DISC · GOVERNANCE PRODUCT / PLATFORM MODULE

QuantumSafe Crypto Discovery
Available

Locate vulnerable public-key cryptography across certificates, traffic, code, devices and trust services.

CUSTOMER PROBLEM

Locate vulnerable public-key cryptography across certificates, traffic, code, devices and trust services.

Organizations cannot prioritize PQC migration until they know where public-key cryptography is embedded, who owns it and how long the protected data must remain secure.

Available
Portfolio class
Governance product / platform module
Public profile
2026.07
Version rule
Confirmed in quotation / release record

PRODUCT-SPECIFIC IMPLEMENTATION FLOW

How QuantumSafe Crypto Discovery operates from input to evidence.

Network captures, certificate stores, source/dependency scans and structured interviews. Discovery report, asset register and scoped findings with traceable source evidence.

01

Authorize collection scope

Certificate and trust-store discovery

02

Collect certificates and traffic

PCAP and protocol observation

03

Parse algorithms and protocols

Source, dependency and configuration review

04

Correlate systems and owners

CA/TSA/OCSP/CRL inventory

05

Confirm findings with evidence

Ownership and business-service mapping

06

Publish remediation backlog

Evidence-backed remediation backlog

NAMED COMPONENTS AND RESPONSIBILITIES

What QuantumSafe Crypto Discovery contains and what each component does.

The descriptions below state concrete technical behaviour rather than generic support language.

01

Certificate and trust-store discovery

Reads approved certificate stores and trust anchors, recording issuer, subject, algorithm, key length, validity and source location for every finding.

02

PCAP and protocol observation

Parses authorized PCAP or sensor output to identify TLS, SSH, IPsec and other cryptographic negotiations without claiming visibility beyond the captured traffic.

03

Source, dependency and configuration review

Inspects dependency manifests, configuration files and selected source locations for cryptographic libraries, providers, hard-coded parameters and protocol settings.

04

CA/TSA/OCSP/CRL inventory

Maps CA, TSA, OCSP and CRL endpoints to the applications and relying parties that depend on them, including ownership and renewal contacts.

05

Ownership and business-service mapping

Links every cryptographic observation to a business service, system owner, data class and migration dependency so that findings become actionable.

06

Evidence-backed remediation backlog

Converts verified findings into a prioritized remediation backlog with evidence references, accountable owners, acceptance criteria and review dates.

CUSTOMER OUTCOMES
  • Cryptographic asset inventory
  • Network and certificate discovery
  • Owner and dependency mapping
INTEGRATION BOUNDARY

Network captures, certificate stores, source/dependency scans and structured interviews.

DEPLOYMENT PATTERNS

Bounded assessment workspace

Collectors run against approved sources; findings are reviewed before entering the governed inventory.

Continuous enterprise integration

Scheduled collectors and connectors feed the inventory, risk and policy workflows under customer control.

Managed governance operation

Mobile-ID facilitates refresh, review and reporting while the customer retains ownership and approval authority.

EVIDENCE REQUIRED
  • Discovery report, asset register and scoped findings with traceable source evidence.
  • Version and configuration manifest for: Network captures, certificate stores, source/dependency scans and structured interviews.
  • Negative, failure and recovery tests for “Confirm findings with evidence” and “Publish remediation backlog”.
  • Signed acceptance record, accountable owner, published limitations and next review date.
STANDARDS & PROFILES
  • NIST NCCoE Migration to PQC
  • CycloneDX / CBOM concepts
  • X.509 / PKIX
  • TLS / CMS / code-signing inventories

PRODUCT-SPECIFIC BOUNDARIES

Conditions that must remain true for QuantumSafe Crypto Discovery.

These points come from the product profile, not from a shared disclaimer.

NEXT STEP

Request a product workshop: QuantumSafe Crypto Discovery

Review the exact operating model, interfaces and evidence needed for deployment.