VYPR
advisoryPublished Jul 22, 2026· 1 source

IBM Urges Proactive Post-Quantum Security Infrastructure Assessment

IBM advises organizations to prioritize assessing their security infrastructure vendors for quantum-safe cryptography adoption, treating quantum readiness as a continuous modernization effort.

IBM is urging organizations to begin their post-quantum migration journey by focusing on the security infrastructure that underpins their operations. According to Suja Viswesan, vice president of security products at IBM, the initial step should involve evaluating vendors responsible for critical functions such as identity management, secrets management, and encryption.

Viswesan emphasized that companies should scrutinize whether these vendors are actively adopting quantum-safe technologies. This proactive approach is particularly crucial for sectors heavily reliant on cryptography, including telecommunications providers and critical infrastructure operators. These industries, due to the sensitive and continuous nature of their operations, must prioritize the integration of post-quantum algorithms before many others.

IBM's own Chief Information Security Officer organization has adopted a similar strategy, focusing first on securing the company's perimeter, assessing supply chain dependencies, and ensuring products are updated with quantum-safe cryptography. Application-level changes are being addressed subsequently, highlighting a phased and prioritized approach to quantum readiness.

Viswesan noted that many organizations struggle with the sheer volume of discovery required for such a migration. The key, she suggests, is to move beyond simple inventory and provide business context to prioritize efforts. This allows organizations to break down the overwhelming task into manageable, actionable steps, rather than being paralyzed by the scope of the challenge.

IBM advocates for treating cryptography not as a one-time project but as an ongoing program. This perspective acknowledges the evolving threat landscape and the continuous need for cryptographic agility. Modernizing protocols alongside algorithms is also a critical component of this continuous effort, ensuring that the entire cryptographic stack remains robust against future threats.

Furthermore, IBM recommends aligning quantum readiness initiatives with other ongoing modernization efforts within the organization. By integrating quantum preparedness into broader business and technology modernization strategies, companies can achieve greater efficiency, reduce redundancy, and ensure that their security posture evolves holistically.

This strategic focus on infrastructure and vendor assessment, coupled with a view of quantum readiness as a continuous program, aims to build long-term resilience against the anticipated threats posed by the advent of quantum computing. The goal is to ensure that organizations are not merely reacting to the quantum threat but are proactively building a secure foundation for the future.

Synthesized by Vypr AI