Post-Quantum Archives - Intelligence Community News https://intelligencecommunitynews.com/tag/post-quantum/ Breaking news about the market for products, systems and services for the U.S. intelligence community Thu, 20 Nov 2025 02:58:08 +0000 en-US hourly 1 https://wordpress.org/?v=7.0 https://intelligencecommunitynews.com/wp-content/uploads/2018/10/cropped-ICN-square-logo-400-32x32.jpg Post-Quantum Archives - Intelligence Community News https://intelligencecommunitynews.com/tag/post-quantum/ 32 32 59882712 The Urgency of Quantum Readiness – What the Intelligence Community Needs to Know Now https://intelligencecommunitynews.com/ic-insiders-the-urgency-of-quantum-readiness-what-the-intelligence-community-needs-to-know-now/?utm_source=rss&utm_medium=rss&utm_campaign=ic-insiders-the-urgency-of-quantum-readiness-what-the-intelligence-community-needs-to-know-now Thu, 20 Nov 2025 02:52:13 +0000 https://intelligencecommunitynews.com/?p=43223 From IC Insider Tychon The Quantum Countdown Quantum computing has moved from theoretical curiosity to technological inevitability and with it...

The post The Urgency of Quantum Readiness – What the Intelligence Community Needs to Know Now appeared first on Intelligence Community News.

]]>
From IC Insider Tychon

The Quantum Countdown

Quantum computing has moved from theoretical curiosity to technological inevitability and with it comes one of the largest security transitions in modern history. When Dr. Peter Shor unveiled his algorithm in 1994, the world learned that quantum computers could one day break the public-key encryption that protects everything from battlefield communications to classified research and national intelligence data.

That day, commonly known as “Q-Day,” may be closer than many think. Dr. Michele Mosca, one of the world’s foremost experts in quantum computing timelines, gives Q-Day a 1-in-7 chance by 2026 and a 50 percent chance by 2031. For the Intelligence Community (IC), where adversaries continuously collect encrypted traffic to decrypt later (“Harvest Now, Decrypt Later”), this risk is immediate.

There will be an immediate impact if large scale quantum computers emerge

  • Breaking RSA, Diffie–Hellman, and ECC – the algorithms that protect most classified and unclassified government communications.
  • Compromising diplomatic, military, and IC networks that still rely on classical public-key cryptography.
  • Identity theft of government credentials, including digital signatures.

Harvest Now, Decrypt Later Is Already Here

Adversaries do not need to wait for Q-Day. Many already intercept and store encrypted communications today with the expectation that they can decrypt them once quantum computing power matures. Data collected now such as diplomatic cables, SIGINT and HUMINT communications, Intelligence sharing arrangements or even sensitive personnel records may be exposed years later. What is at risk, historical operational TTPs, sources, networks, covert methods, OPSEC, and more to provide our adversaries with a greater understanding of U.S. Intelligence.

The only defense is proactive migration to quantum-safe algorithms, known collectively as Post-Quantum Cryptography (PQC).

PQC Mandates Are in Motion

Federal and IC organizations are not starting from scratch. A series of policies and directives are already shaping the national PQC roadmap:

  • OMB M-23-02 – Requires agencies to inventory and assess cryptography, report on quantum-susceptible algorithms, and establish PQC transition plans.
  • NSM-10 – Directs agencies to protect National Security Systems (NSS) from quantum threats.
  • NIST PQC Standards – Algorithms like CRYSTALS-Kyber and CRYSTALS-Dilithium are being standardized into Federal Information Processing Standards (FIPS) for broad adoption.

 

Together, these mandates demand one critical capability: knowing what cryptography you have, where it resides, and whether it’s quantum-vulnerable.

The Four Phases of Quantum Readiness

Every organization, from mission system owners to intelligence analysts, will need to navigate four core phases of quantum readiness:

  1. Information Discovery: Identify systems, data flows, and communication channels using encryption.
  2. Cryptography Inventory: Locate every algorithm, key, and certificate in use.
  3. Risk Assessment & Analysis: Determine which assets are quantum-susceptible and prioritize remediation.
  4. Remediation & Migration: Replace vulnerable cryptography and modernize systems for PQC.

 

Manually completing these steps across hundreds of thousands of endpoints and applications could take years, time the IC cannot afford.

Automating Readiness with Tychon

Tychon Quantum Readiness automates cryptography discovery, inventory, and risk assessment across endpoints, networks, containers, and cloud environments. The lightweight, stateless utility deploys seamlessly through tools IC agencies already use such as BigFix, Intune, SCCM, or Ansible, with no new agents or consoles to manage.

Within hours, mission owners can see where vulnerable cryptography lives, score their risk using NIST-aligned metrics, and generate dashboards suitable for compliance reporting to OMB M-23-02 and NSM-10.

Field-proven on more than one million U.S. Government systems, Tychon demonstrates scalability that matches IC mission environments.

Risk Management, Not Reinvention

Cybersecurity has always been about risk management. Tychon brings that same maturity to quantum readiness. Helping agencies measure, analyze, mitigate, and manage cryptographic risk without disrupting existing operations or retraining staff.

Because data never leaves the customer environment and Tychon runs within existing security stacks, it aligns naturally with classified, air-gapped, and compartmented networks.

