Encryption
Data Pipes use KMs for all encryption. https://docs.aws.amazon.com/AmazonRDS/latest/UserGuide/Overview.Encryption.Keys.html
We create 2 customer-managed KMS keys for encryption
- Core KMS key which encrypts - RDS instance 
- Elasticache instance 
 
- Data Pipes KMS key which encrypts - S3 buckets 
- Athena workgroup 
- SQS queues 
- SNS topic 
 
