Encryption at Rest
Described in great detail here.
This would involve a good encryption method, which would possibly be a wrapper method around DB calls. What key to use to encrypt the data would also be needed (a shared key might be okay?). Lastly a migration plan would be needed for the current keys in the database.