The Time to Act Is Now

Quantum readiness is no longer a research initiative. It’s a national security imperative. Agencies that begin automated cryptographic discovery today gain the time and clarity needed to meet federal timelines and stay ahead of adversaries already collecting data for future decryption. Taking action now is necessary and beneficial to agencies as it:

  • Gives leaders the facts needed to plan as early inventory provides the scope, scale, and complexity necessary to build accurate PQC budgets, staffing models, and modernization timelines.
  • Enables smart prioritization by knowing which systems use quantum-vulnerable algorithms lets agencies focus first on the highest-risk, highest-impact assets.
  • Creates leverage with vendors and integrators exposing dependencies on third-party products, giving agencies time to secure roadmaps, upgrades, and contract modifications.

 

Learn where your cryptography stands. Visit tychon.io to schedule a Quantum Readiness Assessment and receive your no-cost 90-day pilot.

About Tychon

TYCHON is a NIST NCCoE consortium collaborator and proven cybersecurity innovator delivering automated cryptography discovery and quantum-readiness solutions across U.S. Federal, DoW, and commercial enterprises. Tychon provides instant cryptographic visibility, risk assessment, and compliance reporting for the post-quantum era.

Sponsored content provided by Tychon LLC, a NIST NCCoE consortium collaborator for PQC.

About IC Insiders

IC Insiders is a special sponsored feature that provides deep-dive analysis, interviews with IC leaders, perspective from industry experts, and more. Learn how your company can become an IC Insider.

The post The Urgency of Quantum Readiness – What the Intelligence Community Needs to Know Now appeared first on Intelligence Community News.

]]>
43223
PQShield and Carahsoft partner https://intelligencecommunitynews.com/pqshield-and-carahsoft-partner/?utm_source=rss&utm_medium=rss&utm_campaign=pqshield-and-carahsoft-partner Tue, 04 Nov 2025 15:23:05 +0000 https://intelligencecommunitynews.com/?p=43098 On October 30,  PQShield, a provider of post-quantum cryptography (PQC) solutions, and Carahsoft Technology Corp. announced a new partnership. Under the...

The post PQShield and Carahsoft partner appeared first on Intelligence Community News.

]]>
On October 30,  PQShield, a provider of post-quantum cryptography (PQC) solutions, and Carahsoft Technology Corp. announced a new partnership. Under the agreement, Carahsoft will serve as PQShield’s Master Government Aggregator, making the company’s post-quantum cryptography product suite, which is compliant with new NIST PQC Standards, available to the public sector through Carahsoft’s reseller partners and NASA Solutions for Enterprise-Wide Procurement (SEWP) V, OMNIA Partners, E&I Cooperative Services Contract and The Quilt contracts.

“We are pleased to partner with Carahsoft to help government customers transition to post-quantum cryptography by 2035 to meet the deadline set by national cybersecurity agencies like the NSA and NCSC,” said Ben Packman, chief strategy officer at PQShield. “With the release of the new NIST standards, we’ve reached a critical milestone in advancing post-quantum security. Post-quantum cryptography is already making its way through the supply chain, and quantum-safe, NIST-aligned products are available today. To accelerate adoption, we not only need continued development but also greater education and clear guidance for enterprises on what these standards mean and how they affect their security responsibilities. Given that government agencies and critical national infrastructure will likely be among the first targets of quantum-enabled threats, it is essential to collaborate with partners like Carahsoft to help these institutions navigate the transition to post-quantum readiness.”

PQShield stands out for its deep expertise in NIST’s PQC standards—as co-authors of all published standards to date—and its proprietary cryptographic algorithms, patented technologies and security protocols. Its solutions are rigorously tested to meet Cloud, Edge and Government-grade requirements, aligning with certifications such as NIST, Common Criteria, SESIP and PSA.

PQShield’s products enable government departments and suppliers to reach compliance with the new PQC standards set out in regulations like the National Security Agency’s (NSA) CNSA 2.0 and NSM-10 by the 2030 timeline. They also support the transition away from vulnerable cryptographic algorithms, including the NIST-mandated phase-out of RSA by 2035.

PQShield’s varied product suite allows government department IT leaders to choose implementations of PQC that best match their priorities – something that is increasingly important for organizations that require either fast-performance, high-security or low-footprint solutions.

“The addition of PQShield’s products to Carahsoft’s solution portfolio aligns with our mission to offer the most relevant and up-to-date technology to our government customers,” said Brian O’Donnell, vice president of cybersecurity solutions at Carahsoft. “The 2035 NIST deadline means the need for compliant and secure post-quantum cryptography solutions is rapidly increasing. Carahsoft and its reseller partners are equipped and ready to meet the procurement needs of public sector organizations that still need to adopt quantum-resistant cryptographic algorithms.”

Source: Carahsoft

Time is running out — become a paid subscriber to IC News today, and lock in subscription rates at 2025 prices. You’ll get full access to breaking news from across the IC contracting space, with new articles each weekday.

The post PQShield and Carahsoft partner appeared first on Intelligence Community News.

]]>
43098
SEALSQ and WISeSat partner https://intelligencecommunitynews.com/sealsq-and-wisesat-partner/?utm_source=rss&utm_medium=rss&utm_campaign=sealsq-and-wisesat-partner Mon, 30 Dec 2024 14:42:28 +0000 https://intelligencecommunitynews.com/?p=40583 On December 30, SEALSQ Corp, a Swiss company that focuses on developing and selling Semiconductors, PKI, and Post-Quantum technology hardware...

