Parameter groups associated with AWS Redshift clusters do not have SSL enforced for incoming connections which may expose sensitive customer data.
In AWS Console -
In Terraform -
References:
https://docs.aws.amazon.com/redshift/latest/dg/r_Users.html
https://registry.terraform.io/providers/hashicorp/aws/latest/docs/resources/redshift_parameter_group