* Scenario: Migrating a stand-alone application storing PII to the cloud. * Data to Encrypt: Data at rest (Option B) should be encrypted: * Data in transit (Option A) and backups (Option C) are also important but not the primary concern here. * Data archives (Option D) may or may not contain sensitive data. Reference: CompTIA Server+ Guide, Chapter 5: Security, Section 5.3.1 (Data Encryption)