The post SEALSQ and WISeSat partner appeared first on Intelligence Community News.

]]>
On December 30, SEALSQ Corp, a Swiss company that focuses on developing and selling Semiconductors, PKI, and Post-Quantum technology hardware and software products, announced that in cooperation with WISeSat AG, a pioneer in satellite-based IoT communication, it is set to launch its next-generation satellite in less than two weeks. SEALSQ and WISeSat are both subsidiaries of WISeKey International Holding Ltd, a leader in cybersecurity, AI, blockchain, and IoT technologies.

This milestone marks a key step in building a revolutionary satellite constellation capable of enabling secure machine-to-machine (M2M) transactions via space. If successful, the launch will initiate testing of advanced technologies that automate and secure communication between machines, powered by SEALSQ’s state-of-the-art semiconductors and post-quantum cryptography solutions, according to the company.

The partnership introduces a Satellite-as-a-Service (SataaS) model, allowing users/industries to access cutting-edge satellite services without investing in or managing complex infrastructures. By offering secure IoT data transmission, real-time M2M automation, and geospatial analytics, this initiative delivers flexible, scalable solutions to a variety of end users in sectors such as logistics, precision agriculture, and critical infrastructure.

Each satellite is equipped with SEALSQ’s semiconductors and root of trust cryptography, ensuring protection against emerging threats. The constellation’s incremental deployment strategy ensures that each satellite incorporates the latest innovations, creating a continuously evolving and secure network for real-time data transmission and analytics.

By combining SEALSQ’s expertise in post-quantum security with WISeSat’s satellite communication capabilities, this collaboration establishes a unique and scalable infrastructure in space. Frequent satellite launches will expand the constellation’s capacity and coverage, transforming how industries integrate secure, space-based IoT solutions into their operations.

Source: SEALSQ

Time is running out — become a paid subscriber to IC News today, and lock in subscription rates at 2024 prices. You’ll get full access to breaking news from across the IC contracting space, with new articles each weekday.

The post SEALSQ and WISeSat partner appeared first on Intelligence Community News.

]]>
40583
GDIT joins NIST’s PQC Consortium https://intelligencecommunitynews.com/gdit-joins-nists-pqc-consortium/?utm_source=rss&utm_medium=rss&utm_campaign=gdit-joins-nists-pqc-consortium Tue, 03 Dec 2024 14:44:36 +0000 https://intelligencecommunitynews.com/?p=40389 On December 2, General Dynamics Information Technology (GDIT), a business unit of General Dynamics, announced that it has joined the...

The post GDIT joins NIST’s PQC Consortium appeared first on Intelligence Community News.

]]>
On December 2, General Dynamics Information Technology (GDIT), a business unit of General Dynamics, announced that it has joined the National Institute of Standards and Technology’s (NIST) Migration to Post-Quantum Cryptography (PQC) Building Block Consortium. As the first systems integrator to join this consortium, GDIT will work alongside leading industry, government and academic organizations from around the world to address the threats posed by quantum computing.

The rise of quantum computing threatens to compromise the encryption methods currently used to protect our most sensitive data and systems widely used today. In response, NIST has spearheaded efforts to develop new quantum-resistant algorithms and technologies. The consortium will focus on developing practical solutions and tools that help organizations migrate to PQC, ensuring that critical digital information remains protected against future quantum-enabled threats.

As a consortium member, GDIT will bring decades of expertise in managing and securing large-scale cryptographic systems, providing critical insights across the entire PQC lifecycle – from risk assessment and system discovery to migration and long-term management. GDIT’s Tidal PQC Digital Accelerator will play a pivotal role in helping organizations identify vulnerabilities, prioritize cryptographic risks and accelerate the adoption of post-quantum cryptographic solutions. The company will also leverage its extensive network of cyber partnerships with hardware and software vendors to align industry capabilities with NIST’s standards for PQC adoption.

“The urgency of securing sensitive digital data has never been greater,” said Ben Gianni, GDIT’s senior vice president and chief technology officer. “The threat of adversaries using quantum computing to decrypt sensitive data, even years after it has been recorded, means we must start the migration to post-quantum cryptography today. At GDIT, we’ve been investing in innovative solutions to prepare for this very challenge. We’re proud to join forces with NIST and other leaders in this consortium to accelerate the transition to secure, quantum-resistant systems.”

GDIT’s participation in the NIST PQC Consortium builds on its broader efforts to guide federal agencies through the complexities of post-quantum cryptography. As the government prepares for the quantum era, GDIT is actively supporting agencies to interpret and apply the latest PQC guidance from key entities, including the Office of Management and Budget, Department of Defense, National Security Agency and Cybersecurity and Infrastructure Security Agency. This work ensures that federal organizations are equipped to meet emerging cryptographic challenges with secure, scalable solutions.

Source: GDIT

Your competitors read IC News each day. Shouldn’t you? Learn more about our subscription options, and keep up with every move in the IC contracting space.

The post GDIT joins NIST’s PQC Consortium appeared first on Intelligence Community News.

]]>
40389
NIST’s Quantum Standards: The Time for Upgrades Is NOW https://intelligencecommunitynews.com/ic-insiders-nists-quantum-standards-the-time-for-upgrades-is-now/?utm_source=rss&utm_medium=rss&utm_campaign=ic-insiders-nists-quantum-standards-the-time-for-upgrades-is-now Mon, 04 Nov 2024 13:08:07 +0000 https://intelligencecommunitynews.com/?p=40157 From IC Insider Thales Trusted Cyber Technologies By Bill Becker, CTO, Thales Trusted Cyber Technologies After years of research, development,...

