Unseal vault hosted in AWS ECS Fargate

Would anyone help me to understand what’s the best way to capture unseal keys and then unseal the vault If I needed to run the vault in AWS ECS Fargate?
It would be great if anyone could share some pointer around this topic.