A financial services company is running a mission-critical online transaction processing (OLTP) application on AWS. The application uses a Multi-AZ Amazon RDS database instance that was originally launched without encryption. Automated daily snapshots are taken for backup and compliance purposes. Due to updated security requirements, the company must ensure that the database and all future snapshots are encrypted. What is the most effective way for a solutions architect to enforce encryption moving forward?