DynamoDB tables should use at rest encryption with a Customer Managed Key
Using AWS managed keys does not allow for fine grained control. DynamoDB tables are encrypted by default using AWS managed encryption keys. To increase control of the encryption and control the management of factors like key rotation, use a Customer Managed Key.
Impact
Recommended Actions
Follow the appropriate remediation steps below to resolve the issue.
Enable server side encryption with a customer managed key