The image shows an “Encryption” configuration screen where key management is set to an AWS Customer Managed Key. It lists the specific KMS key alias being used: alias/pm-demo-awskmskey. The Rotate button on the right (highlighted in red) indicates you can rotate the encryption key as part of key lifecycle/security best practices.