The post NIST’s Quantum Standards: The Time for Upgrades Is NOW appeared first on Intelligence Community News.

]]>
From IC Insider Thales Trusted Cyber Technologies

By Bill Becker, CTO, Thales Trusted Cyber Technologies

After years of research, development, testing, and collaboration, in August NIST released its first set of Post Quantum Cryptography (PQC) standards. Now’s the time for federal agencies – and vendors supplying equipment to the public sector – to start planning IT infrastructure upgrades that make use of these PQC standards in their crypto-agile firmware or software.

For  vendors and suppliers, NIST’s announcement means that technology providers, standards organizations, and industry groups have to get to work fixing whatever issues may have been standing in the way of large-scale releases and deployment of interoperable PQC implementations.

It’s simple. You can’t wait until the hackers have quantum tools before you start working on a plan to protect against them. Agencies and industry alike need to start now to transition to the new world of post-quantum cryptography.

A quick overview on the new NIST standards

There are two important encryption functions at the heart of NIST’s new PQC standards:

  • General encryption. This function protects information across a public network
  • Digital signatures. This applies in particular to identity authentication.

 

For a bit of history, after a 6 year competition to select the next generation of quantum-resistant cryptographic algorithms, in 2022 NIST selected four algorithms from the original 69 eligible algorithms submitted. Then in 2023, NIST announced draft standards for three of the four selected algorithms:  CRYSTALS Kyber, CRYSTALS Dilithium, and SPHINCS+. The fourth draft standard, based on FALCON, is planned for late 2024. More recently, in August 2024, NIST released the first three finalized post-quantum Federal Information Processing Standards (FIPS) encryption standards: FIPS 203, FIPS 204, and FIPS 205.

Here’s a flyover look at each of the standards:

  • FIPS 203. This standard is based on CRYSTALS-Kyber algorithm. The new name is the somewhat awkward but more specifically descriptive Module-Lattice-Based Key-Encapsulation Mechanism (ML-KEM). Intended to be the main general encryption standard, ML-KEM has the benefit of faster operation. It also has smaller encryption keys that can be exchanged relatively easily between two parties.
  • FIPS 204. This standard is based on the CRYSTALS-Dilithium algorithm, and is now known as Module-Lattice-Based Digital Signature Algorithm (ML-DSA). This standard is intended to be the primary standard for protecting digital signatures.
  • FIPS 205, which is also intended for digital signatures, makes use of the SPHINCS+ algorithm. In this iteration, it is known as Stateless Hash-Based Digital Signature Algorithm (SLH-DSA). Based on a different mathematical approach than ML-DSA, this standard is supposed to be used as a backup method in case any vulnerabilities are exposed in ML-DSA.

 

And the name changes are going to keep coming. When the FIPS 206 standard (which is built around the FALCON algorithm) is released, the new name for the algorithm will be “FFT (fast-Fourier transform) over NTRU-Lattice-Based Digital Signature Algorithm” or FN-DSA. That’s a mouthful, we know, but NIST wins back points for accuracy.

Continuing their mission to offer a robust suite of post-quantum encryption standards, in September 2022 NIST launched an Additional Digital Signatures project which called for additional general purpose signature schemes. In October 2024 NIST announced they have selected 14 candidates to advance to the second round of the Additional Digital Signature process.

Evaluating and implementing PQC migration

The NIST National Cybersecurity Center of Excellence (NCCoE) has been working with industry collaborators and other federal agencies to make it easier to understand the challenges associated with the migration to PQC. So far, the project has drafted guidance for crypto discovery, interoperability, and performance testing.

Now, in practical terms, the onus for change is actually on the vendor and supplier community. If they haven’t already done so, vendors have to start implementing crypto-agility across their product lines. That means putting serious effort into implementing product architectures that can accept in-field firmware updates that introduce the new NIST PQC algorithms and corresponding protocols in all of their products.

This is particularly true for providers of Hardware Security Modules (HSMs) which are often used as the root of trust for our cryptographic systems. Some vendors implemented PQC before the PQC FIPS standards were released to provide agencies a preview of how a PQC enabled system will operate within an existing FIPS 140 certified cryptographic module.   This helped agencies conduct initial testing and makes for a relatively quick and easy transition to quantum-safe encryption solutions when PQC standards compliant firmware upgrades are made available.

Late in 2023 in a publication focused on the public sector vendor community, we said the race was on to “quantum-proof” encryption in the federal sector. Government has not been stingy with reminders, guidance and compliance milestones to agencies – everything from the May 2022 White House National Security Memo on Quantum, to the Office of Management and Budget’s OMB M-23-02 roadmap for agency post quantum cryptography migration. And most recently OMB M-24-14 instructed agencies to “Prepare for the Post-Quantum Future” by ensuring that they are sufficiently resourced transition to post-quantum cryptography.

As was described in the previous policies, the first step on the road to PQC migration starts with crypto discovery. Agencies should start using automated crypto inventory tools to know specifically where and how cryptography is being used in their organizations.

With NIST’s published standards, there’s really nothing more standing in the way of planning for this migration. Quantum computing is farther along than we may realize, and we have to start safeguarding our networks and our data against cybersecurity threats from bad actors. Because make no mistake: They will certainly use the quantum technology to their own bad ends.

