Your question is Plan Data Encryption Approach. Take a moment with it on the right.
Talk me through your thinking if you like. When you're confident, submit your answer and I'll grade it like a real screen (7/10 or better passes).
You are reviewing how a B2B SaaS platform should protect customer and account data across its application, APIs, storage systems, and internal services. Before implementation or remediation work begins, you want a clear approach for encryption at rest and in transit that is practical, auditable, and aligned with real data sensitivity.
What considerations would you make for data encryption at rest and in transit?