A company grants read access to S3 bucket objects for distinct customers, using IAM to ensure access is limited to their respective files. To comply with new regulations, the company must enforce encrypted transit for S3 interactions. What is the appropriate solution?