Three steps to post-quantum strategy

With this background, and the understanding of the very real threats that can be posed by  hackers armed with post-quantum technology, it is absolutely essential to develop a strategy for cryptography in a post-quantum world. Fortunately, you can get started by remembering three simple steps:

  1. Know Your Risks. Harvesting and early attacks are a real threat to long-term data. IT managers and other network professionals need to understand how their organizations use possibly vulnerable cryptography, the expiration date of their encrypted data, and the crypto-agility maturity of their IT infrastructure. The best way to do this is to inventory cryptographic technologies and prioritize high risk systems. There are tools available that can automate crypto discovery and inventory.
  2. Focus on crypto-agility. Crypto-agility is not only about the quantum threat; it’s about being able to face the reality that all algorithms will absolutely fail over time. Many systems today make it difficult to rotate keys, to choose different sizes/parameters, and to change mechanisms or key algorithms. These are all required for protocols to be versioned, negotiated and not to fail when presented with unknown options. They are essential for crypto-agility, and it’s important to work with providers with solutions that embrace those needs.
  3. Start Today. In fact, if you don’t start today, you’ll be racing to meet the threat tomorrow. Organizations have to begin designing a quantum-resistant architecture today, if they hope to protect themselves against the emerging quantum threat. IT infrastructure equipment is often deployed for years or decades without hardware replacement. Consequently, in the post-quantum world, it’s important to make sure currently deployed hardware was developed with crypto-agility principles in mind, and to receive software or firmware updates now that post-quantum crypto algorithms and protocols are being standardized. It is also important to check with equipment providers to see what beta or technology preview firmware they have available for testing in non-production systems that implements pre-standardized quantum-resistant cryptographic algorithms. Setting up a PQC test environment is a good idea. This will enable organizations to start testing new technology without impacting production environments.

Let’s not sugar-coat things. Quantum computers will break today’s public key cryptography. So, now what?

Even though large-scale quantum computing is several years away from being a practical reality, federal government observers and experts are already worried about the cybersecurity implications. The sooner an organization can start working toward quantum cybersecurity, the better it can handle incoming threats from when bad actors with quantum hacking in their bag of dirty tricks.

One company’s role in the PQC transition

Thales Trusted Cyber Technologies (TCT) has been actively involved in industry and government’s PQC transition from the earliest days of standard-setting.

Since 2021, Thales TCT’s Luna T-Series Network and PCIe hardware security modules (HSMs) FIPS 140 certification has included the onboard, user-configurable quantum entropy source. Thales TCT also participated as one of the earliest members of NIST’s National Cybersecurity Center of Excellence’s “Migration to Post-Quantum Cryptography Project.” In that capacity, the company contributed the T-Series HSM and associated interoperability testing to ensure that PQC implementations could be supported across the industry.

Thales is also a member of the Post-Quantum Cryptography Alliance, the steward organization for the development and maintenance of open-source PQC libraries. Perhaps most importantly, Thales TCT and the National Security Agency (NSA) have signed a Cooperative Research and Development Agreement (CRADA) for evaluating the NIST-selected PQC algorithms when operating on an HSM.

The CRADA results will be used by Thales TCT to accelerate PQC algorithm deployment, and to assist the government and other HSM users in getting a handle on the value of using PQC-enabled HSMs to mitigate the quantum threat. Thales is also a contributing member of the OASIS PCKS#11 Technical Committee, which is instrumental in defining interoperable specifications for cryptographic modules.

About Thales TCT

Thales Trusted Cyber Technologies, a business area of Thales Defense & Security, Inc., protects the most vital data from the core to the cloud to the field. We serve as a trusted, U.S. based source for cyber security solutions for the U.S. Federal Government. Our solutions enable agencies to deploy a holistic data protection ecosystem where data and cryptographic keys are secured and managed, and access and distribution are controlled.

For more information, visit www.thalestct.com

About IC Insiders

IC Insiders is a special sponsored feature that provides deep-dive analysis, interviews with IC leaders, perspective from industry experts, and more. Learn how your company can become an IC Insider.

 

The post NIST’s Quantum Standards: The Time for Upgrades Is NOW appeared first on Intelligence Community News.

]]>
40157
Post-Quantum chosen for NIST’s quantum migration project https://intelligencecommunitynews.com/post-quantum-chosen-for-nists-quantum-migration-project/?utm_source=rss&utm_medium=rss&utm_campaign=post-quantum-chosen-for-nists-quantum-migration-project Tue, 02 Jul 2024 14:12:41 +0000 https://intelligencecommunitynews.com/?p=39131 ‘Harvest Now Decrypt Later’ (HNDL) attacks currently represent the world’s greatest existential cybersecurity threats. These attacks see hostile actors steal...

The post Post-Quantum chosen for NIST’s quantum migration project appeared first on Intelligence Community News.

]]>
‘Harvest Now Decrypt Later’ (HNDL) attacks currently represent the world’s greatest existential cybersecurity threats. These attacks see hostile actors steal encrypted data now, which can be decrypted once a cryptographically relevant quantum computer (CRQC) emerges.

This makes it critical to begin the process of replacing hardware, software, and services that use public-key algorithms now, so that the information is protected from both HNDL and, eventually, future quantum attacks.

