You can use now:
@EnableMethodSecurity
Check the documentation
Note that you can avoid using prePostEnabled = true, because by default is true.
boolean prePostEnabled() default true;
boolean jsr250Enabled() default false;
boolean proxyTargetClass() default false;