I have a use-case to validate the integrity of a payload sent between two applications. When I looked at AWS KMS, asymmetric CMK looked viable for signing the payload using priv