Business Security Weekly (Audio)

Say Easy, Do Hard - Crypto-Agility - BSW #440


Listen Later

With Q-day getting closer, regulatory guidance pushing firms to migrate to quantum security in the next five years, and an extensive remediation backlog waiting to be discovered, security leaders must start their quantum security migration today. Easier said than done. In this Say Easy, Do Hard segment, we discuss the quantum-safe journey using a framework for crypto-agility.

In part 1, we define cryptographic agility, or crypto-agility for short, and why it's important. Crypto-agility is not just about transitioning to quantum-safe cryptography in the nimblest way possible, and it's not something that can be achieved merely by updating encryption algorithms and protocols. Instead, you need to adapt your organization's cryptographic architecture, automation, and governance to allow for greater control and flexibility.

In part 2, we discuss a framework for discovery, prioritization, and remediation while keeping crypto-agility in mind. A quantum-safe journey requires:

  • Inventory of Systems With Non-Quantum-Safe Algorithms And Protocols
  • System Prioritization, Leading To A Migration Roadmap
  • Remediation, Including Vendors And Partners

Once a distant possibility, Q-Day is quickly approaching. Are you ready for 2030?

Segment Resources:

  • https://pqcc.org/wp-content/uploads/2025/05/PQC-Migration-Roadmap-PQCC-2.pdf
  • https://pqcc.org/wp-content/uploads/2025/06/PQCC-Inventory-Workbook.xlsx
  • https://qramm.org/learn/cryptoscan-guide.html
  • https://research.ibm.com/blog/quantum-safe-cbomkit

Visit https://www.securityweekly.com/bsw for all the latest episodes!

Show Notes: https://securityweekly.com/bsw-440

...more
View all episodesView all episodes
Download on the App Store

Business Security Weekly (Audio)By Matt Alderman

  • 5
  • 5
  • 5
  • 5
  • 5

5

3 ratings


More shows like Business Security Weekly (Audio)

View all
Risky Business by Risky Business Media

Risky Business

371 Listeners

The Reasoning Show by Massive Studios

The Reasoning Show

154 Listeners

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast) by Johannes B. Ullrich

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

651 Listeners

CyberWire Daily by N2K Networks

CyberWire Daily

1,028 Listeners

Enterprise Security Weekly (Audio) by Adrian Sanabria

Enterprise Security Weekly (Audio)

14 Listeners

Security Weekly News (Audio) by Doug White

Security Weekly News (Audio)

33 Listeners

Paul's Security Weekly (Audio) by Paul Asadoorian

Paul's Security Weekly (Audio)

16 Listeners

Click Here by Recorded Future News

Click Here

418 Listeners

Application Security Weekly (Audio) by Mike Shema

Application Security Weekly (Audio)

13 Listeners

Cybersecurity Today by Jim Love

Cybersecurity Today

175 Listeners

CISO Series Podcast by David Spark, Mike Johnson, and Andy Ellis

CISO Series Podcast

195 Listeners

Defense in Depth by David Spark, Steve Zalewski, Geoff Belknap

Defense in Depth

73 Listeners

Cybersecurity Headlines by CISO Series

Cybersecurity Headlines

139 Listeners

Huberman Lab by Scicomm Media

Huberman Lab

29,272 Listeners

CISO Stories Podcast (Audio) by Jessica Hoffman

CISO Stories Podcast (Audio)

13 Listeners