Quantum Computing Threat: CISA Urges Businesses to Start Planning Now
CISA, alongside the G7 Cyber Security Working Group, has released guidance urging organisations and governments to start preparing for the post-quantum era. The concern is that future quantum computers could eventually break the encryption methods that currently protect sensitive data, secure communications, and authentication systems worldwide.
The guidance sets out five priorities: raising awareness of quantum risks, developing national strategies to support adoption of post-quantum cryptography (PQC), advancing research into quantum-safe technologies, encouraging collaboration between government and industry, and building PQC requirements into cybersecurity standards and procurement processes.
While large-scale quantum computers capable of breaking modern encryption don't yet exist, security experts warn that data stolen today could be decrypted later once the technology matures - a risk known as 'harvest now, decrypt later.' For small and medium businesses, this may seem like a distant issue, but it's a good time to start understanding where sensitive data is stored, how long it needs to remain confidential, and to keep an eye on vendor and software updates that begin incorporating quantum-resistant encryption standards.