惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

Martin Fowler
Martin Fowler
有赞技术团队
有赞技术团队
博客园_首页
H
Help Net Security
GbyAI
GbyAI
aimingoo的专栏
aimingoo的专栏
V
Visual Studio Blog
The Cloudflare Blog
腾讯CDC
Jina AI
Jina AI
Last Week in AI
Last Week in AI
月光博客
月光博客
博客园 - 叶小钗
Google DeepMind News
Google DeepMind News
B
Blog RSS Feed
Blog — PlanetScale
Blog — PlanetScale
人人都是产品经理
人人都是产品经理
Engineering at Meta
Engineering at Meta
Y
Y Combinator Blog
Hugging Face - Blog
Hugging Face - Blog
博客园 - 聂微东
爱范儿
爱范儿
N
Netflix TechBlog - Medium
F
Fortinet All Blogs

Forbes - Innovation

Why Do Humans Have Fingerprints? Hint: It’s Not What You Think Booking.com Confirms Data Breach, Reservation PIN Codes Changed Why Major News Sites Are Blocking The Internet Archive’s Wayback Machine iPhone Fold Release Date: New Report Details Frustrating Apple News Comet Tracker: How To See Pan-STARRS And Three Planets On Wednesday NYT Mini Crossword Today: Tuesday, April 14 Hints And Answers Today’s NYT Strands Hints, Spangram, Answers: Tuesday, April 14 (It’s A Little Unclear) Today’s Wordle #1760 Hints And Answer For Tuesday, April 14 Most Of The Microplastics In Urban Air Come From Tires Today’s Wordle #1759 Hints And Answer For Monday, April 13 NYT Mini Crossword Today: Monday, April 13 Hints And Answers NYT Pips Today: Hints, Answers And Walkthrough For Monday, April 13 The YC Chief Who Codes 10,000 Lines A Day Has A Simple Secret Samsung Expands One UI 8.5 Beta To More Galaxy Owners Why You Should Stop Using Your iPhone If It’s On This List Chamath Says Firms That Treat AI As A Strategy Hand Rivals Their Edge 3 Unexpected Habits Of Secure Couples, By A Psychologist The First Lamp That Folds Your Clothes Samsung’s Disappointing Price Update For Galaxy Phone Buyers 3 Subtle Signs Someone Is Falling In Love With You, By A Psychologist Do Mantis Shrimp See More Colors Than Humans? A Biologist Explains NYT Connections Answers Explained For Monday, April 13 (#1,037) NYT Connections Hints Today: Monday, April 13 Clues And Answers (#1,037) LEGO Luigi & Mach 8 (72050) Review: 2026’s Best Set Yet? Marc Andreessen Says AI Productivity Will Trigger A Hiring Boom 3D Printing Is The Ultimate Hack To Reduce Household Spending Apple iPhone Fold: Striking Design Revealed In Leaked Photos Apple Smart Glasses: New Leak Reveals A Major Design Twist To Beat Meta Tested: The AI Coming To The Rivian R2 Quordle Hints Today: Monday, April 13 Clues And Answers
Post-Quantum Cryptography​: Creating Truly Secure Communi...
Dave Krauthamer · 2026-05-07 · via Forbes - Innovation

Dave Krauthamer is the field CTO and a board member at QuSecure.

getty

For more than 40 years, we have been building the modern internet on foundations that were never designed for the world we live in today.​ When the architects of the early internet created its protocols, they were solving a very different problem. Their focus was connectivity, not security. The scale was small, participants were trusted and the environment was controlled.​

No one imagined billions of connected devices, smartphones everywhere or critical infrastructure operating on global networks. The constant exchange of sensitive information across open systems was never part of the design assumptions. Security was layered on later.​

We added encryption, certificates and identity frameworks. These were necessary, but built on an architecture never designed to validate identity everywhere or manage cryptography at scale.

The Hidden Fragility Of Today’s Cryptography​

Most organizations still rely on cryptographic systems deployed years ago and rarely revisited. Keys are scattered, libraries vary and security teams often lack visibility into where cryptography is used or which algorithms are protecting systems. When vulnerabilities emerge, remediation can take months or years.​

Meanwhile, the number of connected systems continues to explode—cloud, AI agents, APIs, microservices, edge and IoT—expanding the attack surface. Identity has become far more complex than originally anticipated.​ In short, we’ve accumulated decades of cybersecurity technical debt.