It is for this reason that the National Institute of Standards and Technology (NIST) established a consortium of organizations as part of its National Cybersecurity Center of Excellence (NCCoE) “Migration to Post-Quantum Cryptography (PQC)” project. On July 2, Post-Quantum, the oldest specialist PQC firm in the world, has been selected to be a part of the project, supporting it in developing tangible PQC implementations and use cases.

The NCCoE project brings together experts from industry, government, and academia to address the real-world needs of securing complex IT systems and protecting the nation’s critical infrastructure. Participants include Palo Alto Networks, Amazon Web Services (AWS), Cisco, Microsoft and VMWare as well as other vendors who are sharing their expertise in planning for and implementing post-quantum cryptographic algorithms.

Andersen Cheng, executive chairman, Post-Quantum, commented, “Our priority over the last few years has been on accelerating real-world implementations. For example, last year a new standard that we authored for a hybrid quantum-safe Virtual Private Networks (VPN) was ratified by the Internet Engineering Task Force (IETF). This new standard is now the glue that allows parties using different post-quantum key establishment algorithms to talk with one another, which is particularly important as we enter a situation where different nation states deploy a variety of different algorithms. We are looking forward to sharing implementation knowledge of our protocol and unique know-how in securing mobile end points with partners such as Palo Alto, Microsoft, and AWS, to accomplish an end-to-end secure quantum migration.”

Post-Quantum is the first company to be founded with the sole focus on PQC. Working in high-grade cybersecurity and encryption innovation, the company works for various secure areas of banks, defense organizations, and governments. As a first mover in the industry, Post-Quantum is one of the very few organizations which has progressed past the R&D stage and can provide operational quantum-safe solutions today. It has designed and built a range of quantum-safe products like VPNs and Identity Systems, which have been deployed by organizations like NATO.

Source: Post-Quantum

Your competitors read IC News each day. Shouldn’t you? Learn more about our subscription options, and keep up with every move in the IC contracting space.

The post Post-Quantum chosen for NIST’s quantum migration project appeared first on Intelligence Community News.

]]>
39131
Accenture and SandboxAQ announce collaboration https://intelligencecommunitynews.com/accenture-and-sandboxaq-announce-collaboration/?utm_source=rss&utm_medium=rss&utm_campaign=accenture-and-sandboxaq-announce-collaboration Tue, 16 Jan 2024 16:11:49 +0000 https://intelligencecommunitynews.com/?p=37582 On January 16, Accenture and SandboxAQ announced that they are partnering to deliver artificial intelligence (AI) and quantum computing solutions to help...

The post Accenture and SandboxAQ announce collaboration appeared first on Intelligence Community News.

]]>
On January 16, Accenture and SandboxAQ announced that they are partnering to deliver artificial intelligence (AI) and quantum computing solutions to help organizations identify and remediate cybersecurity vulnerabilities.

According to recent Accenture research, executives’ top concern for 2024 is the ability to adapt to advancements in technology and innovations such as AI. This is notable because cybercriminals are using AI-enabled tools to advance ransomware attacks, obtain user passwords and spear phish employees. To fend off these attacks, enterprises are transitioning to a zero-trust architecture, which requires strong cryptographic management.

Together, Accenture and SandboxAQ will provide comprehensive AI-enabled cryptographic management leveraging SandboxAQ’s Security Suite. The solution will enable organizations to scan all of their files, applications and network traffic to ensure that all of their data—whether on-premise or hosted via major cloud providers—is secure even when attackers break through firewalls and network endpoints. The goal is to help companies defend against the growing threat of quantum computing-based decryption attacks, which will only increase as quantum computing continues to advance and pose even greater threats to encryption systems.

“With the increased use of AI and generative AI, cyberattacks are becoming more targeted and precise,” said Paolo Dal Cin, global lead of Accenture Security. “Our collaboration with SandboxAQ will better equip organizations to defend against a myriad of cybersecurity and quantum risks before a cyber adversary can strike.”

Through the partnership, Accenture will help clients leverage SandboxAQ’s AI and simulation solutions, which are currently being used to accelerate drug discovery and advance materials science, and SandboxAQ’s quantum sensing solutions, which are being tested in geomagnetic navigation systems and next-generation medical imaging devices.

“Cyberattacks are on the rise and are severely impacting enterprises and governments,” said Jack Hidary, CEO of SandboxAQ. “With Accenture, we’ll be able to provide comprehensive cryptographic management solutions that will protect their clients against both current and future threats. We will also be working with Accenture on other products including next-gen AI simulation.”

Source: Accenture

Stay in the know with breaking news from across the IC and IC contracting landscape by becoming a paid subscriber to IC News. Your support makes our work possible.

The post Accenture and SandboxAQ announce collaboration appeared first on Intelligence Community News.

]]>
37582
QuSecure wins Army post-quantum cybersecurity contract https://intelligencecommunitynews.com/qusecure-wins-army-post-quantum-cybersecurity-contract/?utm_source=rss&utm_medium=rss&utm_campaign=qusecure-wins-army-post-quantum-cybersecurity-contract Tue, 13 Jun 2023 12:42:00 +0000 https://intelligencecommunitynews.com/?p=35819 On June 8, San Mateo, CA-based QuSecure, Inc., a post-quantum cybersecurity (PQC) company, announced the United States Army has awarded...

The post QuSecure wins Army post-quantum cybersecurity contract appeared first on Intelligence Community News.

