Holistic post-quantum migration support

Cryptographic exposure, accountability, and migration decisions.

Exposure screening

A quick reconnaissance of data, flows, and cryptographic dependencies to determine whether the organization requires further analysis and where to start.

  • Data triage for long-term confidentiality
  • Mapping of key data flows and communication channels
  • Identifying cryptographic mechanisms protecting critical flows
  • Preliminary qualification of exposure to the HNDL scenario
  • Report with priorities for further analysis

Crypto-governance support

Building organizational capacity to manage cryptography: from organizing knowledge about dependencies, through ownership and decision-making processes, to measurable accountability.

  • Establishing program ownership and accountability for cryptographic decisions
  • Defining a collaboration model between security, IT, architecture, procurement, legal, and business
  • Preparing principles for cryptography inventory and dependency classification
  • Linking cryptography to data, flows, systems, vendors, and owners
  • Defining metrics, reporting, and escalation processes for cryptographic risks

Migration roadmap

Translating knowledge about data, dependencies, and responsibilities into a migration plan: priorities, stages, requirements for systems and vendors, and principles for maintaining crypto-agility.

  • Prioritizing migration areas by risk, criticality, and data horizon
  • Selecting a migration path for key dependencies: hybrid, update, replacement, or vendor control
  • Defining requirements for architecture, PKI, certificates, protocols, and the cryptography lifecycle
  • A roadmap of technical, organizational, and procurement decisions

Technical support

Network traffic and source code analysis

Cryptography inventory can be done based on documents, declarations and system lists. We help verify what actually runs in practice.

The goal is to build a picture that can serve as the starting point for migration and later as a basis for tracking progress.

Network traffic analysis

Analysis of observed network traffic to identify communication flows, endpoints, and protocols.

Connection and protocol map

A documented map of system-to-system connections, showing sources, destinations, directions, and protocols used.

Source code and cryptographic dependency analysis

Review of cryptographic library usage, identification of the cryptographic schemes in use, and a roadmap for migrating to post-quantum alternatives.

Discuss the scope of support

During a free 20-minute call, we'll identify a possible starting point and next steps.

Latest posts

View all posts »
Ecosystem resilience perspective

Ecosystem resilience perspective

Bernstein's latest paper gives the perspective that due to implementation bugs, the estimated number of breakable ML-DSA keys could reach the order of 2²⁷ in 2027.