Amazon Athena Connector > Amazon Athena sources > Data encryption in Amazon Athena sources
  

Data encryption in Amazon Athena sources

You can run queries in Amazon Athena on encrypted data in Amazon S3. You must run the Amazon Athena queries in the region where Amazon S3 is hosted. You can also encrypt the query results in Amazon S3.
Select the type of the encryption in the Encryption Type field under the Amazon Athena advanced source properties.
Use the customer master key ID generated by AWS Key Management Service for server-side encryption.
You can configure the following types of encryption:
None
The data is not encrypted.
SSE-S3
If you select the SSE-S3 encryption type, Amazon Athena encrypts the file using the Amazon S3-managed key for server-side encryption.
SSE-KMS
If you select the SSE-KMS encryption type, Amazon Athena encrypts the file using the AWS KMS-managed key or Amazon Resource Name (ARN) for server-side encryption.
CSE-KMS
If you select the CSE-KMS encryption type, Amazon Athena encrypts the file using the AWS KMS-managed key for client-side encryption.