Workshop Description
Most cyber defence organisations know they need to migrate to post-quantum cryptography. Few have started. The blockers are practical: no complete picture of where classical cryptography sits in the estate, no clear criteria for choosing between ML-KEM, ML-DSA, and SLH-DSA, and no roadmap that accounts for hybrid deployment, regulatory deadlines, and operational constraints like classified network segmentation.
This workshop addresses each blocker directly. Participants build a cryptographic inventory using CBOM (Cryptographic Bill of Materials) methodology, work through algorithm selection for their specific protocol stack, and produce a phased migration roadmap calibrated to CNSA 2.0 milestones and applicable European/national regulatory timelines. The interactive demonstration uses a representative enterprise environment so delegates can see the full discovery-to-roadmap pipeline in action. Every participant leaves with a populated inventory template, a regulatory gap assessment for their jurisdiction, and a prioritised migration plan they can take back to their organisation.
What participants will be able to do
- Build a cryptographic inventory using automated discovery tools and CBOM methodology, covering network protocols, code dependencies, certificate chains, and key management systems
- Select appropriate NIST PQC algorithms (ML-KEM, ML-DSA, SLH-DSA) based on security level requirements, performance constraints, and protocol compatibility for their environment
- Design a hybrid deployment architecture using composite certificates and hybrid TLS to maintain backward compatibility during migration
- Produce a risk-prioritised migration roadmap aligned with CNSA 2.0 transition timelines and applicable national/European regulatory requirements
- Assess harvest-now-decrypt-later exposure across their cryptographic estate and prioritise assets by data shelf life and regulatory sensitivity
- Evaluate FIPS 140-3 validated PQC module availability and integrate procurement planning into the migration timeline