Ensure SQS queues are encrypted using keys of desired encryption level
Messages sent to SQS queues can be encrypted using KMS server-side encryption. Existing queues can be modified to add encryption with minimal overhead.
Enable encryption using KMS Customer Master Keys (CMKs) for all SQS queues.