Ensure that Dataproc clusters have encryption enabled using desired protection level.
By default, all dataproc clusters are encrypted using Google-managed keys. To have better control over how your dataproc clusters are encrypted, you can use Customer-Managed Keys (CMKs).
Ensure that all Dataproc clusters have desired encryption level.