AWS Kinesis Server without server side encryption (SSE) can impact the confidentiality of data at-rest.
In Terraform -
References:
https://docs.aws.amazon.com/firehose/latest/dev/encryption.html
https://registry.terraform.io/providers/hashicorp/aws/latest/docs/resources/kinesis_firehose_delivery_stream#server_side_encryption