]]>
On June 8, San Mateo, CA-based QuSecure, Inc., a post-quantum cybersecurity (PQC) company, announced the United States Army has awarded the company a Small Business Innovation Research (SBIR) Phase II federal government contract to develop quantum-resilient software solutions.

With this award, QuSecure will continue to advance research and development of quantum-resilient technologies and encryption solutions for the U.S. government. The award states that QuSecure’s work has merit, will result in important benefits for the Army, and allots upwards of $2 million to address uses in tactical edge and tactical IoT devices that can be used for battle-ready deployment.

The U.S. government’s urgency to move toward a quantum safe future has been established with the recent actions taken by Congress and the White House. The Endless Frontiers Act establishes a Technology and Innovation Directorate at the National Science Foundation to use $100 billion in federal funds over five years to research emerging technologies including quantum computing, and specifically mentions the need for PQC. Additionally, in December 2022 President Biden signed into law the Quantum Computing Cybersecurity Preparedness Act, which requires the Office of Management and Budget to prioritize federal agencies’ migration to IT systems using post-quantum cryptography.

“Following winning our U.S. Air Force SBIR Phase III award last fall, QuSecure is proud to be a part of the Army’s march toward a more cybersecure future,” said Aaron Moore, QuSecure head of engineering, who also led R&D efforts for Defense Advanced Research Project Agency (DARPA). “This award from the Army recognizes QuSecure’s ability to help enhance the combat fighting capabilities that modern warfare necessitates.”

Source: QuSecure

Your competitors read IC News each day. Shouldn’t you? Learn more about our subscription options, and keep up with every move in the IC contracting space.

The post QuSecure wins Army post-quantum cybersecurity contract appeared first on Intelligence Community News.

]]>
35819
QuSecure and US government coordinate post-quantum encryption communication https://intelligencecommunitynews.com/qusecure-and-us-government-coordinate-post-quantum-encryption-communication/?utm_source=rss&utm_medium=rss&utm_campaign=qusecure-and-us-government-coordinate-post-quantum-encryption-communication Wed, 13 Jul 2022 12:09:24 +0000 https://intelligencecommunitynews.com/?p=32872 On July 12, San Mateo, CA-based QuSecure, Inc. announced the U.S. federal government is currently orchestrating the world’s first-ever post-quantum...

The post QuSecure and US government coordinate post-quantum encryption communication appeared first on Intelligence Community News.

]]>
On July 12, San Mateo, CA-based QuSecure, Inc. announced the U.S. federal government is currently orchestrating the world’s first-ever post-quantum encryption communication over a government network by utilizing its QuProtect PQC solution. QuProtect is the industry’s first end-to-end PQC software-based solution uniquely designed to protect encrypted communications and data with quantum-resilience using quantum secure channels.

The government is leveraging QuSecure’s unique post-quantum cryptographic algorithm on its legacy systems at a combined Air Force, Space Force and NORAD location. The quantum-resilient deployment has 100-percent uptime protecting data that previously used standard encryption, with no increased bandwidth or latency issues through QuProtect’s quantum tunnel. Data currently being transmitted cannot be decrypted by others unless they have the QuProtect system, and any adversary collecting the protected data to store will be unlikely to decrypt it in the future, even with a quantum computer.

“This is extremely significant because the U.S. Government has not employed a post-quantum communications channel on premises before,” said Pete Ford, QuSecure head of federal operations. “The QuProtect platform is performing exceptionally well with uninterrupted, continuous quantum channel uptime protecting formerly classically encrypted and quantum vulnerable asymmetric keys.”

This event was possible due to activities around QuSecure’s evaluation for, and eventually winning, the Small Business Innovation Research (SBIR) Phase III Federal Government procurement contract for PQC solutions. Announced last month, QuSecure has been established as the government’s leading provider of PQC solutions, setting the standard for Government’s PQC requirements. This is the Government’s first and only Phase III designation aimed at addressing end-to-end comprehensive solutions to the post-quantum threat, and further emphasizes the need to deploy PQC for classical and future quantum attacks, the company said.

Source: QuSecure

Help IC News continue to bring you breaking news from across the IC and IC contracting landscape. Join our paid subscribers today.

The post QuSecure and US government coordinate post-quantum encryption communication appeared first on Intelligence Community News.

]]>
32872
SINET announces 16 most innovative cybersecurity technologies of 2016 https://intelligencecommunitynews.com/sinet-announces-16-most-innovative-cybersecurity-technologies-of-2016/?utm_source=rss&utm_medium=rss&utm_campaign=sinet-announces-16-most-innovative-cybersecurity-technologies-of-2016 Wed, 21 Sep 2016 10:47:38 +0000 http://intelligencecommunitynews.com/?p=11654 SINET, a San Francisco, CA-based organization focused on advancing Cybersecurity innovation through global public-private collaboration, announced today the winners of...

The post SINET announces 16 most innovative cybersecurity technologies of 2016 appeared first on Intelligence Community News.

]]>
sinetSINET, a San Francisco, CA-based organization focused on advancing Cybersecurity innovation through global public-private collaboration, announced today the winners of its annual SINET 16 competition. The companies, which were selected from a pool of 82 applicants and nine different countries, including Australia, Canada, Israel, Japan, Norway, Singapore, Sweden and the United Kingdom, represent a range of solution providers who are identifying cutting-edge technologies to address Cybersecurity threats and vulnerabilities. The selected companies will share their work with buyers, builders, investors and researchers during the SINET Showcase on Nov. 2 – 3, 2016 at the National Press Club in Washington, DC.

