Post-quantum security
Post-quantum security: protect your data before it's too late
Crypto inventory, risk analysis and a phased migration plan to the NIST standards ML-KEM and ML-DSA, in line with the EU roadmap and NIS2.
- Crypto inventory of your systems
- Risk per dataset
- Phased migration plan
Future quantum computers could break the encryption that websites, VPNs, email and payments rely on today. Attackers can already intercept and store encrypted data to decrypt it later. For data that must stay confidential for years, that is a risk today.
The EU wants member states to have started the transition by the end of 2026, and critical infrastructure to have migrated by the end of 2030 at the latest. Suppliers to those organisations will sooner or later face the same requirements.
What we do
- Crypto inventory. We map where you use encryption: websites, VPNs, email, API integrations, databases, backups, certificates and devices.
- Risk analysis. Which data must still be secret in ten years, and which systems protect it? That is where your biggest risk lies.
- Suppliers. We check when your suppliers will support post-quantum algorithms.
- Migration plan. A phased plan towards the NIST standards ML-KEM and ML-DSA, starting with hybrid solutions where the risk is highest.
- Execution and crypto agility. We help with the switch and set up systems so algorithms can easily be swapped later.
Who it is for
- Organisations with sensitive data that must stay confidential for long: healthcare, legal, finance, R&D.
- Suppliers to governments and critical sectors that fall under NIS2.
- Companies that want to be prepared before it becomes a tender requirement.
Frequently asked questions
Do quantum computers that can break RSA exist yet?
No. The risk is "harvest now, decrypt later": data intercepted today can be decrypted later. And a migration takes years, so waiting until it is truly needed is too late.
Are there standards yet?
Yes. NIST published the first post-quantum standards in August 2024: ML-KEM for key exchange, and ML-DSA and SLH-DSA for signatures.
How long does a crypto inventory take?
For an SME usually a few weeks, depending on the number of systems and integrations. A first quick scan is part of our readiness scan.
Other services
AI automation that genuinely takes repetitive work off your hands
We automate business processes with AI end to end: process analysis, build, integration with your systems, training and operations. Securely hosted in the EU.
Read more →Process purchase invoices without retyping
Automate invoice processing with AI: read, check, match to purchase orders and pre-book invoices in Exact, AFAS, Xero or your own accounting system.
Read more →Quantum computing for businesses, without your own lab
Access to quantum computers through the cloud, GPU servers for quantum simulation and AI, and managed hosting in the EU. With an honest comparison against classical solutions.
Read more →