OpenSearch Collection CMK Encryption

HIGH
Source
CloudSploit
ID
opensearch-collection-cmk-encryption

OpenSearch Collection CMK Encryption

Ensures that OpenSearch Serverless collections are encrypted with KMS Customer Master Keys (CMKs).

OpenSearch Serverless should use KMS Customer Master Keys (CMKs) instead of AWS managed keys for encryption in order to have full control over data encryption and decryption.

Update the encryption policy and customer managed key for encryption.