Every enterprise now has PQC on the board agenda. What separates the organizations that will meet CNSA 2.0 and emerging regulatory horizons from those that won’t is no longer the mandate – it’s the program. This panel convenes cryptography and PKI leaders running active PQC migrations inside large financial services and healthcare institutions. The focus is operational: how they structured the program and who owns it; what is shipping today (crypto-asset discovery at scale, hybrid TLS at the customer edge, SLH-DSA and LMS/XMSS for code and firmware signing, PKI lifecycle automation, and crypto-agile abstraction in new builds); and what is realistically still gated (FIPS 140-3 validated PQC HSMs at enterprise scale, the deep protocol ecosystem – IPsec, IKEv2, SSH, SWIFT, FIX, ISO 20022 – mainframe and payment-terminal coverage, the second wave of signature standards, and partner and vendor chain interop). Panelists share budget envelopes, the organizational patterns that are working, unresolved dependencies, and lessons learned the hard way. Every attendee leaves with a concrete list of actions to put in motion within 30, 90, and 365 days.
WHY THIS SESSION MATTERS
The regulatory and CNSA 2.0 clock is inside the execution window. Boards have stopped asking ‘do we have a plan?’ and started asking ‘what have we shipped?’ This session is the peer-validated roadmap from enterprises that have an answer.
As Founder & CEO of Qrypt, Kevin coordinates the company’s global business development efforts, builds strategic partnerships, and maintains client relationships. Additionally, Kevin serves on the Board of Directors of Barcelona-based Quside, a quantum technologies manufacturer for connected devices.