recommended to use customer managed keys.

Enable encryption using KMS CMKs for all DMS replication instances.