But something remarkable is happening. The transition to post-quantum cryptography is forcing a rethink of how cryptography is deployed, managed and upgraded. Organizations are inventorying their cryptographic environments for the first time at scale.​ This presents a rare opportunity—not just to swap algorithms, but to rethink secure communication itself.

From Static Security To Crypto Agility

Crypto agility means algorithms are no longer permanently embedded. They become adaptable components that can be upgraded or replaced without rewriting applications or replacing infrastructure.​

But agility must extend beyond algorithms. True resilience requires flexibility across the entire cryptographic stack—libraries, keys and policies. Library agility enables rapid patching. Key agility allows dynamic rotation.​

Equally important is identity. For decades, systems assumed trust within a network perimeter. That model no longer works. Strong identity must be foundational to every interaction.​

Modern TLS 1.3 with mutual authentication allows both sides of a connection to verify identity before exchanging data. When identity becomes intrinsic, networks become far more resilient.​ This enables true zero-trust architecture. Access decisions are based on identity, device posture and policy—not location. Microsegmentation further limits lateral movement by restricting communication paths.

Together, these capabilities transform how secure networks operate. However, they require a level of visibility and orchestration most organizations lack today.

Visibility And Control: The Missing Layers

Many security teams still lack a clear picture of where cryptography exists. Encryption is embedded across applications, APIs, devices, containers and third-party services. Without discovery, it cannot be managed.​

Continuous cryptographic discovery helps to change this. By identifying where encryption is used, which algorithms are deployed and how keys are managed, organizations gain a living map of their environment.​

With visibility comes policy-based management. Leaders can define which algorithms are allowed, how keys are rotated and how identity is enforced. When vulnerabilities emerge, remediation can be orchestrated centrally.​ Instead of chasing changes across systems, organizations can enforce security consistently and automatically.

This is the power of centralized cryptographic orchestration.​ Encryption, identity, keys and policies become a unified system rather than isolated components. Security teams can understand, govern and evolve their posture with precision.​

The challenges we face today are the result of decades of incremental decisions as the internet expanded beyond its original design. Each layer added capability, but also complexity.​ Now, for the first time in a generation, the industry is being forced to reexamine its cryptographic foundations.​

First Steps Toward A Crypto-Agile Future

​The path forward is about embracing a fundamental shift in how cryptography is governed. Start by treating cryptographic policy as a living control system—one that is continuously aligned with emerging regulatory expectations such as DORA, PCI DSS and CNSA 2.0, but not constrained by them. ​

From there, the real inflection point is integration. Cryptography must be embedded into the systems that already define how organizations understand their environments. When cryptographic context is anchored to asset intelligence—whether through CMDBs or other system-of-record platforms—it stops being invisible and starts becoming actionable.

​This visibility, however, is only valuable if it is dynamic. Continuous discovery into environments must be built, creating a real-time inventory of where encryption lives, how it is implemented and where risk is accumulating.

Rather than relying on fragmented, manual remediation, leaders must also ensure active remediation across the stack, including algorithms, protocols, libraries, certificates and keys, so vulnerabilities are addressed systematically rather than manually. ​​​

Finally, this entire model depends on continuous feedback. Cryptographic posture must be monitored as rigorously as any other critical system. The goal is to identify weaknesses early while they are still theoretical, not after they are exploited.

Taken together, this represents a shift from managing cryptography as a technical function to governing it as a strategic capability that evolves in real time alongside the threats it is designed to mitigate.​

A Once-In-A-Generation Opportunity

The migration to post-quantum cryptography is not just a defensive response. It is an opportunity to modernize secure communications.

If approached thoughtfully, we can build networks where identity is verified by default, cryptography evolves dynamically and policies are enforced consistently across every system.​ In other words, we can create the kind of secure infrastructure the early architects of the internet could not have imagined.​

Moments like this are rare. When they arrive, they give us the chance to correct the past and build something far stronger for the future. Right now, we have that opportunity.​


Forbes Technology Council is an invitation-only community for world-class CIOs, CTOs and technology executives. Do I qualify?