SSH Blog | Defensive Cybersecurity

PQ timeline moving faster: future proofing security in transit | SSH

Written by Alina Preda | Jul 21, 2026 8:00:00 AM

Not all data has a short shelf life. For governments, defense, critical infrastructure, finance, healthcare, and space-related organizations, sensitive information can remain valuable for years or even decades.

That changes the security requirements. It is not enough to protect against the threats that exist today. It also needs to stay protected against future cryptographic risks.

One of the most important risks is “harvest now, decrypt later.” Encrypted information can be collected today and stored until quantum computers are capable of breaking the cryptography used to protect it.

Post quantum cryptography (PQC) is moving from planning into implementation

Recent news from the U.S. shows how quickly the timeline is changing. A new executive order accelerates the federal move away from quantum vulnerable cryptography, requiring high value and high impact systems to transition to post quantum cryptography for key establishment by the end of 2030 and for digital signatures by the end of 2031. This is a dramatic shift from the earlier target of 2035.

The order also points to a risk that matters beyond the public sector. For organizations handling information that needs to stay confidential for years, waiting is not a neutral choice.

The challenge is not only choosing the right algorithms. It is also finding a way to improve protection without replacing existing infrastructure, since upgrading the end points is often impossible due to legacy technologies. The transition to quantum safety should also not slow down services, be difficult to upgrade or add unnecessary operational complexity. d

This is especially important when sensitive information moves between data centers, cloud environments, OT sites, large offices, ground stations, and critical systems. These connections need strong protection, but they also need to remain fast, reliable, and manageable.

Quantum safe security in transit with NQX

NQX provides quantum safe encryption for data in transit with high performance and low latency. It is designed to secure sensitive connections between critical points across existing hard-to-upgradeinfrastructure.

This supports a gradual move to stronger protection without costly rip and replace changes. Organizations can start with the most exposed or business critical data flows, then expand over time.

Built for performance and crypto agility

NQX 3.2 adds support for the latest post quantum algorithms, including ML KEM and Frodo KEM. It also supports crypto agility by combining classical algorithms with post quantum cryptography, helping organizations manage the transition more securely.

The release is optimized for demanding environments where high bandwidth matters. It supports use cases ranging from high-speed data center use cases with 100 Gbps interfaces all the way to large office and OT site deployments with 10 Gbps interfaces.

NQX can also run virtually, giving organizations more flexibility across distributed environments and phased migration projects.

Certification for sensitive use cases

SSH is in the process of acquiring NATO Restricted and EU Restricted certifications for NQX 3.2. These certifications support use cases where sensitive information requires special protection against unauthorized disclosure.

For regulated, mission critical, or high assurance environments, this provides an important level of confidence when protecting sensitive information in transit.

Preparing for the quantum era starts now

Quantum risk may still feel distant, but long-term confidentiality decisions are being made today. Organizations responsible for sensitive information need encryption that can keep up with both current requirements and future cryptographic risk.

Explore how NQX helps organizations protect data in transit with quantum safe encryption, high performance, and flexible deployment options >>>