The competition requires that revenues be under $15 million and this year’s applicant pool of early stage and emerging technology companies was the most competitive since SINET began this initiative seven years ago. The entries were evaluated in a two-stage process by the SINET Showcase Steering Committee, which was comprised of 100 Cybersecurity professionals, including chief security information officers from leading organizations worldwide, experts in government intelligence and defense agencies and distinguished venture capital firms specializing in security.

2016 SINET 16 INNOVATORS

The following companies were selected as the 2016 SINET 16 Innovators:

BlackRidge Technology: BlackRidge provides an identity-based network and cyber security solution that authenticates identity and applies policy on the first packet of network sessions. This provides a new level of real-time protection that cloaks and protects servers, segments networks, and provides identity attribution.

Contrast Security, Inc: Contrast Security provides continuous protection of enterprise applications and services against both vulnerabilities and attacks. Contrast uses “deep security instrumentation” for unprecedented speed, accuracy, coverage, & scalability without experts or SLC changes. Think “New Relic for Security.”

CyberX: CyberX secures the Industrial Internet, providing real-time detection and deep insight into control systems’ vulnerabilities while ensuring business and operational continuity. With field-proven technology and accredited research, CyberX protects dozens of major industrial sites worldwide.

DataVisor: DataVisor is the only online fraud detection service utilizing unsupervised big data analytics to identify attack campaigns before they conduct any damage to consumer-facing online services.

Digital Shadows: Digital Shadows provides cyber situational awareness, through our SearchLight platform, which provides truly relevant, contextual intelligence and protects organizations against cyber attacks, loss of intellectual property, and loss of brand integrity by providing them an “attacker’s eye view.”

Interset: Interset provides an intelligent, accurate threat-detection solution. Interset detects threats through machine learning and advanced analytics running on a big-data platform, either on premise or in the cloud.

Menlo Security: Menlo Security protects organizations from cyber attacks by eliminating the threat of malware from Web and email with its patented Isolation Platform that easily scales for any size organization and requires no end point software, making it simple and cost effective to deploy.

Ntrepid Corporation (Passages): Passages provides a secure virtual browser that protects enterprises from all web-based attacks. By isolating browsing activity from the local computer and network, users can access any website and follow any link without the risk of infecting their machines or company infrastructure.

Phantom Cyber Corp.: Phantom is a security automation & orchestration platform that integrates existing security products to provide a layer of “connective tissue” between them. Phantom executes digital playbooks to achieve in seconds what may take hours to accomplish with the horde of products enterprises use daily.

Post-Quantum: Post-Quantum is a science-driven UK company with a mission to protect the world’s data by deploying secure and innovative authentication, communications, encryption and access technologies. Our modules are ready for use today, but will remain strong in the future, even with quantum computer threats.

Elastic/Prelert: Prelert provides behavioral analytics for IT security, IT operations and business operations teams. It analyzes massive amounts of log data, finds anomalies, links them together and lets the data tell the story behind advanced security threats, IT performance issues and business disruptions.

ProtectWise: ProtectWise™ is disrupting the security industry with its network security platform, that captures high fidelity network traffic, creates a lasting memory for the network, and delivers real time and retrospective alerting and analysis in a rich, innovative visualizer.

RiskSense: RiskSense is the leader in cyber risk management. We enable organizations to reveal cyber risk, quickly orchestrate remediation, and monitor the results. This is done by contextualizing internal security intelligence, external threat data, and business criticality across a growing attack surface.

SafeBreach: SafeBreach is a pioneer in continuous security validation. Our groundbreaking platform simulates breach methods with an extensive and growing Hacker’s Playbook™ of research and real-world investigative data to provide a “hacker’s view” of an enterprise’s security posture.

ThreatQuotient Inc: ThreatQuotient provides ThreatQ, a threat intelligence platform that centrally correlates unlimited external sources with internal security solutions for contextual, operationalized intelligence in one easy to comprehend view to help customers tailor indicators of compromise to their industry.

Vera: Vera is an enterprise data security and information rights management company that allows IT to secure, track and audit any type of digital information. With Vera, security and policy travels with the data, so enterprises can maintain visibility and control over who can access sensitive information.

“With the dramatic increase in attacks, we must be relentless in identifying and supporting innovative solutions. The SINET Showcase provides an excellent opportunity to highlight advanced technologies in order to stay ahead of our global adversaries,” says Robert Rodriguez, chairman and founder of SINET. “This year’s SINET 16 process was our most competitive yet, with many of the winners scoring just hundredths of a point ahead of other candidates.”

ABOUT SINET SHOWCASE

SINET Showcase provides a platform for the business of Cybersecurity to take place as emerging technology companies are able to present their solutions and connect with a select audience of nearly 400 venture capitalists, investment bankers as well as industry and government buyers. The program, which is supported by the Department of Homeland Security, Science & Technology Directorate, also features commentary on the latest investment and Cybersecurity trends from the industry’s foremost experts. The program includes educational workshops, panel sessions, an interactive luncheon hour and a networking reception.

Source: SINET

The post SINET announces 16 most innovative cybersecurity technologies of 2016 appeared first on Intelligence Community News.

]]>
11654