Hi@akhtar,
You can create an HSM client certificate that an AWS Redshift cluster will use to connect to the client's HSM in order to store and retrieve the keys used to encrypt the cluster databases. The following create-hsm-client-certificate example generates an HSM client certificate that a cluster can use to connect to an HSM.
$ aws redshift create-hsm-client-certificate --hsm-client-certificate-identifier myhsmclientcert